> Source: [sk101562](https://support.checkpoint.com/results/sk/sk101562)

# sk101562 - Policy Based Routing rules matching NATed source address do not work

| Property | Value |
|----------|-------|
| Solution ID | sk101562 |
| Date Created | 2014-07-10 |
| Last Modified | 2020-11-05 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * Policy Based Routing rules ([sk100500](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk100500)) matching NATed source address do not work when routing decision is based on the regular routing table.  

* Rulebase has a PBR rule matching on a translated source address:  

  `set pbr rule priority X match from TRANSLATED_IP/MASK`

## Cause

1. Source translation always takes place on the server side, and cannot be changed to to client side (like destination translation).
2. The OS routing decision is taking place before the outbound chain. Therefore the PBR rules are being matched against the original source address.
3. After the routing decision has been made, the packet enters the outbound chain, where it is getting translated.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
