Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Disable Nat and use CP in routed mode

    Scheduled Pinned Locked Moved Captive Portal
    6 Posts 2 Posters 907 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      Snailkhan
      last edited by

      Hi

      Is it possible to disable Nat on pfsense and yet use the captive portal?

      Regards

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        Yes.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • S
          Snailkhan
          last edited by

          Thanks, I will try it out.
          I have the ssid broadcasted by a Cisco ap, the dhcp external or internal will give the cp interface as its default router.

          Then I will create a new gateway and set that as default gateway. So will that route all traffic with the source ip unmodified to that gateway?

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            If you do not want to NAT just disable NAT in Firewall > NAT, Outbound

            Either set to hybrid mode and create a NO NAT rule for the source addresses you do not want to NAT or set manual mode and delete/disable the rules for the source addresses you do not want to NAT.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            S 1 Reply Last reply Reply Quote 0
            • S
              Snailkhan @Derelict
              last edited by

              @derelict said in Disable Nat and use CP in routed mode:

              t disable NAT in Firewall > NAT, Outbound
              Either set to hybrid mode and create a NO NAT rule for the source addresses you do not want to NAT or set manual mode and delete/disable the rules for the source addresses you do not want t

              So if nat is disabled then the only way for trafic to go out is use routing table ?

              if manual mode is set then is it possible to not NAT Traffic only for few destination IP addresses/subnets and nat for all other ?

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                It uses the routing table whether you use NAT or not.

                Yes, you can make outbound NAT as simple or as complicated as you require.

                Something tells me you are not accurately communicating what you are trying to do though.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.