Owner: Emmanuel Technology Consulting
Former Sophos SG(Astaro) advocate/researcher/Silver Partner
PfSense w/Suricata, ntopng,
Other addons to follow
Hi Heli0s,
I've noted periodic problems with systems on my home network using NTP to correct/update their time. Like you, I wanted a way to redirect all outbound NTP requests to the UTM itself. My first attempt was a policy route to redirect NTP requests, but I couldn't get it to work. After searching the webs, I eventually found this post and decided to give your method (destination NAT) a go. It took a bit of trial and error--initially was stumped by "any" address object errors--but eventually found a configuration that works great. It's nice not to need to manually re-configure each system using NTP.
I'm including a screenshot of my destination NAT rule that handles this, in hopes it helps others. Thank you!