➕Adding Extra VLANs to an Edge CPE NAT🛜

Ronald BartelsRonald Bartels
1 min read

Its not sufficient even for a small business to have one LAN private IP range because of the prevalence of OT and IoT devices.

No problem, create the following file:

/etc/bonding/nftables/nat-postrouting-ipv4-cpe-nat.nft

oifname "tun2973" ip saddr 10.0.0.0/8 snat to 151.152.153.154

“tun2973” is the tunnel interface, 10.0.0.0/8 is the ip range and 151.152.153.154 is the public ip.

To activate restart the edge or

sudo service bonding-nftables restart


0
Subscribe to my newsletter

Read articles from Ronald Bartels directly inside your inbox. Subscribe to the newsletter, and don't miss out.

Written by

Ronald Bartels
Ronald Bartels

Driving SD-WAN Adoption in South Africa