Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


ccoutts

27 posts

Geek

ID Verified

#268504 22-Mar-2020 21:41
Send private message

Hi,

 

 

 

I can't ping my Fritzbox 7490 from the internet. Should I be able to? Just results in no response if ipv4 address pinged from phone (on cell connection) or one of those online ping utilities.

 

I've checked, Stealth mode if disable on the Fritzbox.

 

 

 

The bigger problem is that my RDP connection to a PC fro the internet stopped working. I tried heaps of things to diagnose it, and in the process discovered I couldn't ping the router. Tried calling 2Deg tech support, but on hold for an hour so gave up.

 

 

 

Things I've tried to fix RDP:

 

-Can RDP to PC from within LAN

 

-Can http to web server on same PC from within LAN

 

-Setup up port forwarding a few times. Actually reset Fritzbox factory settings, to start from scratch, but no luck.

 

-Tried RDPing to internet ip address, instead of DynDNS address, but same result

 

 

 

Any ideas what to check for next?

 

Thanks!


Create new topic
RunningMan
8956 posts

Uber Geek


  #2444170 22-Mar-2020 21:42
Send private message

You probably have a CG-NAT connection.

 

EDIT: 30 pages of info here




ccoutts

27 posts

Geek

ID Verified

  #2444173 22-Mar-2020 21:48
Send private message

Jeepers, what the heck is CG-NAT (in laymans terms)?

 

What it prevent me pinging my router, or getting RDP working? Or both?


RunningMan
8956 posts

Uber Geek


  #2444174 22-Mar-2020 21:51
Send private message

Basically, you do not have a public IP address on the WAN interface of your router - it is shared with other 2D customers. Outgoing connections you'll never notice the difference, but incoming connections won't work.

 

https://en.wikipedia.org/wiki/Carrier-grade_NAT




ccoutts

27 posts

Geek

ID Verified

  #2444175 22-Mar-2020 21:54
Send private message

Well that's a bit lame! So no way to initiate incoming connections like RDP or webserver?

 

Fritzbox says I have a public IP in the Internet -> Online Monitor page:

 

IPv4 address: 100.68.78.22

 

How do I confirm if I do have CGNAT?


tanivula
991 posts

Ultimate Geek

Lifetime subscriber

  #2444177 22-Mar-2020 22:01
Send private message

ccoutts:

 

Well that's a bit lame! So no way to initiate incoming connections like RDP or webserver?

 

Fritzbox says I have a public IP in the Internet -> Online Monitor page:

 

IPv4 address: 100.68.78.22

 

How do I confirm if I do have CGNAT?

 

 

the 100.x.x.x range is CG-NAT. 

 

When you get through to the support team, tell them your needs - they might give you a static ip for free (only guaranteed way to get a public IPV4 with 2deg now).  I think there are lots of instances if you look at that 30page thread.


hio77
12999 posts

Uber Geek

ID Verified
Trusted
Lizard Networks

  #2444178 22-Mar-2020 22:01
Send private message

yes, your on CGNat, that IP address is within the 100.64.0.0/10 block.





#include <std_disclaimer>

 

Any comments made are personal opinion and do not reflect directly on the position my current or past employers may have.

 

 


K8Toledo
1014 posts

Uber Geek


  #2444180 22-Mar-2020 22:01
Send private message

Check the settings. Respond to WAN ping could be disabled. Not sure what the defaults are.


 
 
 

Move to New Zealand's best fibre broadband service (affiliate link). Free setup code: R587125ERQ6VE. Note that to use Quic Broadband you must be comfortable with configuring your own router.
ccoutts

27 posts

Geek

ID Verified

  #2444184 22-Mar-2020 22:08
Send private message

OK, thanks guys.

 

Pretty sh!t that they just changed me sometime recently with no communication, and years of being a customer of 2Deg and years of using RDP and webhosting.

 

Yes, I'll definitely kick up a fuss and request a static IP... if I can ever get through to their helpdesk.


freitasm
BDFL - Memuneh
79289 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2444209 22-Mar-2020 22:47
Send private message

Unsolicited advice: make sure your machine is completely up-to-date with security patches as RDP is nasty. 





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 


surfisup1000
5288 posts

Uber Geek


  #2444286 23-Mar-2020 08:30
Send private message

My RDP was hacked once, a few years back. 

 

Instead, I use VPN to establish a secure connection, then, use RDP across that secure connection.

 

 


freitasm
BDFL - Memuneh
79289 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2444287 23-Mar-2020 08:34
Send private message

The FritzBox even offer a VPN service. Just use that instead of exposing RDP ports to the Internet. Still need a static IP though.





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 


sbiddle
30853 posts

Uber Geek

Retired Mod
Trusted
Biddle Corp
Lifetime subscriber

  #2444291 23-Mar-2020 08:46
Send private message

You should *never* have RDP exposed to the Internet and be accessible. Period.

 

The great thing about the CG-NAT change is that it's going to remove a lot of poorly configured and exposed systems and hardware from the Internet. There are already fully exposed CCTV cameras that are no longer visible which is a great thing.


ccoutts

27 posts

Geek

ID Verified

  #2444312 23-Mar-2020 09:30
Send private message

Thanks for the advice guys. I'll probably have a go at the VPN technique.

 

Although, I have been using RDP for 10+ years with no (apparent) problems. I've change the RDP port on the win machine to something obscure, and limited numbers of login retries. But yeah, it's a Win7 machine, so needs to be end-of-life soon :-)


michaelmurfy
meow
13254 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2444314 23-Mar-2020 09:33
Send private message

@ccoutts I am actually glad in this case it isn't working. Even if you limit logins etc you're still forwarding to a service on a unpatched, end of life operating system. You're just asking for trouble.

 

Why not just upgrade it to Windows 10?





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


ccoutts

27 posts

Geek

ID Verified

  #2444316 23-Mar-2020 09:35
Send private message

Cos I have 2 small kids, selling my house, and work is nuts. But yeah, it's on the list! :-)


Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.