Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Converting iptables to NAT rule


I have been given an iptables command and I would like to create the same rule on my XG. Could anyone confirm if I have "translated" the rule correctly, please?

iptables -t nat -I PREROUTING -s -d -p tcp --dport 33000 -j DNAT --to-destination

Original source: (Risco Garage)

Original destination

Original service

TCP 33000

Translated source (SNAT)


Translated destination (DNAT)

Home Assistant

Translated service (PAT)


Inbound interface


Outbound interface


PortB.23 is the VLAN of "Risco Garage"

PortC is my WAN interface. 

Thank you in advance.


License: Home User

Firmware: SFOS 20.0.1 MR-1-Build342

Added TAGs
[edited by: Raphael Alganes at 2:54 PM (GMT -7) on 12 Jun 2024]