This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SNAT problem in Firmware 9.707.


Someone have problems with SNAT? SNAT ( Hide NAT ) from LAN to Internet.

After PPP interface is reconnected and received new / different IPv4 address, the UTMv9 is still using the old IPv4 address for old sessions ( verification using tcpdump ).

Sometimes it resolves by it self ... and sometimes after restart ...

It's sporadic and I was unable to understand why it's happening.

When there is a problem, new sessions are working and SNAT is using new IPv4.

In version 9.705-3 and before worked flawlessly with the same configuration.

Is there a way to clear NAT cache?

* Unable to open a case. I'm using free UTMv9 for personal testing purposes as VM ( although license specifies that I should be able to open a case ... but it seems that this option lost in Sophos on the way ... ).  

Thank You.

This thread was automatically locked due to age.
Parents Reply
  • Assuming that "ISP Partner Fiber" is your external interface connected to your ISP, that should work.  UTM "culture" is to also select 'Automatic Firewall rule'.

    Instead of using an SNAT, the "standard" way to do this in UTM is with a Masquerading rule:


    Cheers - Bob

    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA