Skip to main content

Python module for generating CGNAT rules using netmap

Project description


Python module for generating CGNAT rules using netmap


This is a Python library and CLI program for generating firewall rules to deploy Carrier-Grade NAT, besides translating a given IP and port to its private address and vice versa. The methodology consists in building netmap rules at 1:32 public-private ratio, mapping a range of 2.000 ports for each client. Works for any netmask, since that follow the 1:32 ratio:

Private prefix Public prefix N. of clients
... ... ...
/20 /25 4096
/21 /26 2048
/22 /27 1024
/23 /28 512
/24 /29 256
/25 /30 128
/26 /31 64
/27 /32 32

Supported Platforms

  • MikroTik RouterOS


  • Python 3.7+

How to install it?

Installation can just being done with pip:

pip install pycgnat

How to use it?

1. Command Line Interface

For generating the rules, you can print it in console or save it to a file:

pycgnat gen routeros filename.rsc
pycgnat gen routeros

For translating a private IP to its public one, use the direct option:

pycgnat trans --direct
pycgnat trans -d

For translatig a public IP and port to its private IP correspondent, use the reverse option:

pycgnat trans --reverse
pycgnat trans -r

The CLI includes useful help command (supported by argparse framework), so just type:

pycgnat --help
pycgnat -h

2. Python library

You can use the functionalities directly in Python lang. Just import the wanted module to your program:

from pycgnat.translator.reverse import cgnat_reverse

dic = cgnat_reverse(privnet, pubnet, IPv4Address(''), 13578)

The full pycgnat's documentation is written in the source-code.

Future works

  • Add support for other platfoms (I'm using MikroTik for while, so this is the reason for only supporting it at first version).


Pull requests are welcome. For major changes, please open an issue first to discuss what you would like to change.

Please make sure to update tests as appropriate.



Project details

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Files for pycgnat, version 1.0.0
Filename, size File type Python version Upload date Hashes
Filename, size pycgnat-1.0.0-py3-none-any.whl (9.5 kB) File type Wheel Python version py3 Upload date Hashes View
Filename, size pycgnat-1.0.0.tar.gz (7.0 kB) File type Source Python version None Upload date Hashes View

Supported by

AWS AWS Cloud computing Datadog Datadog Monitoring DigiCert DigiCert EV certificate Facebook / Instagram Facebook / Instagram PSF Sponsor Fastly Fastly CDN Google Google Object Storage and Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Salesforce Salesforce PSF Sponsor Sentry Sentry Error logging StatusPage StatusPage Status page