Page 1 of 1

mikrotik nat problem

Posted: Wed Feb 19, 2014 6:28 am
by hasanakgoz
Hi ;

I'm using mikrotik CCR1036-12G-4S. I have ( cidr notation) private ip block. I want to do 1:1 NAT some IP addresses.

for example: ( private ip adress ) --> ( public ip adress)

/ip firewall nat add chain=srcnat src-address= action=src-nat \

but is not working. packets counters is zero. no package does not get caught.

if use netmap

for example

/ip adress firewall chain=srcnat action=netmap to-addresses= src-address=

netmap NAT is working. I have to watch the way how to solve this problem. How do I write a correct NAT rule ? very simple operation, but I can not be successful :(

Re: mikrotik nat problem

Posted: Wed Feb 19, 2014 7:59 pm
by CelticComms
Check the position of the SRC NAT rule in relation to others - perhaps the relevant traffic is already being acted on earlier. Perhaps upload your NAT entries.

Re: mikrotik nat problem

Posted: Wed Feb 19, 2014 8:57 pm
by unridaz
Why not masquerade?

/ip firewall nat add chain=srcnat src-address= out-interface=ether1-gateway action=masquerade

Re: mikrotik nat problem

Posted: Wed Feb 19, 2014 10:22 pm
by hasanakgoz
Hi Guys;


problem is solved. No problem in the sort. I noticed now. ip address dhcp ip address with different hotspot. Type the IP address of the hotspot nat worked. So why be different?

/ip pool used print
hs-pool-6 hotspot 14:DA:E9:AB:26:EF
hs-pool-6 DHCP 14:DA:E9:AB:26:EF


I'm working on the campus network. in a legal situation (ilegal content, copyright, etc. ..) that provides access to private IP addresses need to increase public ip address.If I use one ip address for 2000 people not eligible for legal investigations.