Translating iptables -> pfsense



  • Hi all

    I installed Pfsenses a lot of times now and today is the day i'm lost…
    For the first time i have to use (i guess) 1to1 Nat trough a VPN connection....

    I replaced a normal Linux Firewall with the PFsense.

    On the "old" Box there are the following three (there are a few more but nearly same) iptables that needs to be "translated" to PFSense:

    iptables -t nat -I POSTROUTING -s 192.168.1.0/24 -d 987.654.183.124 -m comment --comment 'SNAT for Customer' -j SNAT --to 123.456.789.209 -m state --state NEW,RELATED,ESTABLISHED
    iptables -t nat -I PREROUTING -s 987.654.39.0/24 -d 123.456.789.210 -m comment --comment '1to1 NAT ipsec' -j NETMAP --to 192.168.1.177 -m state --state NEW,RELATED,ESTABLISHED
    iptables -t nat -I POSTROUTING -s 192.168.1.177 -d 987.654.39.0/24 -m comment --comment '1to1 NAT ipsec' -j NETMAP --to 123.456.789.210 -m state --state NEW,RELATED,ESTABLISHED

    Is there anybody out there who can tell me what to do... that would be awesome.



  • Interested by this too!