Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Can I have 1 to 1 NAT using network ranges?

Hi,

I am trying to create a 1 to 1 nat rule that  will allow traffic to servers xxx.xxx.xxx.6 to 150 to be mapped to zzz.zzz.zzz.6. to 150.

If I try using range objects the rule is rejected - "the data specified is invalid"

My rule is as follows:

Group: No group

Position: 1

For traffic from: Any

Using Service: HTTP

Going to: External Web  (range object)

1:1 NAT mode : Map Destination

Map to: Internal Web ( range object) - I cannot add this to the field.

Any ideas or can't you 1 to 1 NAT with range objects?

Thanks

Jon



This thread was automatically locked due to age.
  • Hi, Jon, and welcome to the UTM Community!

    Range definitions were added several years ago. I don't use them anywhere because I consider them to be buggy. If you can't use a full /24, I would make multiple 1-to-1 rules using smaller subnets that give you exactly what you need.

    Cheers - Bob