Unable to route between internal net and external

Hey guys,

I’ve went over other posts in the forum and have been spinning my wheels no this since last night.

So, I have ESXi running a homelab im standing up.

Home Router is at

DC1 is at

Other servers at:

Windows Client at

My Windows Client at can ping all my servers, eth0 and eth1 as well as get out to the internet. However it cannot ping any of my LAN devices outside of me ESXi lab which reside on the network.

Additionally, my servers inside the lab at - cannot ping my internal Windows Client at

Why is this? Full config below.

interfaces {
ethernet eth0 {
address dhcp
description OUTSIDE
duplex auto
hw-id 00:0c:29:d9:1d:21
smp_affinity auto
speed auto
ethernet eth1 {
description INSIDE
duplex auto
hw-id 00:0c:29:d9:1d:2b
smp_affinity auto
speed auto
loopback lo {
nat {
source {
rule 100 {
outbound-interface eth0
source {
translation {
address masquerade
protocols {
static {
service {
dhcp-server {
disabled false
shared-network-name LAN {
authoritative disable
subnet {
domain-name tlabinternal.net
lease 86400

S>* [210/0] via, eth0
C>* is directly connected, eth1
C>* is directly connected, lo
C>* is directly connected, eth0

I made this way more complicated on myself than I needed to.

It was was Windows firewall :joy:


We’ve all been bitten by this once before - at least I know I have!
Glad you got it sorted out and welcome to the Vyos forums!


