the 'secondary ip' functionality is quite limited at the moment, it provides inter-subnet routing on the same interface, but not between interfaces for example (firewall blocks traffic). It also doesn't NAT secondary ip's, so I would figure this is where your problem lies.
You should be able to go into the NAT section , into Outbound and enable advanced NAT and put in a rule for interface WAN, source 192.168.0.0/16 destination * target * , though I haven't tested this ;-)
|