This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to enable hairpin NAT for entire network?

I've just started using Sophos XG and am coming from primarily a Ubiquiti shop. With edgerouter devices, hairpin nat was a simple check box and ALL services internally could be accessed locally or by their WAN:port

 

I have dozens of cameras that all have port forwarding and NAT translations and would love if I can access those devices internally by using the same WAN public IP and port number



This thread was automatically locked due to age.
Parents Reply
  • Never mind. I just realized you can simply adjust the port forwarding rule to allow hairpin nat so you don't need two rules

    Just change the source from WAN to Any and enable rewrite source address to MASQ. I knew creating two rules for this was silly, especially when you have over 25 internal servers you need to create rules for. 

Children