안녕하세요.
미크로틱 에서 헤어핀을 설정하고 잘 사용 하고 있었습니다.
그러다가 ovpn 을 설정 해서 vpn 접속으로 사용중인데 헤어핀이 작동을 안하네요,,
IP를 직접 입력 해도 접속이 안됩니다. 근데 vpn 연결을 끊으면 또 헤어핀이 잘 작동 합니다.
이걸 어떻게 해결 해야 할까요,,
NAT 설정은 아래와 같습니다.조언 부탁드립니다.
=======================================================
0 ;;; Hairpin NAT step 1
chain=srcnat action=masquerade protocol=tcp src-address=192.168.88.0/24
dst-address=!192.168.88.254 log=no log-prefix=""
1 ;;; WAN NAT
chain=srcnat action=masquerade out-interface=WAN log=no log-prefix=""
2 ;;; Hairpin NAT Xpenology DSM
chain=dstnat action=dst-nat to-addresses=192.168.88.22 to-ports=5000
protocol=tcp dst-address=!192.168.88.254 dst-address-type=local
dst-port=1789 log=no log-prefix="HTTPS_MIS"
3 ;;; Hairpin NAT Xpenology DSM
chain=dstnat action=dst-nat to-addresses=192.168.88.22 to-ports=80
protocol=tcp dst-address=!192.168.88.254 dst-address-type=local
dst-port=80 log=no log-prefix="HTTPS_MIS"
4 ;;; xpenology
chain=dstnat action=dst-nat to-addresses=192.168.88.22 to-ports=5000
protocol=tcp dst-address-type=local in-interface=all-ethernet
dst-port=1789 log=no log-prefix=""
5 ;;; minecraft_java
chain=dstnat action=dst-nat to-addresses=192.168.88.8 to-ports=25565
protocol=tcp in-interface=WAN dst-port=25565 log=no log-prefix=""
6 ;;; minecraft_java
chain=dstnat action=dst-nat to-addresses=192.168.88.8 to-ports=25565
protocol=udp in-interface=WAN dst-port=25565 log=no log-prefix=""
7 ;;; minecraft_java
chain=dstnat action=dst-nat to-addresses=192.168.88.8 to-ports=25565
protocol=udp in-interface=LAN dst-port=25565 log=no log-prefix=""
8 ;;; minecraft_java
chain=dstnat action=dst-nat to-addresses=192.168.88.8 to-ports=25565
protocol=tcp in-interface=LAN dst-port=25565 log=no log-prefix=""
9 chain=dstnat action=dst-nat to-addresses=192.168.88.42 to-ports=90
protocol=tcp in-interface=WAN dst-port=90 log=no log-prefix=""
10 chain=dstnat action=dst-nat to-addresses=192.168.88.22 to-ports=5000
protocol=udp in-interface=WAN dst-port=1789 log=no log-prefix=""
11 chain=dstnat action=dst-nat to-addresses=192.168.88.10 to-ports=983
protocol=tcp in-interface=WAN dst-port=983 log=no log-prefix=""
12 chain=dstnat action=dst-nat to-addresses=192.168.88.10 to-ports=983
protocol=udp in-interface=WAN dst-port=983 log=no log-prefix=""
|
|
|
|