Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    I broke outbound NAT *and need ideas how to fix

    Scheduled Pinned Locked Moved NAT
    7 Posts 4 Posters 972 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F Offline
      fastfish
      last edited by

      I was trying to configure a IPsec VPN and in my efforts to try to get that to work I managed to break outbound nat.  All my 1to1 ip's are going out as the router ip.

      I have tried to undo what I did in configuring ipsec to no avail.

      thx

      fast

      1 Reply Last reply Reply Quote 0
      • D Offline
        doktornotor Banned
        last edited by

        Nice announcement.

        1 Reply Last reply Reply Quote 0
        • F Offline
          fastfish
          last edited by

          Sry for being unclear.  Looking for tips on how to fix or where to start looking.  PFSense novice here.

          1 Reply Last reply Reply Quote 0
          • C Offline
            cmb
            last edited by

            Testing via what? Web traffic? Running Squid or similar?

            1 Reply Last reply Reply Quote 0
            • F Offline
              fastfish
              last edited by

              I have a web/mail… server on one ip.  Getting spf errors.  And if i use the command line program links whatismyip.com it shows as router ip not webserver ip.

              1 Reply Last reply Reply Quote 0
              • C Offline
                cmb
                last edited by

                If you're running Squid with transparent proxying, that would make the HTTP requests show up as the WAN IP. But no other traffic.

                Go to Diagnostics>States while the mail server is sending something and filter for its internal IP. What do the SMTP states look like? Check the NAT there.

                1 Reply Last reply Reply Quote 0
                • M Offline
                  muswellhillbilly
                  last edited by

                  Sorry to say it at this late stage, but this really illustrates the importance of taking a regular backup of your running config. Especially before making any changes.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.