Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT Reflection or not

    Scheduled Pinned Locked Moved NAT
    4 Posts 3 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      robfantini
      last edited by

      are there any good reasons to  Disable NAT Reflection ?

      I have always left it disabled.    How ever  I was testing enabling  Reflection  , which resulted in  bookmarks to our internal servers working on and off site.

      So is turning on nat reflection  bad for other reasons>

      1 Reply Last reply Reply Quote 0
      • R
        robfantini
        last edited by

        I found info about this in the  pfSense book on Page 104…  I'm not going to copy and paste from it... unless that is ok.

        get the book!

        1 Reply Last reply Reply Quote 0
        • T
          thoule
          last edited by

          I'm waiting till the book for version 2 comes out.  Won't it be significantly different?
            -t-

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            There will be quite a few differences in the 2.0 but the underlying fundamentals are the same.

            In the case of NAT reflection, it's still preferred to use split DNS instead of relying on reflection. Your internal devices should be talking directly to the internal IPs of the services, and not using the public IPs. There is more info on the doc wiki (check the link in my sig).

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.