VMware Cloud Community
LunThrasher
Enthusiast
Enthusiast

vShield Edge Source NAT not applied without reboot

Hi,

I'm playing around with vshield edge in my lab and found that configuring firewalls rules work immediately, access is granted or denied based on whatever the admin sets, however when setting up source nat rules, the rule says it's applied but actually does not work without rebooting the gateway ?

I hope that this is not normal operation ? Does anyone else see the same ?

Tutorials for System Admins www.sysadmintutorials.com
Reply
0 Kudos
2 Replies
0v3rc10ck3d
Enthusiast
Enthusiast

I've never experienced this in production.

Keep in mind that NAT rules can be dragged up or down based on priority. If you have a rule that encompasses an entire subnet above a rule that specifies a specific ip. then it will not take effect.

VCIX6 - NV | VCAP5 - DCA / DCD / CID | vExpert 2014,2015,2016 | http://www.vcrumbs.com - My Virtualization Blog!
Reply
0 Kudos
LunThrasher
Enthusiast
Enthusiast

Hi Josh thanks for your reply, however I only have one snat rule and my firewall rule is any any.

My ESXi is in a nested config which is just for my lab, so could have something to do with that.

I'll be building the production side by side, so hopefully I don't see the same behaviour on production Smiley Happy

Tutorials for System Admins www.sysadmintutorials.com
Reply
0 Kudos