Hi all,
I am struggling with a Source-Nat rule.
I have the following config for the outgoing interface:
interfaces ge-0/0/1
flexible-vlan-tagging;
native-vlan-id 10;
unit 0 {
vlan-id 10;
family inet {
address 172.29.1.1/24;
address 172.29.2.1/24;
address 172.29.3.1/24;
}
}
I use the following rules for source-natting:
rule-set vpn-mgt {
from zone vpn;
to zone mgt;
rule snat-vpn-mgt {
match {
source-address 0.0.0.0/0;
}
then {
source-nat {
interface;
}
}
}
}
We do see translation happen but to the wrong ip address.
If we try to ping 172.29.2.2 we will get the ip 172.29.1.1 from the interface.
Can this be solved or do I have to use address pools instead?
your sincerely,