Got it

AR600 hairpin NAT

Created: Oct 30, 2021 07:46:17Latest reply: Oct 30, 2021 08:07:23 271 3 0 0 0
  Rewarded HiCoins: 5 (problem resolved)

Hi,


I have a problem that I cannot figure out and couldn't find any examples or docs on how to do it, I have the following configuration:


interface Dialer1

 link-protocol ppp                        

 ppp ipcp default-route

 ppp pap local-user XXXXXXXXXXX

 ppp ipcp dns request

 ip address ppp-negotiate

 dialer user XXXXXXXXXXXX

 dialer bundle 1

 dialer-group 1

 nat static protocol tcp global current-interface 8000 inside 192.168.0.232 8000 netmask 255.255.255.255

 nat static protocol udp global current-interface 8000 inside 192.168.0.232 8000 netmask 255.255.255.255

 nat outbound 3000



interface Vlanif1

 ip address 192.168.0.1 255.255.255.0

 dhcp select global


acl number 3000  

 rule 100 permit ip source 192.168.0.0 0.0.0.255 




The port forward from the internet ( via Dialer1 ) works as expected but if a host from the local lan ( Vlanif1 ) tries to access port 8000 but using the public IP it doesn't work.


This is also called NAT hairpin or loopback but I cannot figure out how to enable it on Huawei, I am pretty new to this type of device.



Thanks!

Featured Answers
jason_hu
Admin Created Oct 30, 2021 08:07:23

Hi friend!
First of all, AR600 does not support hairpin NAT.
When a user accesses the intranet server, what is the role of the user, whether it is a public network user or a private network user.
Hope to help you!
View more
  • x
  • convention:

mihailt
mihailt Created Oct 30, 2021 19:52:07 (0) (0)
Hi Jason,
Thanks! If the AR6xx series doesn't support hairpin NAT then it's case closed :)
My use case was simple: Behind the router there are a number of IP cameras, most of the users have a mobile app installed on their mobile phones to view the camera stream using the external IP of the devices but when connected to the local net, the cameras don't work because they want to access then using the external IP, not the local IP. Thanks!  
All Answers
Hello,
We're working on your problem. Please be patient.
View more
  • x
  • convention:

Hi friend!
First of all, AR600 does not support hairpin NAT.
When a user accesses the intranet server, what is the role of the user, whether it is a public network user or a private network user.
Hope to help you!
View more
  • x
  • convention:

mihailt
mihailt Created Oct 30, 2021 19:52:07 (0) (0)
Hi Jason,
Thanks! If the AR6xx series doesn't support hairpin NAT then it's case closed :)
My use case was simple: Behind the router there are a number of IP cameras, most of the users have a mobile app installed on their mobile phones to view the camera stream using the external IP of the devices but when connected to the local net, the cameras don't work because they want to access then using the external IP, not the local IP. Thanks!  

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.