Nat reflection problems 23.7

Started by enor, August 07, 2023, 08:21:35 PM

Previous topic - Next topic
Running Opnsense 23.7 and have been trying to set up nat reflection on my portforward.

Have a simple forward for port 22, fine to access it externaly on wan ip but not internally against wan ip.

Have enabled the following in Advanced
* Reflection for port forwards
* Reflection for 1:1
* Automatic outbound NAT for Reflection

Have also enabled reflection in port forward rule.

Have searched some and other people seems to have had the same problem, but seems it has resolved when they enabled the settings in advanced. Am I missing something else?

Cheers.

August 08, 2023, 06:43:15 AM #1 Last Edit: August 08, 2023, 12:56:21 PM by enor
Semi solved it myself.

Reflection seems to be working .

Had set geoip alias as source on the portforwards rule. Guess that blocks local networks..

Created a 2nd duplicate port forwarding rule with source set to local networks. I assume this also open up the possibility for local networks on the outside to access the port foward.(Don't know how easy that is to spoof..)