And I succesfully exempt a machine using a single mac address but it doesn’t allow me to add more. Is there a way to add more without adding another NAT rule?
Last rule with action=redirect assumes that you redirect requests to router itself. If not and you want to use external address, then use “action=dst-nat to-addresses=” instead.