Nat issue with carp and 25.11.1
-
I believe I hit a bug with nat port forward.
Setup
2 pf nodes sharing a /29 public subnet. with carp.
Carp works as expected.
An internal host running a web server on port 80 exists on the lan interface.
Firewall rules are correctly adjusted to allow incoming traffic to port 80.
(to the internal ip)
No related firewall rules are used on nat.
If an ip is configured as carp, then port forwading 80 on this ip to internal port 80, doesn't work.
Making this an alias to the same wan interface works.Downgrading to 25.07 makes carp nat work too.
Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.