Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


olivernz

512 posts

Ultimate Geek
+1 received by user: 177

ID Verified
Trusted
Lifetime subscriber

#262139 7-Jan-2020 12:41
Send private message

Hi all,

This is a 2degrees and potentially a Chorus question.

I am trying to do port forwarding for some services on my 2degrees fibre connection. The firewall i use is OPNsense, which is directly connected to the ONT using pppoe. Needless to say port forwarding is not successful. I have opened up the port as per description of OPNsense and it should be working. The services on that port are working fine too. But I don't even see the port being hit from the outside.

So in my investigation i came accross something I can't really explain. The FW says my external WAN IP is 100.66.xxx.xxx but when looking at my external IP from the outside it's 151.210.xxx.xxx. Is that because there's something like Carrier Grade NAT? I presume that is the difference between 2degrees network layer and internet traffic layer but I would have somehow expected this to be 1:1 NAT. So anything going to the 151 address to be directly forwarded to the 100.66 address.

So either the traffic isn't getting forwarded or it's hitting the FW as 151.210 and the FW isn't recognising it as legal traffic and dropping it (but not seeing that in the log).

So any help here would be greatly appreciated. How do others fare with port forwarding and PPPOE? Any issues? I am just trying to understand where the traffic is being dropped.

Thanks Heaps!
Oliver

Filter this topic showing only the reply marked as answer Create new topic
evilonenz
/dev/urandom
291 posts

Ultimate Geek
+1 received by user: 152

ID Verified
Trusted
Lifetime subscriber

  #2386604 7-Jan-2020 12:43
Send private message

This is due to the CG-NAT 2degrees have recently implemented. The only choice if port forwarding is 100% required, is a static IP.





Smokeping

 

Referral Links:

 

Quic - Use code R536299EPGOCN at checkout for free setup
Contact Energy - Use code FRTQDXB for $100 credit




Linux
12182 posts

Uber Geek
+1 received by user: 8475

Trusted
Lifetime subscriber

hio77
'That VDSL Cat'
13036 posts

Uber Geek
+1 received by user: 3896

ID Verified
Trusted
Lizard Networks
Subscriber

  #2386607 7-Jan-2020 12:45
Send private message

you are on CGNat. request a public ip..





#include <std_disclaimer>

 

Any comments made are personal opinion and do not reflect directly on the position my current or past employers may have. 




olivernz

512 posts

Ultimate Geek
+1 received by user: 177

ID Verified
Trusted
Lifetime subscriber

  #2386611 7-Jan-2020 12:54
Send private message

Thanks heaps. Was suspecting some &€€&€_:- like that.

olivernz

512 posts

Ultimate Geek
+1 received by user: 177

ID Verified
Trusted
Lifetime subscriber

  #2387629 8-Jan-2020 21:03
Send private message

Yep, got fixed IP and all is working.

Filter this topic showing only the reply marked as answer Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.