I have a question, how can a make a default route of my "VRF Guest" if I have only one public internet address.
Configuration:
This configuration is working, if i don't use a VRF.WAN-Interface: DHCP Client which gets an IP Address (e.g. 200.200.200.200) and a gateway (e.g. 200.200.200.1).
NAT: Chain=srcnat Out-Interface=WAN-Interface action=masquerade
Bridge: Guest inc. Guest-WAN
Now I want to move the Guest-Bridge to a VRF and set a default Route to Internet.
Done, but now I would need a NAT/masquerade for this VRF, but I have only ONE public internet address.VRF: Guest, including the Bridge Guest
VRF Route: 0.0.0.0/0 to 200.200.200.1@main
I tried
This is not working :(Firewall NAT: routing-mark=Guest out-interface=WAN action=masquerade
Does somebody know, how I can configure to allow this VRF internet access?
Thanks for your help.