Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Nat question - Masq or SNAT

I have 4 internal lans:

LAN A = 10.1.1.0/24
LAN B = 10.1.2.0/24
LAN C = 10.1.3.0/24
LAN D = 10.1.4.0/24

I have 3 WAN's:

WAN A = 1.1.1.1
WAN B = 2.2.2.2
WAN C = 3.3.3.1/29  (goes to 192.168.1.0/24 via 3.3.3.2/29)

I want to nat all LAN's to various WAN's

LAN A >>> WAN A (using Masquerade)
LAN B >>> WAN B (using Masquerade)
LAN C >>> WAN C (using Masquerade)

I want LAN D >>> WAN C (using Masquerade)

However, I also want LAN A to nat to WAN C when a user tries to get to 192.168.1.0/24

Bear in mind that LAN A already has a masq rule to WAN A



This thread was automatically locked due to age.
Parents
  • Like Sachin says, if you want to do it the old-fashioned way [;)], you also need a Policy Route for each LAN.

    The easier way to do this is with Uplink Balancing.  Use Multipath rules with persistence by interface.  Depending on whether or not you want to allow a LAN to use one of the other WAN connections if theirs dies, you might want to uncheck 'Skip rule on interface error' in the 'Advanced' section.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Like Sachin says, if you want to do it the old-fashioned way [;)], you also need a Policy Route for each LAN.

    The easier way to do this is with Uplink Balancing.  Use Multipath rules with persistence by interface.  Depending on whether or not you want to allow a LAN to use one of the other WAN connections if theirs dies, you might want to uncheck 'Skip rule on interface error' in the 'Advanced' section.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?