Bug 11937 - firewall: SNAT on RED also NATs packets that are going through a VPN
Summary: firewall: SNAT on RED also NATs packets that are going through a VPN
Status: CLOSED DUPLICATE of bug 12162
Alias: None
Product: IPFire
Classification: Unclassified
Component: --- (show other bugs)
Version: 2
Hardware: unspecified Unspecified
: Will only affect a few users Major Usability
Assignee: Alexander Marx
QA Contact:
URL:
Keywords:
Depends on:
Blocks: FWBUGS
  Show dependency treegraph
 
Reported: 2018-11-22 13:33 UTC by Michael Tremer
Modified: 2020-02-20 14:40 UTC (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Michael Tremer 2018-11-22 13:33:33 UTC
I have a SNAT rule for our IPFire email server which NATs all outgoing SMTP connection to the public IP address of the mail server.

That rule also NATs all SMTP packets that are going through a VPN which I did not expect.

The source of the rule is the IP address of the email server, destination is RED.

There should be entries in the SNAT table for all non-NAT rules that just run ACCEPT so that NAT never happens for those rules where it is not intended.
Comment 1 Michael Tremer 2020-02-20 14:40:33 UTC

*** This bug has been marked as a duplicate of bug 12162 ***