does anyone know how to NAT on a IX20

I want to know if it’s possible to configure source NAT over VPN in a Site to Site?

I need to NAT a network that already exists in my destination

You need to use custom firewall rules and create a Netmap.

iptables -t nat -I PREROUTING -i ipsec_VPN -d -j NETMAP --to
iptables -t nat -I POSTROUTING -o ipsec_VPN -s -j NETMAP --to

In the above example, is my logical local vpn subnet and is my physical ethernet subnet. ipsec_VPN needs to be ipsec_ and the name of the tunnel you have created. There was a bug where ipsec tunnel names couldn’t be more than 8 characters so keep it simple.

Nicholas Wilson
