[Mikrotik] Simple 1:1 NAT on Mikrotik

Jacob Heider jhheider at gmail.com
Tue Jun 12 14:22:30 CDT 2012


Ah, then my earlier question:

 > Have you assigned the public IP on the public interface of the MT?

was insufficiently specific. Have you assigned the public IP *which you 
are attempting to NAT* to the public interface of the Mikrotik? I don't 
know, offhand, whether a NAT with not physical interface will ARP. I 
rather imagine it won't.
> Mike Lyon <mailto:mike.lyon at gmail.com>
> June 12, 2012 15:19
> So how would I keep the router accessible and then have the 1:1 NAT
> working? I have one public IP for the router and then another public 
> IP for
> the 1:1 NAT.
>
> I'm a Cisco guy and this is my first attempt on setting up NAT on MK.
>
> Thanks,
> Mike
>
>
>
>
>
> Jacob Heider <mailto:jhheider at gmail.com>
> June 12, 2012 15:15
> And changed the dstnat rule as well? If it's working, you shouldn't be 
> able to access the router from the outside any more.
>
> -------------- next part --------------
> An HTML attachment was scrubbed...
> URL: 
> <http://www.butchevans.com/pipermail/mikrotik/attachments/20120612/0fed831d/attachment.html> 
>
> _______________________________________________
> Mikrotik mailing list
> Mikrotik at mail.butchevans.com
> http://www.butchevans.com/mailman/listinfo/mikrotik
>
> Visit http://blog.butchevans.com/ for tutorials related to Mikrotik 
> RouterOS
>
> Mike Lyon <mailto:mike.lyon at gmail.com>
> June 12, 2012 15:13
> Added:
>
> /ip firewall nat add chain=srcnat src-address=<internal IP address> \
> action=netmap to-addresses=<public ip address>
>
> Still no love...
>
> -Mike
>
>
>
>
>
>
> Jacob Heider <mailto:jhheider at gmail.com>
> June 12, 2012 15:09
> Based on the link, looks like you want the action "netmap", as well as 
> the reflexive rule.
>
> -------------- next part --------------
> An HTML attachment was scrubbed...
> URL: 
> <http://www.butchevans.com/pipermail/mikrotik/attachments/20120612/5cf1dfa9/attachment.html> 
>
> _______________________________________________
> Mikrotik mailing list
> Mikrotik at mail.butchevans.com
> http://www.butchevans.com/mailman/listinfo/mikrotik
>
> Visit http://blog.butchevans.com/ for tutorials related to Mikrotik 
> RouterOS
>
> Jacob Heider <mailto:jhheider at gmail.com>
> June 12, 2012 14:55
> Have you assignedthe public IP on the public interface of the MT? You 
> probably also want the reflexive rule as shown here:
>
> http://wiki.mikrotik.com/wiki/Manual:IP/Firewall/NAT#1:1_mapping
>
> -------------- next part --------------
> An HTML attachment was scrubbed...
> URL: 
> <http://www.butchevans.com/pipermail/mikrotik/attachments/20120612/73f6a2fc/attachment.html> 
>
> _______________________________________________
> Mikrotik mailing list
> Mikrotik at mail.butchevans.com
> http://www.butchevans.com/mailman/listinfo/mikrotik
>
> Visit http://blog.butchevans.com/ for tutorials related to Mikrotik 
> RouterOS
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.butchevans.com/pipermail/mikrotik/attachments/20120612/66d486c0/attachment.html>


More information about the Mikrotik mailing list