@pdwalkerhk said in NAT Reflection on a multiwan system - need help debugging my problem getting it to work.:
is there any way to debug why the traffic from the local lan to the public ip of the port forwarded ports is not going through?
Sniff the traffic with the packet capture tool on the LAN.
does that reflection firewall rule look correct for my situation?
I would expect it to work.
the default route for the LAN traffic is a gateway group composed of the 4 lan connections. Could this be causing a problem, preventing the nat reflection from working?
You may mean an interface group. This is not a problem, however, ensure that a rule on LAN allows the traffic from LAN IP to LAN destination IP.
The rule must not be a policy routing rule (gateway (group) stated)!
could I use the / Diagnostics / Packet Capture / somehow to find out what is or is not happening?
Yes. You should see packets from the source IP to the public going to pfSense and packets leaving with source = LAN IP and local destination IP.