I have a requirement for a Vlan (192.16.x.y) on a MX100 to be natted to a private address (10.x.y.z) which exists on an interface on the MX but it's not a Internet interface, it;s an external DMZ interface. I basically need a many to one NAT function which is not destined for the Internet. I don't think this is possible with the MX Security Appliance, if it is then I would greatly appreciate some help on this. Would one option be to connect the DMZ to the second WAN Internet Port and configure a private address on it (10.x.y.z) and then would it be possible to do a Many to 1 NAT over this from the internal Vlans ?
... View more