Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Reflection just won't work.

    Scheduled Pinned Locked Moved NAT
    18 Posts 3 Posters 5.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hoba
      last edited by

      The more I look at your otbound NAT config the more I am puzzled. I think you don't need it at all. Try disabling AON again and retest. There is nothing in there that is not handled by the default natting that is present when AON is disabled. Well, there are even some things missing in your manual outbound nat configuration I think.

      1 Reply Last reply Reply Quote 0
      • B
        BVZVC
        last edited by

        I need the outbound NAT because I the LAN to only go out on WAN_CABLE

        1 Reply Last reply Reply Quote 0
        • H
          hoba
          last edited by

          No, wrong. Only firewallrules determine what goes out which wan. Outbound nat only specifies wether the traffic is natted or not.

          1 Reply Last reply Reply Quote 0
          • B
            BVZVC
            last edited by

            Switched to Automatic outbound NAT.

            Exact same scenario.

            1 Reply Last reply Reply Quote 0
            • H
              hoba
              last edited by

              Try diagnostics>states, reset states. Then retest nat reflection.

              1 Reply Last reply Reply Quote 0
              • B
                BVZVC
                last edited by

                Still a no go. Does this have to do with the MultiWAN?

                1 Reply Last reply Reply Quote 0
                • H
                  hoba
                  last edited by

                  I have 3 wans and 6 internal subnets at the office with a CARP setup and even vlanned. Reflection is working just fine. Don' know why it's not working for you. I'm out of ideas  ???

                  1 Reply Last reply Reply Quote 0
                  • B
                    BVZVC
                    last edited by

                    I've even re-installed pfSense

                    1 Reply Last reply Reply Quote 0
                    • C
                      cmb
                      last edited by

                      If you're using 1:1 NAT, reflection won't work, but that doesn't appear to be the case. It also doesn't work for ranges of more than 500 ports, but you don't have that either.  Do you see anything relevant in the system log?

                      1 Reply Last reply Reply Quote 0
                      • B
                        BVZVC
                        last edited by

                        nothing gets blocked.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.