we have created a Masquerading rule for the whole network! We have more then on ip address bound on the firewall and the ASL use now not the specified ip!
are this additional Adresses on your Interface? If yes i had the same Thing. So i defined some NAT-rules for Traffic from the additional IP to your "main-ip"
Yes, this are all additional adresses! We have now created a DNAT/SNAT Rule and everything works fine but this should not be the solution for this problem!! :-)
please assign a 32 bit mask to the alias interfaces and no default gateway. This way only the real interface IP address should be used for masquerading.