Page MenuHomeVyOS Platform

Feature Request: Allow NAT to use network and address groups
Open, Requires assessmentPublic


This is one of the things that's bugged me for a while. I want to create an address, or network group of networks and hosts NOT to NAT.

For example:

set nat source rule 10 source address-group nonat
set nat source rule 10 exclude
set nat source rule 11 source network-group nonat
set nat source rule 11 exclude

But for some reason this isn't available 8-(


Difficulty level
Unknown (require assessment)
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Unspecified (possibly destroys the router)

Event Timeline

xrobau created this task.Dec 15 2019, 8:53 AM
xrobau created this object in space S1 VyOS Public.
pasik added a subscriber: pasik.Dec 15 2019, 8:46 PM
dmbaturin added a subscriber: dmbaturin.

With migration to nftables this is a very real possibiliy.