OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 17.7 Legacy Series »
  • Multi-WAN and 1:1 NAT
« previous next »
  • Print
Pages: [1]

Author Topic: Multi-WAN and 1:1 NAT  (Read 2990 times)

mestafin

  • Newbie
  • *
  • Posts: 45
  • Karma: 2
    • View Profile
Multi-WAN and 1:1 NAT
« on: January 30, 2018, 02:49:10 pm »
HI,

I have two WAN connections, WAN0 and WAN1,  with different sub-nets on each WAN connection.

The gateway for WAN1 is the default gateway.

Internal LAN devices with 1:1 NAT rules defined with public ip addresses from WAN1 sub-net, correctly uses the correct public IP from WAN1 as defined in the 1:1 NAT rule.

The problem is with LAN devices with 1:1 NAT rules defined on public IP addresses from the WAN0 sub-net.

Despite the 1:1 NAT rule, traffic from these devices are still routed via the default gateway for WAN1 (the system default gateway) and not via public ip as defined in the 1:1 NAT rule.

This is for traffic that originates on the LAN device. Traffic that originates from the internet is correctly routed via WAN0 to the LAN device as per the 1:1 NAT rule.

How do I fix this please or what am I missing?
« Last Edit: January 30, 2018, 04:45:45 pm by mestafin »
Logged

mestafin

  • Newbie
  • *
  • Posts: 45
  • Karma: 2
    • View Profile
Re: Multi-WAN and 1:1 NAT
« Reply #1 on: January 31, 2018, 10:16:57 am »
Anybody with any ideas please?
Logged

hutiucip

  • Sr. Member
  • ****
  • Posts: 284
  • Karma: 50
    • View Profile
Re: Multi-WAN and 1:1 NAT
« Reply #2 on: February 01, 2018, 11:53:30 am »
Change Outbound NAT rules generation from automatic to hybrid, and manually add NO NAT rules for the intended IP address pool(s).

Firewall: NAT: Outbound

Hope it helps... :)
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 17.7 Legacy Series »
  • Multi-WAN and 1:1 NAT
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2