• Hi
    we use pfsense virtual appliance in AWS for configuring site to site VPN ONLY. We configure IP NAT within
    VPN / IPsec / Tunnels / Edit Phase 2 which is needed across IPSEC VPN tunnel.
    These NAT statements do not appear under–> Firewall / NAT / 1:1  (and also not under 'outbound').

    Question: if I want to disable firewall function at -->  System / Advanced / Firewall & NAT  though it says it will disable NAT function too, can I still disable it without affecting my NAT configuration settings under IPSEC VPN?

    Thanks in advance.

  • LAYER 8 Netgate

    No. NAT in IPsec is accomplished using pf on interface enc0. Disabling the firewall will also disable that NAT.

  • Thanks Derelict.