Can you please share again current configuration?
Can you also turn on traceoptions
set security flow traceoptions file fbfnat set security flow traceoptions flag basic-datapath set security flow traceoptions packet-filter 1 source-prefix 172.16.18.5/32 set security flow traceoptions packet-filter 1 destination-prefix 8.8.8.8/32 set security flow traceoptions packet-filter 2 source-prefix 8.8.8.8/32 set security flow traceoptions packet-filter 2 destination-prefix 172.16.18.5/32
then initiate ping test from 172.16.18.5 and collect
show security nat source rule BJS_Wifi show security flow session destination-prefix 8.8.8.8 show log fbfnat show route
Regards, Wojtek