This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to enable hairpin NAT for entire network?

I've just started using Sophos XG and am coming from primarily a Ubiquiti shop. With edgerouter devices, hairpin nat was a simple check box and ALL services internally could be accessed locally or by their WAN:port

 

I have dozens of cameras that all have port forwarding and NAT translations and would love if I can access those devices internally by using the same WAN public IP and port number



This thread was automatically locked due to age.
Parents
  • Hi,

    I understand what you are trying to achieve. Why not try setting up each device in the DNS on the XG? I have not tried multiple devices.

    Ian

  • That doesn't solve the problem of port translation.

    I want to go to mydomain.com:1554 and it translate to 10.0.0.5:554 or going to mydomain.com:1555 translate to 10.0.0.6:554

    With port forwarding this works great from outside my network but our software has these external IP's and ports hard set, so it breaks when trying to access internally. I've never had this problem before with other firewalls. Hairpin nat has always been a toggle on a network level.

Reply
  • That doesn't solve the problem of port translation.

    I want to go to mydomain.com:1554 and it translate to 10.0.0.5:554 or going to mydomain.com:1555 translate to 10.0.0.6:554

    With port forwarding this works great from outside my network but our software has these external IP's and ports hard set, so it breaks when trying to access internally. I've never had this problem before with other firewalls. Hairpin nat has always been a toggle on a network level.

Children