News: This forum is now permanently frozen.
Pages: [1]
Topic: Moderate NAT on gaming consoles  (Read 2551 times)
« on: July 22, 2013, 09:53:18 »
roby3493 *
Posts: 7

Hello everybody I need your help after reading lots of tutorials and guides. That's my home setup:

D Link ADSL modem/router ---> PC ---> m0n0wall router ---> INTERNET

LAN= 192.168.1.100 DHCP DISABLED
WAN= DHCP

Even if I set everything as it's written in the guides I read I can't get an open nat on both my consoles (XBOX and PS3). It's like the ports are not forwarded but they are (inbound and outbound rules created on m0n0wall).

May you please tell me what could be the problem?

The consoles can navigate on the internet btw, the problem is only the NAT.

Could it be the fact that there are 2 router before acceding the internet?


Thanks in advance
« Reply #1 on: July 23, 2013, 01:59:58 »
Lee Sharp *****
Posts: 517

So, is the Dlink trying to do DHCP and NAT?  With dual NAT you will have issues.  You network also seems a bit needlessly complex.
« Reply #2 on: July 23, 2013, 09:43:02 »
roby3493 *
Posts: 7

Hi Smiley

I'll explain to you. I need m0n0wall to use its traffic shaping functions 'cus my router don't have 'em. And yes, the D Link use DHCP and NAT, could it be this the problem? How can I fix it?

Thanks  Wink
« Reply #3 on: July 23, 2013, 14:26:35 »
Fred Grayson *****
Posts: 994

Your network diagram makes no sense to me.

--
Google is your friend and Bob's your uncle.
« Reply #4 on: July 23, 2013, 20:11:39 »
roby3493 *
Posts: 7

Can you tell me why?
« Reply #5 on: July 23, 2013, 20:23:24 »
Fred Grayson *****
Posts: 994

This probably what you meant:

 INTERNET ---> D Link ADSL modem/router --->  m0n0wall router --->PC


You should put your modem/router into bridge mode and let m0n0wall take the public IP address.

--
Google is your friend and Bob's your uncle.
« Reply #6 on: July 23, 2013, 20:48:30 »
azdps **
Posts: 63

Your network diagram didn't make sense to me either. The diagram Fred Grayson posted is probably what you have. Your ADSL modem/router is probably causing issues. You should allow only m0n0wall to provide the firewall, routing, DHCP etc. You will need to disable all routing that the ADSL modem/router is doing and have it pass through all the info to m0n0wall to do all the processing. So you would set your ADSL modem/router to bridge mode like Fred Grayson said.

I have an Xbox 360 that I was having issues with on Xbox Live. I would have either a strict or moderate NAT. The only way I was able to fix this in m0n0wall was to set it up so all outgoing ports were static instead of randomized.
« Last Edit: July 23, 2013, 20:50:42 by azdps »
« Reply #7 on: July 24, 2013, 04:21:52 »
Lee Sharp *****
Posts: 517

It makes sense to me, now.  And it will not work as you intend.

You have all of you users connecting to the d-link.  It is aggregating them all behind one IP address (NAT) and passing it to m0n0wall for traffic shaping.  Since it is all the same IP, it is all the same priority, and you no longer can share bandwidth evenly.  (However, you can prioritize traffic)  I recommend dumping the d-link, or at least making it as stupid as possible. (No DHCP, no NAT, no WAN, just a AP and switch)  Let m0n0wall do thew DHCP and NAT and then m0n0wall will actually see individual clients and have some control.
« Reply #8 on: July 24, 2013, 07:32:55 »
roby3493 *
Posts: 7

Thanks everyone, you've been very helpful! Only one last question, after having transformed my D Link into a bridge (modem only) do I have to setup a static route inside it or I am able to go just by configuring m0n0wall?

Thanks again guys Smiley!
« Reply #9 on: July 24, 2013, 16:48:58 »
Fred Grayson *****
Posts: 994

There is nothing to configure in a bridged modem, it does not operate at the IP layer.

--
Google is your friend and Bob's your uncle.
« Reply #10 on: July 24, 2013, 17:58:56 »
roby3493 *
Posts: 7

Ok, one last question I SWEAR XD.
I have a PPPoE connection, so do I have to insert username and password in the Wan interface inside m0n0wall? I think yes, but I'd want a confirm...


Thx again 4 everything

Smiley
« Reply #11 on: July 24, 2013, 18:21:20 »
Fred Grayson *****
Posts: 994

Yes. Configure m0n0wall WAN interface for PPPoE and provide your username and password.

--
Google is your friend and Bob's your uncle.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines