@1 nat log on l2tp0 inet from (vtnet0:network:1) to 10.0.23.0/24 -> (l2tp0:0) port 1024:65535 [ Evaluations: 235 Packets: 13 Bytes: 664 States: 2 ] [ Inserted: uid 0 pid 79222 State Creations: 2 ]
No. Time Source Destination Proto. Len Info1 0.000000 10.0.50.161 10.0.23.141 ICMP 64 Echo (ping) request id=0x1118, seq=686/44546, ttl=127 (reply in 2)2 0.015610 10.0.23.141 10.0.50.161 ICMP 64 Echo (ping) reply id=0x1118, seq=686/44546, ttl=127 (request in 1)3 0.077754 10.0.50.161 10.0.23.141 TCP 56 46777 → 3389 [SYN] Seq=0 Win=64240 Len=0 MSS=1460 WS=256 SACK_PERM=14 0.093838 10.0.23.141 10.0.50.161 TCP 56 3389 → 46777 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=15 1.106391 10.0.23.141 10.0.50.161 TCP 56 [TCP Retransmission] 3389 → 46777 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=16 3.120018 10.0.23.141 10.0.50.161 TCP 56 [TCP Retransmission] 3389 → 46777 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=17 3.401663 10.0.50.161 10.0.23.141 TCP 56 24492 → 3389 [SYN] Seq=0 Win=64240 Len=0 MSS=1460 WS=256 SACK_PERM=18 3.417707 10.0.23.141 10.0.50.161 TCP 56 3389 → 24492 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=19 4.430111 10.0.23.141 10.0.50.161 TCP 56 [TCP Retransmission] 3389 → 24492 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=110 5.001119 10.0.50.161 10.0.23.141 ICMP 64 Echo (ping) request id=0x1118, seq=687/44802, ttl=127 (reply in 11)11 5.017070 10.0.23.141 10.0.50.161 ICMP 64 Echo (ping) reply id=0x1118, seq=687/44802, ttl=127 (request in 10)12 6.402551 10.0.50.161 10.0.23.141 TCP 56 [TCP Retransmission] 24492 → 3389 [SYN] Seq=0 Win=64240 Len=0 MSS=1460 WS=256 SACK_PERM=113 6.441014 10.0.23.141 10.0.50.161 TCP 56 [TCP Retransmission] 3389 → 24492 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=114 7.125663 10.0.23.141 10.0.50.161 TCP 56 [TCP Retransmission] 3389 → 46777 [SYN, ACK] Seq=0 Ack=1 Win=64000 Len=0 MSS=1360 WS=1 SACK_PERM=1
WAN / Internet : .-----+-----. | Gateway | '-----+-----' | WAN | | .-----+------. (L2TP over IPsec) .----------------. | OPNsense +-----------(NAT)-----------+ Watchguard VPN | '-----+------' (VPN 10.0.50.0/24) '--------+-------'(192.168.178.66)| | | | LAN | (192.168.178.0/24) { Router } | | .-----+------. Remote LAN | (10.0.23.0/24, ...) | LAN-Switch | | '-----+------' .----------+-----------. | + Some Remote Server | .-------+-------. '----------------------' | Some Local PC | (10.0.23.141) '---------------' (192.168.178.2)
sorry, wrong post, misread your network plan... :-)
Since nobody seems to be able to help out
Interface Source Source Port Destination Destination Port NAT Address NAT Port Static Portext LAN net * 10.0.23.0/24 * Interface address * NO