Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Hybrid Outbound NAT

    Scheduled Pinned Locked Moved NAT
    3 Posts 2 Posters 3.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      MatthewH
      last edited by

      Is it possible to have the manual mappings override the automatic rules when using hybrid outbound nat?

      There are automatic rules for our 192.168.4.0/24 subnet. I want to manually specify outbound NAT for just 192.168.4.3/32. Is that possible or do I have to switch over to ful manual outbound NAT and enter all the automatic rules by hand?

      I'm trying to make 192.168.4.3 use a virtual IP for outbound. The VIP is CARP.

      Thanks!

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        @MatthewH:

        Is it possible to have the manual mappings override the automatic rules when using hybrid outbound nat?

        That is the entire purpose of Hybrid mode. User rules are respected first, then automatic follows. So only put in your rule(s) for using the VIP(s) you want and switch to Hybrid mode.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • M
          MatthewH
          last edited by

          @jimp:

          @MatthewH:

          Is it possible to have the manual mappings override the automatic rules when using hybrid outbound nat?

          That is the entire purpose of Hybrid mode. User rules are respected first, then automatic follows. So only put in your rule(s) for using the VIP(s) you want and switch to Hybrid mode.

          That's what I thought, but it didn't work that way. I'm on 2.2.4.
          I'm using the outbound nat so 1 subnet will use a VIP. I setup using Hybrid mode, cleared all states for the subnet, then used a website to check my external IP and it returned the main interface IP. I ended up switching to the full manual outbound NAT so there wouldn't be 2 rules for that subnet and then it worked like it should. Maybe a bug??

          Thanks for the reply.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.