I am having problems with my NAT rules at our internet gateway. Everything works properly for our 1-to-1 NAT except if you try to get to one of the 1-to-1 NAT’d addresses from inside the network. I assume that there’s something wrong with my DST-NAT or SRC-NAT Rules.
Oddly enough that doesn’t seem to be working properly. I’m running a fairly large firewall with over 200 rules, mainly 1-to-1 IP address assignments to customers inside the network.
So post the rule sets you have. It’s much easier to have an opinion on actual configuration than to wildly guess. Far less frustrating for both the people helping and the person asking for help, too.
From what you posted it should be working with the rule enabled. Traffic from internal to the public would first hit destination NAT and be directed back to internal, and would then hit source NAT to be masqueraded to the router IP as required for hairpin NAT.
Have you looked at other configuration besides NAT? Firewall filters, etc.?