One-to-One NAT with different subnet on Sonicwall

Posted on 2010-08-25
Last Modified: 2012-05-10
Just picked up a client with a bonded T1 through Time Warner and have run into a configuration that I didn't know was possible, just wanted to find out why or how this is possible.

Firewall is a Sonicwall Pro 2040.

Their primary external IP is (changed) with a /30 subnet, with an internal NAT

There are also one-to-one NAT entries for several servers. Their external IPs are And the entries work.

Should this be possible? Is this something that the ISP has to set up to be possible? Is there a good overview of one-to-one NAT that I could read to understand what's going on?
Question by:mindIT
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2

Assisted Solution

Dave773 earned 167 total points
ID: 33524403
It sounds like the customer owns their own address space which is getting routed through their TW connection.
If you check ARINs website, you should see that they own the addresses falling in the space. Just put one of their IPs in this tool: 

Assisted Solution

jimmyray7 earned 167 total points
ID: 33524541
That is completely do-able.  Here is the doc on 1 to 1 NAT -
LVL 33

Accepted Solution

digitap earned 166 total points
ID: 33525343
Go to Network > Interfaces.  Look to see if there is a secondary set of public IP address configured for the WAN interface.  Or, they have a secondary Internet connection and that will show up under Network > Interfaces.Another possiblility is the ISP has a different set of public IP addresses and they are routing those to your primary gateway (WAN interface IP address).Or, your situation sounds similar to this question:

Expert Comment

ID: 33525476
The WAN Interface will only show the primary IP and subnet.  In order to see any other networks on an interface, view the ARP entries to see if another network range has been attached to the X1 interface.  (sub interfaces, like vlans, will show on the interfaces page)
LVL 33

Expert Comment

ID: 33558956
Thanks for the points!

Featured Post

On Demand Webinar - Networking for the Cloud Era

This webinar discusses:
-Common barriers companies experience when moving to the cloud
-How SD-WAN changes the way we look at networks
-Best practices customers should employ moving forward with cloud migration
-What happens behind the scenes of SteelConnect’s one-click button

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
Hello to you all, I hear of many people congratulate AWS (Amazon Web Services) on how easy it is to spin up and create new EC2 (Elastic Compute Cloud) instances, but then fail and struggle to connect to them using simple tools such as SSH (Secure…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

635 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question