Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Need to do NAT Reflection in the new UI

I have found this:
https://community.sophos.com/products/xg-firewall/f/network-and-routing/73239/nat-reflection

and this:

https://community.sophos.com/products/xg-firewall/f/network-and-routing/73615/how-do-you-create-a-loopback-hairpin-nat-to-an-interface-ip

on setting up NAT Reflection. I get stuck on the first step to setup a "Non HTTP Based Policy" Business Rule. I don't see "Non HTTP Based Policy" anywhere. and the other templates don't have the same options like the ones talked about in the guides. Are these guides for the old UI before the recent update? How do I set this up with the new UI? Thanks for any help.



This thread was automatically locked due to age.
  • Clint,

    On v16 you can create business application rule and select the template dnat and then proceed with the rest of configuration. In v16 it changed again.

  • Thank you. I needed to select the "DNAT/Full NAT/Load Balancing" template. But the steps are referring to sections that are not there. This is what I did and it worked. Although I have to clone the rule for every server I need this on.

    Section: Source

    Source Zones: Any

    Allowed Client Networks: Any

    Blocked Client Networks: [blank]

    Section: Destination and Service

    Destination Host/Network: Port2 (External IP)

    Forward Type: Port

    Service Port Forwarded: [NAT port] Select TCP or UDP. If you need both make another rule.

    Section: Forward To

    Protected Server: [IP or alias of server]

    Mapped Port Type: Port

    Mapped Port: [application port on the server]

    Protected Zone: LAN

    Section: Advanced

    Use outbound Address: MASQ