feat(bcn01-lab): add 1:1 NAT support and import Synology rule

Add meraki_appliance_firewall_one_to_one_nat_rules resource to the
meraki-site module and codify the existing Synology NAT rule found in
BCN01-LAB Dashboard (57.133.120.190 → 10.2.56.3 via internet2).

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
Jose Martinez
2026-05-07 09:42:59 +02:00
co-authored by Claude Sonnet 4.6
parent 4a93967012
commit b8e517cb40
4 changed files with 62 additions and 1 deletions
+21
View File
@@ -1,4 +1,25 @@
locals {
one_to_one_nat_rules = [
{
name = "Synology"
public_ip = "57.133.120.190"
lan_ip = "10.2.56.3"
uplink = "internet2"
allowed_inbound = [
{
protocol = "any"
destination_ports = ["Any"]
allowed_ips = ["188.0.0.0/8"]
},
{
protocol = "any"
destination_ports = ["Any"]
allowed_ips = ["57.133.120.176/28"]
},
]
},
]
appliance_ports = [
{
# Port 7: trunk toward the switch stack