[VPP-2206] SNAT and VRF-----HELP!!!
Question:
My idea is to have different destinations use different NAT address pools. However, the traffic is not passing through as expected. My goal is to have traffic from 55.55.55.2 to 66.66.66.2 go through VRF 1, and traffic from 55.55.55.2 to 77.77.77.2 go through VRF 2. Does anyone know where I might have made a mistake in the configuration, or could this be a bug?
this is conf:
nat44 forwarding enable create sub-interface GigabitEthernet2/6/0 1 create sub-interface GigabitEthernet2/6/0 2
ip table add 1 ip route add 66.66.66.0/24 table 1 via 66.66.66.2 set interface ip table GigabitEthernet2/6/0.1 1
ip table add 2 ip route add 77.77.77.0/24 table 2 via 77.77.77.2 set interface ip table GigabitEthernet2/6/0.2 2
set interface state GigabitEthernet2/5/0 up set interface ip address GigabitEthernet2/5/0 55.55.55.1/24 set interface state GigabitEthernet2/6/0 up set interface state GigabitEthernet2/6/0.1 up set interface ip address GigabitEthernet2/6/0.1 66.66.66.1/24
set interface state GigabitEthernet2/6/0.2 up set interface ip address GigabitEthernet2/6/0.2 77.77.77.1/24
set interface promiscuous on GigabitEthernet2/5/0 set interface promiscuous on GigabitEthernet2/6/0
// Configure SNAT usage: set interface nat44 in GigabitEthernet2/5/0 set interface nat44 out GigabitEthernet2/6/0
set interface nat44 out GigabitEthernet2/6/0.1
set interface nat44 out GigabitEthernet2/6/0.2
set interface nat44 in GigabitEthernet2/5/0 out GigabitEthernet2/6/0.1
set interface nat44 in GigabitEthernet2/5/0 out GigabitEthernet2/6/0.2
nat44 add address 66.66.66.3-66.66.66.6 tenant-vrf 1 nat44 add address 77.77.77.4-77.77.77.7 tenant-vrf 2
Below is a simplified diagram of the network topology:
PC1-55.55.55.2 <-----> 55.55.55.1-vpp-(66.66.66.1 and 77.77.77.1) <-----> PC2-66.66.66.2
<-----> PC3-77.77.77.2