Quantcast
Channel: All EdgeRouter posts
Viewing all articles
Browse latest Browse all 60861

Re: Hairpin NAT from VLAN1 to VLAN2 (I cannot access my webserver on VLAN2 from main LAN)

$
0
0

 
The "missing hairpin masquerade rule" is normally required, to make sure the return packet is also sent to the router.

Here you don't need it, because source of the request already is on another VLAN (=another router interface) and thus return packet is already sent to the firewall.

Although request and response are sent on the same cable, this is no hairpin!  Inter vlan communcation like this is more like router on a stick. (with additional dNAT rule)

 


Viewing all articles
Browse latest Browse all 60861

Latest Images

Trending Articles





Latest Images