I found out about what happen with NAT

Foxrac

Well-Known Member
Premium Member
Joined
Mar 23, 2005
Messages
44,481
Reaction score
448
I had problem with NAT and it was strict.

It said it was from DMZ or UPnP but one of both need to be enable to get open from NAT.

Did you enable DMZ or UPnP for Xbox Live?
 
Connection Tests: Network Address Translation (NAT)


This test indicates the type of Network Address Translation (NAT) that your router or gateway is using: Open, Moderate or Strict.

Devices that perform strict or moderate NAT can limit the ability of gamers to find each other, participate in sessions, or hear each other on Xbox Live. If you're using a router or gateway with a moderate or strict NAT, replace it with an Xbox Live Compatible device.

What is NAT?
When multiple devices share a single Internet connection (a PC and an Xbox 360™ system, for instance), the networked devices typically rely on Network Address Translation (NAT) to prevent information traffic jams.

Note

NAT is sometimes called Network Address and Port Translation (NAPT).

What does NAT do on Xbox Live?
We've defined three categories of NAT: open, moderate, and strict. Devices that perform strict or moderate NAT can limit the ability of gamers to find each other, participate in multiplayer sessions, or hear each other on Xbox Live.

What does each NAT type mean?
The classification system boils down to something called a port-assignment policy.

Open NAT means that either the port-assignment policy is minimal or the device has a fully compliant version of UPnP (Universal Plug and Play) enabled by default.
Moderate NAT means that the port-assignment policy is minimal, but the device is filtering addresses or ports.
Strict NAT means the port-assignment policy is aggressive.
What does NAT mean to me and my friends?
Suppose you want to host an Xbox Live game and you're using a router that's classified as open. As the following table shows, you can be confident that your router's NAT type will not keep your friends (who may also be using routers) from finding your session, hearing your voice, and enjoying a great game.


To Open
To Moderate
To Strict

From Open
Yes
Yes
Yes

From Moderate
Yes
Yes
No

From Strict
Yes
No
No





But let's say you're using a router that's a strict NAT. When you want to host a game, you now have something to consider. Anyone else who's behind a router that uses a moderate or strict NAT may not be able to connect to your session.

Let's look at one final example going the other direction: you joining someone else's game. Will you be able to participate fully with everyone in the game? If you have a moderate NAT on your home network, you can get an idea of what may happen by consulting the table. If the players you want to play with are using strict NATs, you will likely experience problems. You may not be able to hear them and they may not be able to hear you. Your Xbox 360 console may not be able to "see" those players at all.

Note

NATs don't affect game lag—NATs are all about connecting to other players.

It got nothing to do with DMZ.

You need to enable UPnP.
 
Xbox Live and Routers



The Xbox team and Xbox Compatible providers are working together to make sure you select the right service offering and have the information you need to get connected. When you buy a router or integrated router/modem with the Xbox Compatible logo, you can be sure it has been tested extensively on Xbox Live.


Use These Routers with Xbox Live
The following routers work with Xbox Live. To find out more about a particular router, follow the vendor link.

Note To make sure your router will work, check that your firmware is the same as the versions listed below.

Note These lists are based on preliminary testing and subject to change without notice.



Vendor
Model Firmware
Dlink

DI-614+ v 3.35, 3.2, 3.43, and 2.18
DI-624 v 2.42 and 1.23
DGL-4100 v 1.2 and 1.3
DGL-4300 v 1.2 and 1.3

Linksys

BEFSR41 (v3) v 1.05.00
BEFW11S4 (v4) v 1.45.3 and 1.50.14
WRT54G v 2.02.7
WRT54G(v2) v 3.01.03
WRT55G(v2) v 1.10
WGA54G v 1.10

Netgear

WGU624 v 1.0.1.2EN
WGU614 v 1.40
WGR 614 v 1.40


Use These Combined DSL Modem/Routers with Xbox Live
The following combined DSL modem/routers work with Xbox Live when used with the noted service providers. To find out more about a particular router, follow the vendor link.

Note: These lists are based on preliminary testing and are subject to change without notice.




Thomson SpeedTouch 510
SpeedTouch 530 Telstra Bigpond


Don't Use These Routers with Xbox Live
The following routers currently don't work with Xbox Live. To find out more about a particular router, follow the vendor link.



Vendor Model Firmware


DLink
DI-754 v 1.02
DI-764 v.R20.MB34AU
DSL-302G v 1.1

Linksys

BEFSR11 v 1.43 and 1.44.2
BEFW11S4 (v2) v 1.43 and 1.45 Make sure you get that firmware version correctly and it will communicate with your router and xbox 360 live. No early or later version. Just same version what it asked for.
NR041 v 1.2


If you can't find your router on the list or have questions or problems, contact your router vendor.
 
Sjones4dad, your got it right! What you missed out for PacMan is that no router can port forward same port to two NAT IP addresses! Problem that I discovered about 2 months ago is that once you enable DMZ, you disable the port forward feature automatically. So, if you got gamer console that you want to use though the Internet and having VP, then you need to disable DMZ then set up port forward for both device AS LONG AS none of both requires same port forwarding.. If it does, then you have two choices, set up hours for each port forward availablity, second choice is to get additional IP address, then forget whole thing.
 
GRC*|*NAT - The Security of Network Address Translation**

Hope this information will help you to solve your issue with wireless adapter and router. You told me that you have all four computers on wireless. It is complex for wireless to communicate. AND people from outsiders use your IP address because you have no security on wireless. For example, I live across from your home. I am using laptop and find some wireless list that I need to hook up. I see 7 lists. Five already in WEP or WPA. Other two home owners does not use WEP or WPA. I can use your wireless router and using your line. Cause your internet is kind of stuck in traffic.

Isolating an open or low-security wireless access point:
Suppose you have a first-generation wireless Wi-Fi NAT router access point running either fully-open (you never bothered to setup any security at all) or with crackable WEP encryption (because your hardware cannot be upgraded to the later generation of really good WPA encryption).

I had wireless router. DMZ set up for VP-100. I used WEP for protect my ip address for wireless. No one can use my line. That is why I have no problem with NAT.

Whatever you want to set up WEP or WPA.

Try to solve that first and see what happens. That you need set up WEP. Just leave dmz for vp-100.
 
Sjones4dad, your got it right! What you missed out for PacMan is that no router can port forward same port to two NAT IP addresses! Problem that I discovered about 2 months ago is that once you enable DMZ, you disable the port forward feature automatically. So, if you got gamer console that you want to use though the Internet and having VP, then you need to disable DMZ then set up port forward for both device AS LONG AS none of both requires same port forwarding.. If it does, then you have two choices, set up hours for each port forward availablity, second choice is to get additional IP address, then forget whole thing.

I don't know about numbers for VP that use port forwarding but haven't get VP yet. I got numbers for port forwarding to Xbox Live from other websites.

It was too late because my firmware is 1.52.02 but it does not compatible with VP.

You means that if both of them aren't help then get 2nd modem? If yes then would cost me more $$$$.
 
Oh damn, I wish that would live on own. :pissed:

Fuck to wireless router... I want router with no wireless but just wired...
 
GRC*|*NAT - The Security of Network Address Translation**

Hope this information will help you to solve your issue with wireless adapter and router. You told me that you have all four computers on wireless. It is complex for wireless to communicate. AND people from outsiders use your IP address because you have no security on wireless. For example, I live across from your home. I am using laptop and find some wireless list that I need to hook up. I see 7 lists. Five already in WEP or WPA. Other two home owners does not use WEP or WPA. I can use your wireless router and using your line. Cause your internet is kind of stuck in traffic.

Isolating an open or low-security wireless access point:
Suppose you have a first-generation wireless Wi-Fi NAT router access point running either fully-open (you never bothered to setup any security at all) or with crackable WEP encryption (because your hardware cannot be upgraded to the later generation of really good WPA encryption).

I had wireless router. DMZ set up for VP-100. I used WEP for protect my ip address for wireless. No one can use my line. That is why I have no problem with NAT.

Whatever you want to set up WEP or WPA.

Try to solve that first and see what happens. That you need set up WEP. Just leave dmz for vp-100.

Yea, Thanks for helping me about WEP but DHB said WEP isn't good and hackers are already broke in WEP then WPA is other security to protect the router right now.

DHB, I don't missing on your point but I said NAT is moderate or strict because it was from DMZ, UPnP and port forwarding. If all of them are disable then NAT will be moderate and strict but only 3 options to turn enable, such as UPnP, port forwarding and DMZ. I need get network adapter for Xbox 360 then add Xbox Live IP number on number to get NAT to open. UPnP must be enable at first if Xbox live is work or not but someone will figure out with me.

Security is doing nothing with NAT.
 
I don't remember all of the ports that VP needs, but I know 1720 is one of most important port for VP. :)

Here is link where you can crack in WEP and WPA
Cracking WEP and WPA Wireless Networks - Docupedia

Soon or later somebody is gonna to crack in WPA2, I wouldn't be surprise

The best and safest method of networking is WIRED!


I don't know about numbers for VP that use port forwarding but haven't get VP yet. I got numbers for port forwarding to Xbox Live from other websites.

It was too late because my firmware is 1.52.02 but it does not compatible with VP.

You means that if both of them aren't help then get 2nd modem? If yes then would cost me more $$$$.
 
I don't remember all of the ports that VP needs, but I know 1720 is one of most important port for VP. :)

Here is link where you can crack in WEP and WPA
Cracking WEP and WPA Wireless Networks - Docupedia

Soon or later somebody is gonna to crack in WPA2, I wouldn't be surprise

The best and safest method of networking is WIRED!

Are you expected to give family to set computer room, that where more than 1 computers and use ethernet cable to hook on Linksys router (wired) then add TV or monitor for Xbox 360 to play. It seems would better idea to do that and no fit for me to do it but supposed to live on own and throw all stupid wireless router in trash. :pissed:

Without doubt, someone will going cracking in WPA2 in next year or so.
 
You got my point acrossed! I never 100% felt any comfy with wireless.


Are you expected to give family to set computer room, that where more than 1 computers and use ethernet cable to hook on Linksys router (wired) then add TV or monitor for Xbox 360 to play. It seems would better idea to do that and no fit for me to do it but supposed to live on own and throw all stupid wireless router in trash. :pissed:

Without doubt, someone will going cracking in WPA2 in next year or so.
 
It depends on what level of security you want. If you live out in the woods, where no one will be able capture your signal then no security is needed. If you live in an apartment where wireless node overlap all the time, you may want the most security possible.

If you just have MAC filtering enabled and no WEP, I could hijack your node in about 20 minutes. What happens is that you create a situation where you force the victim's client to reassociate with a unfriendly node, get the MAC address and then spoof it on another client to access your node. In most cases it is a little tricky but very doable.

If you have WEP enabled even with a weak key and your equipment was made after 2002 I most likely would not be able to crack the key and gain access to your system.

It is better to use WEP then mac filtering.

Why wep is better:
mac filtering will keep people off you access point but all you data will be flying around in the clear. Secure websites will still be encripted via SSL so that data will be safe. But Anyone with a wireless sniffer will be able to capture you unencrypted data like pop3 mail passwords, telnet, ftp etc.. WEP will encode you data so it can not be sniffed + keep people off you access pont in shared mode. All newer hardware uses WEP plus that can not easly be cracked using available tools (aka airsnort wepcrack).

Mac Filtering:
All 802.11 broadcast frames sent form your station will have the mac address attached. Anyone with a wireless sniffer in range will see you mac address. They would then have to spoof the mac address from their station. If you were both online at the same time you would have a address conflict so someone would get kicked off.

In the end someone would have to really want to get onto you network to try and bypass either of these. But if you want to make it that much harder the few seconds it takes to configure wep is more than worth it.
 
Back
Top