Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Problem with port forward rules interfering with LAN->WAN masquerading

If I create a Business Application Rule for ports 80 and 443 to an internal web server, and I have that policy rule above the generic Lan->Wan allow all rule then the outgoing web traffic from the web server is not masqueraded. All other machines on the LAN do not have this issues, only the web server.

I have verified this from a packet capture and I can see the packets are forwarded with their internal source address intact.

If I move the Wan->Lan Business Application Rule to be below the Lan->Wan Masquerading User/Network Rule then there is no problem.

There should be no problem as the Wan->Lan rule should not effect traffic originating on the Lan.



This thread was automatically locked due to age.
Parents Reply Children
No Data