[BUG] MT6000 - Full Cone NAT not working after reboot

Sorry, could you please clarify this part one more?

Then you need to check whether the public IP is on the router Flint2 or on the ISP Modem, or the public IP is still on the upper-level network device of the ISP modem, the ISP modem may be obtained a CGNAT IP.

The public IP is on the router

Hello,

I built a turnserver locally to test the Full cone situation, it depends on coturn, and server IP is 192.168.166.1.

The topology is Turnserver - MT6000 - PC

Test with NATTypeTester, when Full Cone NAT of MT6000 is enabled:

When Full Cone NAT of MT6000 is disabled:

The above test results are in line with expectations, the Full Cone NAT works well.

  1. Is this public IP 190.134.223.77 your MT6000 WAN IP?
  2. In your test topology, is there a layer of routing between MT6000 and PC?
  3. Please try installing a plugin upnp, opkg update && opkg install upnp, and enable it in Luci:
1 Like

With the other servers it works, but with 192.168.1.1 it still says udpblocked.




Hello,

The first 2 STUN Server addresses are private addresses, which means you have to build and host a own turnserver on your Flint2 WAN side, only that you can test like my previous reply.

The last 2 are public network turnserver. The test results show that your Flint2's Full Cone NAT has taken effect and is working normally.

1 Like

So on my Flint 2 router the full cone NAT is NOT working which is a problem since I am a big gamer. I have it enabled in the router settings yet when I go to test it or play a game I am met with Port Restricted. I am directly connected to my router with my PC using an Ethernet cable and the router is directly connected to the fiber ONT device from my ISP.

Using firmware 4.8.3

What is the test result when your PC is directly connected to the ISP modem (without flint2)?

Thank you for your reply. Here are the results, and may I ask what do you suggest with the Flint 2 router? I can't figure out why it won't allow an open NAT with or without upnp enabled for any of my games or apps.

Thank you for your reply. Here are the results, and may I ask what do you suggest with the Flint 2 router? I can't figure out why it won't allow an open NAT with or without upnp enabled for any of my games or apps.

Hello,

Does the ISP modem assign a private IP or a public IP to the LAN client (like PC or Flint2)?

If it’s a private IP, then with Flint2 there may be double NAT, so effect may be somewhat compromised.

  1. Try disabling hardware acceleration on the Flint2.
  2. Try installing the UPnP plugin and enable it.

If possible, switch the ISP modem to bridge mode so the public IP is passed to the Flint2 — that will likely improve the NAT type.

1 Like

I'm on FTTH (Fiber to the home) so I connect directly to a small ONT device instead of a modem. There is no GUI to access.

And when connected directly with my PC I get a public address. Hardware acceleration is disabled already and UPnP is installed and running. It appears upnp does open ports for two of my games Call of Duty and Battlefield 6 however it does not for Arc Raiders or NAT testing, VOIP, etc.

Alright so I confirmed my IP is a public one when directly connected to the ONT device for my fiber internet and that my NAT type is Open when bypassing the Flint 2.

UPnP is installed and enabled. It works for two of my games it appears but not for others such as Arc Raiders or anything else. Here is a screenshot using the NatTypeTester tool.

What else can you suggest? I'm out of ideas at the moment. I have enabled DMZ as a last ditch effort to see if it would work and that DOES allow for fullcone NAT however that is not ideal as it leaves my system wide open without security.

Hello,

  1. Please SSH to the router and run lsmod | grep xt_FULLCONENAT and iptables -t nat -nvL POSTROUTING to check the output.

  2. Please try restarting the fullconenat service: /etc/init.d/fullconenat restart and try again.

  3. If 2 no luck, please try to reset the firmware and test again.

We just set up a stun server local and verified that the MT6000 v4.8.3 full cone NAT works properly.

Btw.. haven't I been a part of these forums long enough and posted sufficiently to not be flagged for "post awaiting moderator approval" each time?

I know it is to prevent bots but I never used to get this message, let alone every post lol. Just wondering why it is flagging a well known member?

Edit: Wait.. this post (after the one I submitted prior to this still being in the queue) just went through without a hitch. Ha I don't get it :thinking:

Thank you for your reply.

After inputting the commands via SSH to the router this is what I got..

It appears it didn't work. I should have mentioned I am running the OpenWrt 24 firmware I installed from the firmware list (on this site) provided. I found it to allow more customization and performed in general better than 4.8.3 (aside from this hiccup). I have not installed or changed anything to my knowledge that would affect the NAT type though.

With your test environment and machine there are you able to run the test again using the 4.8.3 OpenWrt 24 firmware? Would using this firmware affect the NAT status without changing anything?

To prevent bots — especially the many advertising ones we've been getting recently, we've tightened account upgrade requirements. We were annoyed by those bots, so.. Now your level has been upgraded, so your reply no longer need to be reviewed.

1 Like

Ops I just noticed you’re using the op24 firmware in your latest screenshot. I had assumed you were using the closed-source v4.8.3 firmware.

The Full Cone NAT on the GL SDK-op24 firmware doesn’t work properly.
Try disabling the network acceleration and test again.

If no luck, please install the closed-source v4.8.3 firmware, or vanilla OpenWRT firmware.

1 Like

Ohh ok good to know. I hope you guys will soon provide a stable release of the firmware using the open WRT 24. I really like the additional options it brings and it seems very smooth and fast without any crashes whatsoever. Works great with Qosmate and Geomate.

Few things though I noticed is that when using Luci to edit say firewall settings and I go to save there will be extra changes that I did not commit myself. It doesn't always occur but when I decide to make changes through Luci and not SSH I will always hit save first without the apply and check to make sure it's only making the edit I approved if not then I tunnel in and do it that way. Which actually has got me a lot more familiar with Linux command lines and more comfortable using this great device.

Keep up the good work thank you for the replies and help. I'll stick with the open WRT 24 for now... Unless another game gets picky and then I'll tinker with the port forwarding settings instead if I have to. UPnP seems to work for some games but not others which is okay as it seems that Arc raiders works just fine as is.

Have there been any changes in upgrading to open 24 soon for a official release? Okay I'll stop with taking your time, again I appreciate your guys's help. :+1:

Oh and thank you for the change to my account here so I won't get flagged for moderation. Damn bots, death to all bots!

1 Like

This topic was automatically closed 180 days after the last reply. New replies are no longer allowed.