Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Explain "Disable expansion of this entry into IPs on NAT lists"

    Scheduled Pinned Locked Moved NAT
    4 Posts 3 Posters 679 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • pitchforkP
      pitchfork
      last edited by

      There are virtually no results for "Disabled expansion of this entry into IPs on NAT lists" and it is not mentioned in the manual.

      What exactly does this do in the context of a vIP of type "Other"?

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        If you select Network for your Address type, then that checkbox determines whether the NAT lists will hold just the network/mask alone, or if it adds each individual address in that network as a separate entry. I can't think of too many uses for it. Perhaps if you want to alias a subnet but need to make a few exceptions. The entire network is not suitable for that, but if its expanded then you could potentially remove a few entries? I'm not sure.

        pitchforkP 1 Reply Last reply Reply Quote 1
        • pitchforkP
          pitchfork @KOM
          last edited by pitchfork

          @KOM thanks for the explanation.

          I think of a single use: if you add a very large subnet it could potentially crash the pfsense webserver when it tries to expand the list.

          jimpJ 1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate @pitchfork
            last edited by

            @pitchfork said in Explain "Disable expansion of this entry into IPs on NAT lists":

            @KOM thanks for the explanation.

            I think of a single use: if you add a very large subnet it could potentially crash the pfsense webserver when it ties to expand the list.

            That's exactly it. You can still pick the subnet itself from the drop-down, but if you add, say, a /16 you don't really want thousands and thousands of entries in the drop-down list.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 1
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.