Guest
|
Posted: Tue Oct 02, 2007 4:12 pm Post subject: Getting Open Nat with a Netscreen-5GT ADSL |
|
|
Hi,
I am using a Netscreen-5GT ADSL to route/protect my internet
connection and cannot seem to get the NAT config correct.
I was previously using a Linksys WRT-54G running DD-WRT and could get
Open NAT for xbox live no probs (either via uPnP or manual port
forwards), but since migrating to the Netscreen, the xbox live diags
always come back saying I have Strict NAT.
I have forwarded the ports (UDP88 and UDP/TCP3074) using a VIP and
have a policy in place to allow the traffic (with logging) and the
Netscreen doesnt seem to even be hit with the packets from the
outside. I have other services such as POP3 and BitTorrent working
fine using the above method.
Using MIP/DIP is not an option for me since my ISP will not assign me
multiple public/routable IPs.
I have tested a few random ALGs (such as SIP and portmapper) on the
long shot thay the Xbox live protocal may work in the same way, but as
expected nothing. I am runnnig ScreenOS 5.0.0r6.e, so I guess its
possible that later versions have a specific ALG for this.
Anyway - my question is, has anyone else got this working with a
Netscreen 5 device? or am I mising something obvious?
Thanks. |
|