Reflection is set to "use system default" in the NAT rule, as is the case for the documentation for NAT reflection (I'm following method 1). I've tried enabling reflection and disabling force gateway without any changes to behavior. If you reference the screenshot, it seems that the rdr is applied correctly, but the firewall blocks the traffic redirected to 10.0.1.2.
"