OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Tutorials and FAQs »
  • VLAN to VLAN SNAT
« previous next »
  • Print
Pages: [1]

Author Topic: VLAN to VLAN SNAT  (Read 2128 times)

rdy

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
VLAN to VLAN SNAT
« on: July 03, 2023, 09:20:09 pm »
Hello,

I am coming from a Sophos UTM and I was able to change my source IP when connecting from one PC in my network to another on a different VLAN.

Basically it was like this,

PC (192.168.10.8.) to VM (192.168.70.20) but changing my source IP to 192.168.70.20 so that VM would see think the traffic was coming from 192.168.70.254 when going to 192.168.70.20.

If it helps, on a WatchGuard I believe it was called a dynamic NAT.

If someone knows how to do this, I would be very grateful.

Cheers,
Rdy.
« Last Edit: July 03, 2023, 09:22:06 pm by rdy »
Logged

Bob.Dig

  • Sr. Member
  • ****
  • Posts: 259
  • Karma: 13
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #1 on: July 04, 2023, 11:45:15 am »
Pls explain, why do you want that odd  behavior.
Logged

rdy

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #2 on: July 04, 2023, 11:56:53 am »
I cannot easily change the network settings on the docker instances, and they only allow traffic from the same subnet.

I wouldn't consider it odd behavior, every firewall I have used before Opnsense, it has been something you could do. Though they were enterprise FW's and I have hit the home license limit on the Sophos UTM I was previously using.

So far though I am enjoying Opnsense so it would be upsetting if it can't do this.
Logged

Bob.Dig

  • Sr. Member
  • ****
  • Posts: 259
  • Karma: 13
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #3 on: July 04, 2023, 12:20:01 pm »
Quote from: rdy on July 03, 2023, 09:20:09 pm
PC (192.168.10.8.) to VM (192.168.70.20) but changing my source IP to 192.168.70.20 so
You wouldn't change it to the destination PC but to the OPNSense interface I think. You can create such a mapping where you configure outbound NAT.
Logged

rdy

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #4 on: July 04, 2023, 12:27:07 pm »
Could you please give me an example or instructions? I am not quite sure how to do that sorry.
Logged

rdy

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #5 on: July 04, 2023, 12:47:06 pm »
Please disregard I have worked it out :).
Logged

sorano

  • Full Member
  • ***
  • Posts: 153
  • Karma: 21
    • View Profile
Re: VLAN to VLAN SNAT
« Reply #6 on: July 04, 2023, 04:29:11 pm »
Quote from: rdy on July 04, 2023, 12:47:06 pm
Please disregard I have worked it out :).

Damn.... Posts like these always piss me off.

First begging help from others.

Then when you solve whatever problem you had instead of posting the actual solution so others with the same issue could benefit from it they just post "I have worked it out :)" 

FFS ::) ::) ::) ::) ::)
Logged
2x 23.7 VMs & CARP, 4x 2.1GHz, 8GB
Cisco L3 switch, ESXi, VDS, vmxnet3
DoT, Chrony, HAProxy + NAXSI, Suricata
VPN: IPSec, OpenVPN, Wireguard
MultiWAN: Fiber 500/500Mbit dual stack + 4G failover

--
Available for private support.
Did my answer help you? Feel free to click [applaud] to the left

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Tutorials and FAQs »
  • VLAN to VLAN SNAT
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2