@Gilera
Buying more IP’s is not an option for me. I agree though, I do not understand how a cheap supplied WiFi router can give you open NAT on both boxes and play online no issues.
I did notice the second Xbox trying repeatedly to open port apon port trying to connect to COD serves when pfsense was configured to give both boxes Open NAT.
Almost seems like pfsense is not keeping track of the ports and the traffic is not getting thru for the second one.
Also the supplied WiFi router from charter seemed like it was a static port hybrid, where it would static port if it was able to, but then change the destination port if it could not.
In the end, I went with one Xbox open nat( the wife’s) and one strict nat(mine).
The only thing I changed was making mine non static port in the NAT rules.
I can still play games this way but not sure why. It plays like it’s open, but it’s reporting as strict.