Topology: EdgeRouter -> R1 - NAT -> R2 - BNG
Configuration:
Code: Select all
### Router 1
/ip address
add address=11.11.11.11 interface=VL_100-NAT-to-BNG network= 11.11.11.12
/ip route
add distance=1 dst-address=10.10.27.52/30 gateway=11.11.11.12 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
/ip firewall nat
add action=src-nat chain=srcnat comment="Server #1" out-interface=OUT_INTERFACE src-address=10.10.27.54 to-addresses=22.22.22.22
add action=dst-nat chain=dstnat dst-address=22.22.22.22 dst-port=80 protocol=tcp to-addresses=10.10.27.54 to-ports=80
add action=dst-nat chain=dstnat dst-address=22.22.22.22 dst-port=443 protocol=tcp to-addresses=10.10.27.54 to-ports=443
add action=dst-nat chain=dstnat dst-address=22.22.22.22 dst-port=8080 protocol=tcp to-addresses=10.10.27.54 to-ports=8080
add action=dst-nat chain=dstnat dst-address=22.22.22.22 protocol=icmp to-addresses=10.10.27.54
### Router 2
/ip address
add address=11.11.11.12 interface=VL_100-NAT-to-BNG network= 11.11.11.11
add address=10.10.27.53/30 comment="Server #1" interface=Bridge network=10.10.27.52
/ip route
add disabled=no dst-address=0.0.0.0/0 gateway=11.11.11.11 routing-table=main suppress-hw-offload=no
R1 handles NAT
R2 handles PPPoE connections and servers
I have a server with the IP address 10.10.27.54/30 on R2
On R1, I've routed traffic destined for the 10.10.27.52/30 network to the R2 gateway (public IP) and NAT'ed the server's IP address (10.10.27.54) to another public ip 22.22.22.22 on R1
The problem:
While I can ping/reach the server's original IP address (10.10.27.54) from R1 without any issues, I'm unable to ping the NATed IP address (22.22.22.22). When attempting to ping/reach 22.22.22.22 from R1, I receive the error message "Invalid argument".
I can both reach its local ip and NAT'ed IP on R2 without any issue. Also the server is reachable from the outside of the network without any issues.
I've already tried the following troubleshooting steps without success:
Verified the NAT configuration on R1 to ensure proper translation of traffic.
Checked firewall rules on R1 to ensure ICMP packets to the NATed IP address are allowed.
Confirmed interface configuration on R1 for any errors or issues.
Despite these efforts, the issue persists. Can anyone provide guidance on how to resolve this problem? Are there any additional steps I should take to troubleshoot or any potential misconfigurations I might have overlooked?
Any help would be greatly appreciated!