EFW Support

Support => General Support => Topic started by: ilranzani on Thursday 15 May 2014, 11:33:34 pm



Title: NAT 1:1
Post by: ilranzani on Thursday 15 May 2014, 11:33:34 pm
Dear Endian users...

I try in any way to make working a simple ONE-TO-ONE 1:1 NAT but without success.

SNAT:
GREEN-IP RED-IP any auto
works but only for outcoming connections

DNAT:
UPLINK GREEN-IP any any
works but only when request the uplink address

ex.
My GREEN: 192.168.1.0/24
My RED: 172.16.1.0/24

I need a 1 to 1 NAT for:
192.168.1.11 172.16.1.2
192.168.1.12 172.16.1.4
192.168.1.13 172.16.1.5
192.168.1.14 172.16.1.7
192.168.1.15 172.16.1.9
192.168.1.22 172.16.1.12
192.168.1.23 172.16.1.13
...

for all ports, from RED to GREEN and GREEN to RED....

(192.168.1.1 and 172.16.1.1 is my FW connected with my 2 eth switches)


IS IT POSSIBLE????

HOW IS IT POSSIBLE????




Title: Re: NAT 1:1
Post by: ilranzani on Friday 16 May 2014, 05:20:30 pm
YES  8)

Found: endian.com/fileadmin/documentation/efw-admin-guide/en/efw-admin-guide.html#efw.network.aliases

 >:( >:( >:( >:( >:( >:(
DAMN INTERFACE AND POOR GUIDE!!!!


Title: Re: NAT 1:1
Post by: ilranzani on Monday 19 May 2014, 08:18:15 pm
 >:( >:( >:(

DNAT do not consider the incoming and outcoming firewall policies!

IS IT POSSIBLE THAT IN A 2014 FIREWALL THERE'S NOT A 1:1 NAT OPTION?!?!??!?!?!?!?!?!?!!?

ORRIBLE, switch to PFSENSE