Nat rules with not statement

  • I am trying to sort out a rule that will NAT our internel traffic without effecting all. I setup an aliases list with IP networks in it and put a statement in saying if the destination is !not list a NAT to x

    Only issue is I am getting filter reload errors. Is this the best way to do this or do I need to look at something else.

  • Rebel Alliance Developer Netgate

    Can you show the contents of /tmp/rules.debug – or at least the line it's giving an error for?

    And a copy of just that rule from inside config.xml (might need the alias that goes with it, too).

    If you don't want to post them here, you can pm them to me or send them to jimp (a) pfsense (d) org.

Log in to reply