When No SNAT or No DNAT rules have the same priority as SNAT and DNAT rules, the No NAT rules may not take effect
search cancel

When No SNAT or No DNAT rules have the same priority as SNAT and DNAT rules, the No NAT rules may not take effect

book

Article ID: 390801

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • There are NAT rules configured with the Action, "No SNAT" or "No DNAT" 
  • These have the same priority as other NAT rules configured with the Action, "SNAT" or "DNAT"
  • You may have traffic that would potentially match to a No NAT rule and a NAT rule
  • The "No NAT" rules may not take effect even if they are listed above the other matching SNAT and DNAT rules

Environment

  • VMware NSX-T 3.x
  • VMware NSX 4.x

Cause

This is a known issue. 

Resolution

  • Edit the NAT rules to add different priority levels
  • Use a lower value to add a higher priority to a rule with 0 being the highest priority