true, but natted not masquerated, with MASQ the request arrive to server with "out" interface of firewall not with ip address of source server or lan client. This cause trouble in log and access filtering. Why I can't make a simply DNAT rule ?
↧