We migrated to pfSense from m0n0wall so when we started we didn't have NAT reflection enabled. I can't seem to get it to work. https://doc.pfsense.org/index.php/Advanced_Setup only mentions reflection in passing.
What I've done is to: NAT 1:1 set up to a single host NAT reflection is set to Enable In System/Advanced/Firewall & NAT: NAT Reflection mode NAT+proxy Reflection timeout 30 sec Enable NAT Reflection for 1:1 NAT checked Enable automatic outbound NAT for Reflection checked Is the "automatically created" rule reference by "Enable NAT Reflection for 1:1 NAT" actually supposed to be created somewhere? Or created in the background on the fly? If I try to browse to the public IP from the 1:1 NAT, I don't seem to connect or get anything logged in the firewall logs. There is a firewall rule from * to the internal IP of the NAT 1:1. Do I need a rule on the LAN side, since the traffic would be coming from the LAN side? -- Steve Yates ITS, Inc. _______________________________________________ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold