This article provides guidelines for verifying and troubleshooting Network Address Translation (NAT) configurations on NSX-T Edge nodes, specifically focusing on NAT64. NAT64 allows IPv6 hosts to communicate with IPv4 servers using address translation methods. Proper NAT configuration is crucial to ensure traffic flows seamlessly between different network segments. This document covers verification steps using the NSX-T UI, API, and CLI, along with known issues and recommendations.
VMware NSX
Issues related to NSX-T Edge NAT configurations can arise due to various factors, including:
1. Verify NAT Rule Order and Configuration in the NSX-T UI
Networking
> NAT
> Select the relevant NSX Edge > NAT Policies
.2. Retrieve NAT Policies and Rules via API
3. Check Firewall Rules and NAT Configuration Using CLI
List Firewall Interfaces:
Retrieve and Review NAT Rules Applied to the Interface:
Check Rule-Based Statistics:
Verify Current Connection States:
Ensure No Blockages in Traffic Flow:
4. Use Packet Capture Tools for Detailed Analysis
Troubleshoot packet drops on edge when NAT is enabled
SNAT Not supported asymmetric forwarding/reverse path 345865