Routing without NAT, help!

60 pts.
IP configuration
Router configuration
Routing and switching
Wireless networking
I have a block of IP static IP addresses from our ISP, and I want to route those back through a couple of routers (wireless radio equipment) without using NAT. I can make things work if I have NAT enabled, BUT certain applications do not work well through one NAT connection much less two or three. The reason for this is that we have a wireless radio link between our two buildings, and we are trying to give them access into our network, without any NAT issues in between. The radios can work in bridge mode, or router mode, with or without nat. Bridge mode would work but seems to fail out during DHCP or RADIUS server requests. My idea is to enable router mode, disable NAT, and configure the WAN and LAN sides so that all traffic stays inside the same IP range. If my IP address range is 10.100.XXX.XXX how would i configure the WAN and LAN sides of the router to direct traffic from the one building into the other. The settings I need are below: WAN SIDE IP ADDR: SUBNET: GATEWAY: LAN SIDE IP ADDR: SUBNET: Can someone throw me out some ideas?

Answer Wiki

Thanks. We'll let you know when a new response is added.

If your private addresses are in the 10.100.xx.xx range, you will have to use NAT as this is a private address space that is not routable on the internet.

I would also be very concerned about just placing these devices directly on the internet. You should place a firewall of some type in front of the devices and ensure that the devices are hardened and kept up to date on patches and fixes.


I have a router doing NAT in front of all of this. I just don’t want to do NAT into NAT into NAT again if you know what I mean.

Everyone will be behind a single linux box running NAT, but I want to have the other routers subnetted in the internal network so that I can masquarade a Public IP into them if need be…

I get what you are saying now. The bridging should work even for DHCP and RADIUS. I would contact the supplier of the wireless gear and troubleshoot this issue with them. Bridging would be the best option unless you need to segment these networks for some reason. If that is necessary, then maybe create VLANs and keep the same root subnet of 10.100.x.x. Make the subnet mask This will make the first building and the second building The wireless devices would be the default gateway on each VLAN and they would have a default gateway of the edge router. The edge router would decide which wireless router the traffic needs to be sent to in this case.

WAN side
IP addr:
GW: (this is the LAN interface on the edge router)

LAN side
IP addr:
GW: (this is the WAN interface on the wireless device)
Clients would then use as their default gateway

Discuss This Question: 3  Replies

There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when members answer or reply to this question.
  • Johnshoff
    OK, I kind of understand what you mean, but I am getting confused. Please excuse my lack of subnetting knowledge... OK, so as I mentioned before, everything works with NAT enabled on the router at my client side. I am going to enter in the settings I have here, and can you fill in the blanks (or correct my mistakes) Router on EDGE of Private Network (CALL IT LARRY FOR SHORT) WAN SIDE - PUBLIC IP, SUB, GATEWAY (provided by my ISP) LAN SIDE of edge router: subnet mask: ACCESS Point in bridge mode - plugged directly into the router (CALL IT CURLY FOR SHORT) IP: subnet mask: (basically this unit should be transparent - and the IP address shouldn't really matter right? - cause it is a bridge) Wireless radio in router mode, with nat disabled - At remote location: (CALL IT MOE FOR SHORT) WAN SIDE IP: subnet: gateway: LAN SIDE: IP subnet: Clients at the remote location are configured through to 254 subnet gateway If I do this, and disable the nat on "MOE" I loose connection everywhere. If I turn NAT back on, and reboot the radio (MOE) I usually get connection back. If I leave MOE NATted, I work just fine on the Internet, BUT I am segregated from our main office network ( What am I doing wrong!!! HELP!! I am so frustrated!
    60 pointsBadges:
  • Labnuke99
    Well... it looks like you crossed the end subnet range when you went to The actual subnet ends at This is why the NAT works. Can you make the remote office
    32,960 pointsBadges:
  • configure router without nat
    [...] DHCP or RADIUS server requests. My idea is to enable router mode, disable NAT, and configure ... and On-line GamesSeveral hardware router manufacturers are beginning to offer UPnP compliant [...]
    0 pointsBadges:

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

To follow this tag...

There was an error processing your information. Please try again later.

Thanks! We'll email you when relevant content is added and updated.


Share this item with your network: