Community discussions

MikroTik App
 
elfking
just joined
Topic Author
Posts: 16
Joined: Fri Jul 20, 2012 8:47 am

Portforward masking source IP?

Fri Jul 20, 2012 8:54 am

Hi All,
I have a server on my LAN which checks that all connections are 'local' and in the same Subnet. I have a few VPN connections that need to reach this server. Is there a way for me to port forward from the mikrotik to an internal server on the same network but mask the source IP and make it look like the traffic was coming FROM the mikrotik originally ? For instance:

VPN user (10.10.16.2) ---VPN TUNNEL----> 192.168.88.1 (mikrotik) ----LAN ----> Local server (192.168.88.11)

I have tried the standard dst-nat port forward, but the service on the local server in the logs still shows the connection from 10.10.16.2 and denies me. (my goal would be to make the traffic starting at 10.10.16.2 appear as if its coming from 192.168.88.1 but being forwarded to 192.168.88.11

Maybe Proxy could get this done, but I thought maybe a rule could take care of it as well.

Any ideas would be great, maybe I am just missing something easy.

Thank you,
-Brian
 
User avatar
ojsa
Member Candidate
Member Candidate
Posts: 181
Joined: Tue Jan 27, 2009 8:53 pm
Location: Norway

Re: Portforward masking source IP?

Wed Aug 01, 2012 12:04 am

use src-nat with action masquerade

Who is online

Users browsing this forum: Bing [Bot], Google [Bot], GoogleOther [Bot], VirtualEvan and 135 guests