Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    1:1 NAT on new setup not working

    Scheduled Pinned Locked Moved NAT
    5 Posts 3 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hippymill
      last edited by

      My pfsense died a few day ago, and I had to configure a new setup.  I have a /29 block of static IP's from my ISP.  I use one of these on my firewall WAN, and need to nat one address into the network.  I have this set up exactly as I had it before(I think), but it does not work.  I attached pics of the appropriate screens. I get no traffic to pass, and no logging on any firewall rules attached to the nat address. need some help.  thanks
      nat1.jpg
      nat1.jpg_thumb
      nat2.jpg
      nat2.jpg_thumb
      rules1.jpg
      rules1.jpg_thumb

      1 Reply Last reply Reply Quote 0
      • chpalmerC
        chpalmer
        last edited by

        Looks right.

        Try changing your virtual IP to alias…

        Other should be fine but the change may jar things...

        http://doc.pfsense.org/index.php?title=What_are_Virtual_IP_Addresses%3F

        Triggering snowflakes one by one..
        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

        1 Reply Last reply Reply Quote 0
        • C
          cmb
          last edited by

          You most likely cannot use Other type VIPs on your WAN subnet, you'll have to have L2 responses, so PARP, CARP or IP Alias must be used.

          1 Reply Last reply Reply Quote 0
          • chpalmerC
            chpalmer
            last edited by

            @cmb:

            You most likely cannot use Other type VIPs on your WAN subnet, you'll have to have L2 responses, so PARP, CARP or IP Alias must be used.

            Yea- what he said! ;D

            Thanks Chris!

            (bows head)

            Triggering snowflakes one by one..
            Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

            1 Reply Last reply Reply Quote 0
            • H
              hippymill
              last edited by

              @chpalmer:

              Looks right.

              Try changing your virtual IP to alias…

              Other should be fine but the change may jar things...

              http://doc.pfsense.org/index.php?title=What_are_Virtual_IP_Addresses%3F

              this did it.  Thanks.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.