Project

General

Profile

Actions

Bug #3787

closed

Outbound NAT to VIP AMD64 not working from OPT1 interface

Added by Brian Jensen almost 10 years ago. Updated almost 10 years ago.

Status:
Rejected
Priority:
Urgent
Assignee:
-
Category:
-
Target version:
-
Start date:
07/31/2014
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
Affected Architecture:

Description

No matter what I do and how I try to get it working, it doesnt work.

As long as I keep the WAN interface address the same as the host interface, it works fine.

One can browse the internet and search for updates etc.

AS soon as I change it to VIP, then it cannot connect to the internet.

Rules are in place setting the OPT1 interface with ANY all over.


Files

outboundNAT.jpg (45.5 KB) outboundNAT.jpg Brian Jensen, 07/31/2014 11:40 AM
firewall_rules.jpg (51.3 KB) firewall_rules.jpg Brian Jensen, 07/31/2014 11:40 AM
pfsense_system.jpg (180 KB) pfsense_system.jpg Brian Jensen, 07/31/2014 11:40 AM
Actions #1

Updated by Brian Jensen almost 10 years ago

Its version 2.1.4

Not 2.2.

I know that 8.3 is EOL but basic FW functions are not working here, so needs urgent fix.

Actions #2

Updated by Chris Buechler almost 10 years ago

  • Status changed from New to Rejected

you have a config problem or a general network issue with that IP (stale upstream ARP cache, IP conflict). outbound NAT works fine, and 8.3 is fully supported by us.

Actions #3

Updated by Brian Jensen almost 10 years ago

Chris Buechler wrote:

you have a config problem or a general network issue with that IP (stale upstream ARP cache, IP conflict). outbound NAT works fine, and 8.3 is fully supported by us.

It works fine when I change the outbound NAT back to WAN Address. It breaks when changed to one of the VIP's.

This setup is fine in 2.0.3. I havent tested the 32 bit version of 2.1.4

I dont have network issues, and I own the IP range that they are attached to.

Actions #4

Updated by Brian Jensen almost 10 years ago

Chris Buechler wrote:

you have a config problem or a general network issue with that IP (stale upstream ARP cache, IP conflict). outbound NAT works fine, and 8.3 is fully supported by us.

And its all the VIP address' Chris. Not just one...

Its on multiple servers and multiple physical nic's connected to the firewall.

Actions #5

Updated by Chris Buechler almost 10 years ago

There are absolutely no such issues. Please use one of our support channels for assistance. https://pfsense.org/support

Actions

Also available in: Atom PDF