Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


24 posts

Geek


Topic # 230557 1-Mar-2018 13:44
Send private message

I got a GWN7000 on advice from someone on here. So far, awesome. Gigabit fibre, so far 100 days up time without a blip. The only thing I can't work out is the setting so I can access hit my dynamic DNS address when I'm connected to the LAN. I've got a few apps I used that don't support having 2 server IPs, it's a drag having to change the settings all the time.


Create new topic
2012 posts

Uber Geek
+1 received by user: 330

Lifetime subscriber

  Reply # 1966503 1-Mar-2018 13:58
Send private message

http://www.grandstream.com/sites/default/files/Resources/Firewall_Advanced_NAT.pdf

 

Hairpin NAT consists of a dst-nat and src-nat rule. Google.




24 posts

Geek


  Reply # 1966512 1-Mar-2018 14:10
Send private message

I've gone through that doc a couple times and really can't make much sense of it. Any plain English guidance appreciated


2012 posts

Uber Geek
+1 received by user: 330

Lifetime subscriber

  Reply # 1966514 1-Mar-2018 14:18
Send private message

As I inferred you need a dst-nat rule (the port forward from WAN to LAN server device) and a src-nat rule for the reply traffic from LAN server device to the LAN side clients (EDIT: I described it backwards).

 

Mikrotik example

 

https://wiki.mikrotik.com/wiki/Hairpin_NAT


113 posts

Master Geek
+1 received by user: 64


  Reply # 1966523 1-Mar-2018 14:31
Send private message

LAN Loopback (Hairpin NAT) as above needs a SrcNAT pointed towards your DstNAT rule.

 

 

 

The SrcNat needs to have the Src Group as your internal IP Pool

 

 

 

Basically it picks up anything internally trying to access your WAN IP and points it back towards the required DstNAT instead of dead-ending nowhere.

 

 

 

Sadly I've got an easy guide for this on Mikrotiks but not Grandstreams


3536 posts

Uber Geek
+1 received by user: 1292

Subscriber

  Reply # 1966679 1-Mar-2018 17:38
Send private message

Your other option would be set a custom DNS entry on your router for your D-DNS domain, and have it resolve to the internal IP address of the server.


Create new topic

Twitter »

Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Intel introduces new NUC kits and NUC mini PCs
Posted 16-Aug-2018 11:03


The Warehouse leaps into the AI future with Google
Posted 15-Aug-2018 17:56


Targus set sights on enterprise and consumer growth in New Zealand
Posted 13-Aug-2018 13:47


Huawei to distribute nova 3i in New Zealand
Posted 9-Aug-2018 16:23


Home robot Vector to be available in New Zealand stores
Posted 9-Aug-2018 14:47


Panasonic announces new 2018 OLED TV line up
Posted 7-Aug-2018 16:38


Kordia completes first live 4K TV broadcast
Posted 1-Aug-2018 13:00


Schools get safer and smarter internet with Managed Network Upgrade
Posted 30-Jul-2018 20:01


DNC wants a safer .nz in the coming year
Posted 26-Jul-2018 16:08


Auldhouse becomes an AWS Authorised Training Delivery Partner in New Zealand
Posted 26-Jul-2018 15:55


Rakuten Kobo launches Kobo Clara HD entry level reader
Posted 26-Jul-2018 15:44


Kiwi team reaches semi-finals at the Microsoft Imagine Cup
Posted 26-Jul-2018 15:38


KidsCan App to Help Kiwi Children in Need
Posted 26-Jul-2018 15:32


FUJIFILM announces new high-performance lenses
Posted 24-Jul-2018 14:57


New FUJIFILM XF10 introduces square mode for Instagram sharing
Posted 24-Jul-2018 14:44



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.