Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT public ip to private ip

    Scheduled Pinned Locked Moved NAT
    5 Posts 2 Posters 789 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bond_it
      last edited by

      Hi All,

      I have a block of public ip addresses (/29)
      I've been trying to configure it in a way that an ip from this /29 public ip addresses will be the gateway for our guest network with no success.
      I've been reading and some say create a virtual ip (ip alias) some say create a 1:1 nat rule and some say create a CARP VIP.
      Been playing with the settings and so far no luck.

      Is there a guide on how to achieve this?

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        It is unclear what you are trying to do.

        No idea what "be the gateway for our guest network" means.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • B
          bond_it
          last edited by

          It means that an ip from the public ip pool that was provided to me by the internet provider will be used as the gateway to the internet for our guest wireless.
          We are using x.x.x.1 to the internet
          Goal is that the guest will use x.x.x.2 to the internet

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            You want to create a VIP on WAN and use outbound NAT on WAN in hybrid mode to translate the source address to that on the way out.

            Make a rule on WAN that sources from the guest network destination any and sets that VIP as the Translation address.

            I would probably just use an IP Alias VIP for that.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • B
              bond_it
              last edited by

              Apologies for the really late reply.
              Everything seems to work now as intended.
              I was able to configure it properly with CARP and its smooth. Only thing is I was only able to get it working with manual NAT not hybrid.
              As always, thank you for your support.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.