Just had the same bug after executing sudo ufw reload 4 times, this is how my iptables -t nat looks like:
Chain POSTROUTING (policy ACCEPT) target prot opt source destination MASQUERADE all -- 172.17.0.0/16 0.0.0.0/0 RETURN all -- 192.168.122.0/24 224.0.0.0/24 RETURN all -- 192.168.122.0/24 255.255.255.255 MASQUERADE tcp -- 192.168.122.0/24 !192.168.122.0/24 masq ports: 1024-65535 MASQUERADE udp -- 192.168.122.0/24 !192.168.122.0/24 masq ports: 1024-65535 MASQUERADE all -- 192.168.122.0/24 !192.168.122.0/24 MASQUERADE all -- 10.0.20.0/24 0.0.0.0/0 MASQUERADE all -- 10.0.20.0/24 0.0.0.0/0 MASQUERADE all -- 10.0.20.0/24 0.0.0.0/0 MASQUERADE all -- 10.0.20.0/24 0.0.0.0/0 I've added the following line to /etc/ufw/before.rules: # NAT table rules *nat :POSTROUTING ACCEPT [0:0] # Forward traffic through eth0 - Change to match you out-interface -A POSTROUTING -s 10.0.20.0/24 -j MASQUERADE # don't delete the 'COMMIT' line or these nat table rules won't # be processed COMMIT Version: ufw --version ufw 0.34~rc-0ubuntu2 Copyright 2008-2012 Canonical Ltd. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/881137 Title: UFW does not clean iptables setting from /etc/ufw/before.rules To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ufw/+bug/881137/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs