I have a webserver behind router.
So I did port forwarding for 80 tcp to server inside lan 192.168.1.250.
Websites are visible from internet but from the same subnet as my serwer I am unable to get it works :/
Could someone advice me how to solve this issue ?
I've read about hairpin NAT and I tried to use it in my env.
Unfortunatelly still my websites are not visible.
Here is my NAT config:
Code: Select all
/ip firewall nat> print
Flags: X - disabled, I - invalid, D - dynamic
0 chain=srcnat action=masquerade protocol=tcp src-address=192.168.1.0/24
dst-address=192.168.1.250 out-interface=bridge-local dst-port=80 log=no
log-prefix=""
1 ;;; default configuration
chain=srcnat action=masquerade out-interface=ether1-gateway log=no
log-prefix=""
2 chain=dstnat action=dst-nat to-addresses=10.0.3.101 to-ports=10011
protocol=tcp in-interface=ether1-gateway dst-port=10011 log=no
log-prefix=""
3 chain=dstnat action=dst-nat to-addresses=10.0.3.101 to-ports=5002
protocol=tcp in-interface=ether1-gateway dst-port=5002 log=no
log-prefix=""
4 chain=dstnat action=dst-nat to-addresses=10.0.3.101 to-ports=5002
protocol=udp in-interface=ether1-gateway dst-port=5002 log=no
log-prefix=""
5 chain=dstnat action=dst-nat to-addresses=10.0.3.108 to-ports=80
protocol=tcp in-interface=ether1-gateway dst-port=8808 log=no
log-prefix=""
6 chain=dstnat action=dst-nat to-addresses=10.0.3.108 to-ports=21
protocol=tcp in-interface=ether1-gateway dst-port=22218 log=no
log-prefix=""
7 chain=dstnat action=dst-nat to-addresses=10.0.3.108 to-ports=22228
protocol=tcp in-interface=ether1-gateway dst-port=22228 log=no
log-prefix=""
8 chain=dstnat action=dst-nat to-addresses=10.0.3.56 to-ports=21
protocol=tcp in-interface=ether1-gateway dst-port=22211 log=no
log-prefix=""
9 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=27015
protocol=tcp in-interface=ether1-gateway dst-port=27015 log=no
log-prefix=""
10 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=5432
protocol=tcp in-interface=ether1-gateway dst-port=5432 log=no
log-prefix=""
11 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=79
protocol=tcp in-interface=ether1-gateway dst-port=79 log=no
log-prefix=""
12 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=22
protocol=tcp in-interface=ether1-gateway dst-port=22230 log=no
log-prefix=""
13 chain=dstnat action=dst-nat to-addresses=10.0.3.111 to-ports=21
protocol=tcp in-interface=ether1-gateway dst-port=22121 log=no
log-prefix=""
14 chain=dstnat action=dst-nat to-addresses=10.0.3.111 to-ports=22
protocol=tcp in-interface=ether1-gateway dst-port=22231 log=no
log-prefix=""
15 chain=dstnat action=dst-nat to-addresses=192.168.1.250 to-ports=21
protocol=tcp in-interface=ether1-gateway dst-port=21 log=no
log-prefix=""
16 chain=dstnat action=dst-nat to-addresses=192.168.1.200 to-ports=3389
protocol=tcp in-interface=ether1-gateway dst-port=33891 log=no
log-prefix=""
17 chain=dstnat action=dst-nat to-addresses=10.0.3.111 to-ports=80
protocol=tcp in-interface=ether1-gateway dst-port=8811 log=no
log-prefix=""
18 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=22
protocol=tcp in-interface=ether1-gateway dst-port=22232 log=no
log-prefix=""
19 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=9987
protocol=tcp in-interface=ether1-gateway dst-port=11200 log=no
log-prefix=""
20 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=9987
protocol=udp in-interface=ether1-gateway dst-port=11200 log=no
log-prefix=""
21 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=10011
protocol=tcp in-interface=ether1-gateway dst-port=11201 log=no
log-prefix=""
22 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=10011
protocol=udp in-interface=ether1-gateway dst-port=11201 log=no
log-prefix=""
23 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=30033
protocol=tcp in-interface=ether1-gateway dst-port=11202 log=no
log-prefix=""
24 chain=dstnat action=dst-nat to-addresses=10.0.3.112 to-ports=30033
protocol=udp in-interface=ether1-gateway dst-port=11202 log=no
log-prefix=""
25 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=500
protocol=tcp in-interface=ether1-gateway dst-port=1100 log=no
log-prefix=""
26 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=1701
protocol=tcp in-interface=ether1-gateway dst-port=1101 log=no
log-prefix=""
27 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=1723
protocol=tcp in-interface=ether1-gateway dst-port=1102 log=no
log-prefix=""
28 chain=dstnat action=dst-nat to-addresses=10.0.3.110 to-ports=4500
protocol=tcp in-interface=ether1-gateway dst-port=1103 log=no
log-prefix=""
29 chain=dstnat action=dst-nat to-addresses=192.168.1.250 to-ports=80
protocol=tcp in-interface=ether1-gateway dst-port=80 log=no
log-prefix=""
30 chain=dstnat action=dst-nat to-addresses=10.0.3.58 to-ports=21
protocol=tcp in-interface=ether1-gateway dst-port=22118 log=no
log-prefix=""
31 chain=dstnat action=dst-nat to-addresses=10.0.3.113 to-ports=22
protocol=tcp in-interface=ether1-gateway dst-port=22233 log=no
log-prefix=""
32 chain=dstnat action=dst-nat to-addresses=10.0.3.113 to-ports=5900
protocol=tcp in-interface=ether1-gateway dst-port=11300 log=no
log-prefix=""
33 chain=dstnat action=dst-nat to-addresses=192.168.1.251 to-ports=22
protocol=tcp in-interface=ether1-gateway dst-port=222 log=no
log-prefix=""
34 chain=dstnat action=dst-nat to-addresses=10.0.3.101 to-ports=5119
Flags: X - disabled, I - invalid, D - dynamic
0 chain=srcnat action=masquerade protocol=tcp src-address=192.168.1.0/24
dst-address=192.168.1.250 out-interface=bridge-local dst-port=80 log=no
log-prefix=""