Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT between 2 firewalls

    Scheduled Pinned Locked Moved Routing and Multi WAN
    1 Posts 1 Posters 539 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B Offline
      babblacksheep
      last edited by

      Hi

      I am new to pfsense, and have done quite a bit with it to date. I ran into a bump that i simply can not overcome, and would appreciate any feedback.

      Here we go:

      I have firewall 1 (External)

      WAN: 41.x.x.98/28
      GW: 41.x.x.97/28
      Lan: 192.5.8.7/24

      This firewall serves as the incoming firewall for internet and Natted traffic. It works perfectly.


      I have firewall 2 (Internal)

      WAN: 192.5.8.9/24
      GW: 192.5.8.7/24
      LAN: 192.168.2.25/24

      This firewall server as the gateway on the network, and works perfectly. It serves internet to localhosts, no connection issues.


      Web Server

      LAN: 192.168.2.41/24
      GW: 192.168.2.25

      This is the server i need to be able to access from the outside on port 80. Internally it can access the internet perfectly


      MY problem i am facing is with NAT incoming request www.domain.co.za to firewall 1, from there NAT to firewall 2 and be able to reach the web server.

      My NAT that i tested is:
      Firewall 1 to NAT 1 to firewall 2 on WAN interface. From firewall 2 it must NAT to destination (Webserver) on port 80. I cant make this to work. But i can setup NAT to firewall 1 with a server running on the same netmask, with my eyes closed, no issues.

      I would appreciate any help and direction i can get on this.

      thank you

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.