Community discussions

MikroTik App
 
he1ium
newbie
Topic Author
Posts: 36
Joined: Fri Aug 07, 2009 7:30 am

1to1 NAT = no internal access

Thu Oct 15, 2009 1:28 am

I have a 1to1 NAT forwarding my public IPs to my servers internal IPs (10.1.10.xxx). The internal IPs are on a network running OSPF. The problem is I can't access the servers using their internal IPs. If I send a ping, it reaches the server but the return route is forwarded directly to the public IP which knows nothing about my internal network. I don't want to run OSPF on the external network. Is there a way to mark these packets (everything on 10.0.0.0/8) so they are not directly forwarded to the correlating public IP by the NAT? Thanks in advance.
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8709
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: 1to1 NAT = no internal access

Thu Oct 15, 2009 2:32 am

please be more specific. what's your network/router configuration?
 
shielder
Member Candidate
Member Candidate
Posts: 221
Joined: Wed Feb 09, 2005 7:09 pm
Location: Indonesia

Re: 1to1 NAT = no internal access

Sun Oct 18, 2009 6:46 am

for 1 : 1 NAT, use action="netmap"
 
he1ium
newbie
Topic Author
Posts: 36
Joined: Fri Aug 07, 2009 7:30 am

Re: 1to1 NAT = no internal access

Tue Oct 20, 2009 8:09 am

I figured it out. I needed to put a ! 10.0.0.0/8 rule in there so it did not pass requests to this dst network through the NAT. Similar ! rule to stop masquerading. Thanks though.

Who is online

Users browsing this forum: No registered users and 20 guests