Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.



Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

Topic # 89352 31-Aug-2011 18:25 Send private message

Any tricks to getting the ATA working with double nat?

publicIP <> 192.168.1.0/24 <> 192.168.2.0/24

Everything else seems to be working just fine, but the ATA won't register.

 




Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


Create new topic
18544 posts

Uber Geek
+1 received by user: 730

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 514661 31-Aug-2011 19:46 Send private message

Simple solution is to get rid of the double NAT. SIP doesn't like NAT traversals.

Failing that there are plenty of NAT settings in the SPA's incl the ability to insert VIA headers which may resolve the issue but they are a kludge - the ultimate solution is to get rid of the double NAT.





Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514662 31-Aug-2011 19:51 Send private message

thanks steve,

double nat isn't going away sadly... I don't know what via headers are or where to find the right settings for 2talk. Can you provide any pointers?





Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


18544 posts

Uber Geek
+1 received by user: 730

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 514694 31-Aug-2011 20:45 Send private message

DonGould: thanks steve,

double nat isn't going away sadly... I don't know what via headers are or where to find the right settings for 2talk. Can you provide any pointers?



There isn't really a simple one answer fits all solution other than to get rid of the double NAT. This is the fix.

If you want to attempt to get around it with the use of remapped VIA headers you'll need to read up about them and then play with them in the SIP settings in your ATA. You will probably need to set up multiple port forwards as well.



Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514721 31-Aug-2011 21:23 Send private message

sbiddle:

... you'll need to read up about them



sure...  I was looking for a hint on what to read?  I tried a google, but my googlefu didn't turn up anything useful when I googled 'via sip header' and a 200 page rfc - 3261, which seemed a little ott.

Is there a guild you can recommend?






Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


3256 posts

Uber Geek
+1 received by user: 610

Trusted
Subscriber

  Reply # 514740 31-Aug-2011 21:53 Send private message

Why do you have double NAT? What prevents you from removing this?




Chorus has spent $1.4 billion on making their ADSL broadband network faster. Why not spend a couple of hundred to make sure you are getting the most out of your connection?
Geekzone special price: $150* for master splitter install, normally $200+ through your ISP. Auckland and Waikato areas.
*Travel charges may apply. Additional costs may apply for complex installs.
I install - Naked DSL, DSL Master Splitters, VoIP, RBI Rural Broadband. Also a dealer for WorldxChange.
Need help in Auckland or Waikato? Click my email button, or email me direct: [my user name] at geekzonemail dot com



Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514743 31-Aug-2011 21:59 Send private message

coffeebaron: Why do you have double NAT? What prevents you from removing this?


I'm testing out the pppoe server on my mikrotik 750 router with the pppoe client on my ECB 1221R ap, with my TC HFC connection. 

I've got all the pppoe working, but as I only have 1 public IP here, I end up with double nat.  I threw the ata back on a different port on the RB for now, but I wanted everything behind the ecb.






Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


18544 posts

Uber Geek
+1 received by user: 730

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 514747 31-Aug-2011 22:04 Send private message

DonGould:
coffeebaron: Why do you have double NAT? What prevents you from removing this?


I'm testing out the pppoe server on my mikrotik 750 router with the pppoe client on my ECB 1221R ap, with my TC HFC connection. 

I've got all the pppoe working, but as I only have 1 public IP here, I end up with double nat.  I threw the ata back on a different port on the RB for now, but I wanted everything behind the ecb.




Whyt are you simply not handing out PPPoE addresses on the 192.168.1.0/24 subnet?




Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514751 31-Aug-2011 22:11 Send private message

sbiddle:
Whyt are you simply not handing out PPPoE addresses on the 192.168.1.0/24 subnet?



Sorry I don't follow...  are you saying that I should be able to get the pppoe server to provide the dhcp and only have a single nat?

At present

TCModem/pubIP <>(port1)RB750-NAT192.168.1.0/24(so PPPoE interface on 750 = 1.1)(port2) <--> ECB Wan port (192.168.1.2)NAT-->192.168.2.0/24 --> MyATA(192.168.2.2)

Are you saying that my ECB should be able to terminate a subnect from the RB750 without doing NAT?

So I can then just dishout a subnet without natting it, but routing it?






Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


18544 posts

Uber Geek
+1 received by user: 730

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 514754 31-Aug-2011 22:16 Send private message

I don't fully understand your setup from that but you use proxy-arp on the PPPoE interface there is no need to route traffic or use a different IP range.




Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514758 31-Aug-2011 22:23 Send private message

sbiddle: I don't fully understand your setup from that but you use proxy-arp on the PPPoE interface there is no need to route traffic or use a different IP range.



I have proxy-arp on the interface, but I don't follow what you're talking about with the ip range.

The ECB just assumes the IP it's getting on the PPPoE interface is a 'public' ip and/or that it can only get the 1 ip so it has to set up NAT so it can service the clients hanging off that.

the ECB is just a basic wifi/ap/router.

Am I meant to be able to pass a whole /24 over the pppoe so that I don't need to NAT on the ECB?






Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


3256 posts

Uber Geek
+1 received by user: 610

Trusted
Subscriber

  Reply # 514759 31-Aug-2011 22:25 Send private message

Can you not turn off DHCP on the ECB and just use as basic AP?




Chorus has spent $1.4 billion on making their ADSL broadband network faster. Why not spend a couple of hundred to make sure you are getting the most out of your connection?
Geekzone special price: $150* for master splitter install, normally $200+ through your ISP. Auckland and Waikato areas.
*Travel charges may apply. Additional costs may apply for complex installs.
I install - Naked DSL, DSL Master Splitters, VoIP, RBI Rural Broadband. Also a dealer for WorldxChange.
Need help in Auckland or Waikato? Click my email button, or email me direct: [my user name] at geekzonemail dot com



Have plan, send $NZD50m
3428 posts

Uber Geek
+1 received by user: 63

Subscriber

  Reply # 514760 31-Aug-2011 22:30 Send private message

coffeebaron: Can you not turn off DHCP on the ECB and just use as basic AP?


I don't know it if will let me use the pppoe client in the ap mode on the wan port.  I also don't know how to configure the pppoe session to pass the subnet... I will look at the ECB a bit closer.  There's a number of modes in the thing.

I'm wanting the pppoe because I'm setting up the user manager in the 750 so I can count the traffic going to the ecb.






Promote New Zealand - Get yourself a .kiwi.nz domain name!!!

Check out mine - i.am.a.can.do.kiwi.nz - [email protected]


Create new topic








Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when new jobs are posted to our jobs board:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:




News »

Trending now »
Hot discussions in our forums right now:

Forms of government for New Zealand
Created by charsleysa, last reply by KiwiNZ on 20-Apr-2014 18:55 (120 replies)
Pages... 6 7 8


MH370 - Call for Search & Rescue Help
Created by DS248, last reply by Sideface on 17-Apr-2014 17:28 (735 replies)
Pages... 47 48 49


why does the tax payer have to pay for the prince and princess' 6 star holiday?
Created by joker97, last reply by Geektastic on 17-Apr-2014 15:49 (67 replies)
Pages... 3 4 5


Whats the best wife friendly media centre?
Created by amorpeth, last reply by jonolynn on 19-Apr-2014 20:20 (14 replies)

Snap suffering Trans-Tasman congestion 18/04?
Created by Lias, last reply by NonprayingMantis on 19-Apr-2014 00:05 (26 replies)
Pages... 2


Help ! Home business connection and VDSL dead. yikes.
Created by Scotsman, last reply by Scotsman on 17-Apr-2014 21:10 (26 replies)
Pages... 2


galaxy s4 now on 4.4.2
Created by nzrock, last reply by Yabanize on 21-Apr-2014 09:05 (60 replies)
Pages... 2 3 4


TVNZ on Demand Jailbreak Detection
Created by TranceManNZ, last reply by hio77 on 18-Apr-2014 20:25 (12 replies)


Geekzone Live »
Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.