Port forwarding malfuction?
Hello dear forum,
I am desperate and hope that your swarm knowledge can help me.
The topic is NAT type and problems with port forwarding.
The following physical setup:
I have Vodafone as my ISP (Cable tariff Red Internet & Phone 1000) and they have provided me with a Vodafone station. This is running in bridge mode and after some initial difficulties seems to be running as expected. More about this later.
Behind it on LAN/WAN 11 is my Omada gateway (ER8411v1.0 firmware 1.0.2). Via SFP+ LAN/WAN1 I now connect to my Omada switch (TL-SG3210XHP-M2 v2.0 firmware 2.0.0) on SFP+ port 9. From there I go via SFP+ port 10 as downlink to the second switch (TL-SG3428X v1.0 firmware 1.0.10) on the uplink port SFP+ port 25. My Omada controller OC200 v2.0 firmware 5.7.6 terminates on switch 1.
About the logical network:
I have created the following LAN Networks:
Management 172.16.99.0/24 VLAN 99
Server 172.16.10.0/24 VLAN 10
Client 172.16.20.0/24 VLAN 20
IOT 192.168.71.0/24 VLAN 71
Guests 192.168.171.0/24 VLAN 171
Default 192.168.10.0/24 VLAN 1
I have changed the factory default LAN to the management LAN so that my routers/switches are in this VLAN.
All VLANS are encapsulated via the Network Security Switch ACL so that no traffic can take place between the VLANS. For my Admin PC, which has the following problem, there is an ACL rule that the IP Group (IP address of my Admin PC) is allowed to access all networks. This rule is for testing purposes and applies bidirectionally.
So now to my problem:
I am having connection problems with various online games. After research I found out that I get a NAT type strict with the client.
As a result, I have set up the following things:
Port Forwarding:
Rules for all ports colocated on the internet for Steam and the games forwarded to my PC- without success.
Rule for my PC as DMZ - without success.
For testing purposes:
Gateway ACL:
Direction LAN WAN and [WLAN/LAN11] IN
Policy: Permit
Protocols: All
Source and Destinantion Type : IP_Group_ANY - without success
Backward Test
I connected my computer directly to the Vodafone station and the NAT type immediately changed to open.
Do you have any ideas what I can do. I would say that the port forwarding settings are not working at all on the gateway.
Thanks in advance
Kind Regards
Thorsten