Ping failed with misconfigured SNAT rule
search cancel

Ping failed with misconfigured SNAT rule

book

Article ID: 415989

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • Guest OS fails to ping.
  • Gateway has SNAT rule.
    • The rule translates ping target IP address to another IP address.
  • Packet capture shows:
    Guest OS IP Address > Ping Destination IP Address, ICMP Echo Request
    SNAT IP Address > Guest OS IP Address, ICMP Echo Reply

Environment

NSX-T Data Center 3.x

Cause

Misconfigured SNAT rule cause returning packet translated.
Since ICMP Echo Reply has different source IP address from ICMP Echo Request, ping fails.

Resolution

Remove misconfigured SNAT rule.