transalate ip address using firewall rule

Dear,
I want configure Digi Transport wr44 firewall, to translate the source IP ( from 10.30.1.0/24 to 10.31.20.0/24), i added the following rule.
pass in break end on eth 1 from 10.30.1.0/24 to 192.168.114.0/24 -> 10.31.20.0/24 to 192.168.114.0/24.

My question, does this means, for all traffic coming on ETH1, the DIGI will translate source address from 10.30.1.0/24 to 10.31.20.0/24?

because it’s not working.
since, i have VPN tunnel up, from remote subnet 192.168.114.0/24 and local subnet 10.31.20.0/24.
And i don’t see nothing when i ping 192.168.114.0/24 from 10.30.1.0/24.

in other side i implement other rule
pass in break end oneroute any from 192.168.114.0/24 to 10.31.20.0/24 -> to 10.30.1.0/24.

and it works, i can ping 10.30.1.0/24 from 192.168.114.0/24.

please help me.
best regards

1 Like

Hi

to answer you question the answer is NO

only traffic that is going to 192.168.114.0/24 from 192.168.30.1 will be translated this will then enter the router and where it goes from there depends on configuration and routing.

have you taken analyser traces to see what is going into the VPN and what is coming out on the other end.

regards

James