Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    UPnP Double NAT

    Scheduled Pinned Locked Moved pfSense Packages
    7 Posts 2 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      franky29
      last edited by

      Here is my current network configuration
      Orange router - eth0 (North public IP)
      Orange router -eht1 (South 192.168.5.1)

      pfSense WAN -eth0 (north 192.168.5.22)
      pfsense LAN -eth1 (south 192.168.0.3)
      pfsense DMZ -eth2 (192.168.10.1)

      As you can see i'm double NATed and I have no choice about it. I'm trying to figure out if it's even remotely possible to have UPnP enabled so I can play games on my nintendo Switch or Steam.

      I tried to look up my Public DNS address and insert that into WAN overide but I still am unable to lauch Fortnight for example on my Switch and Steam fails to connect.

      If I plug my laptop on LAN I'm able to login and play on STEAM but i'm unsure what is the difference in the networks.

      Bob.DigB 1 Reply Last reply Reply Quote 0
      • Bob.DigB
        Bob.Dig LAYER 8 @franky29
        last edited by

        @franky29 Have you made pfSense the exposed host (aka DMZ) of the orange router?

        F 1 Reply Last reply Reply Quote 0
        • F
          franky29 @Bob.Dig
          last edited by

          @bob-dig There's an option in the Orange router that is called DMZ and i've setup the WAN IP of pfSense router 192.168.5.22 to be that one. The way I understand it is the Orange router will give it full access to the internet if I put it in that.

          Probably relevant info I omitted in the description is I'm running OpenVPN PIA connection for everything leaving my network. But what is weird is my Steam connection works for LAN but not on wifi even if I included the same allow 1024-65535 192.168.10.10/32 1024-65535.

          When I go on UPnP status page I can see my Plex Docker that's running on my NAS in the UPnP session page but not my Laptop with Steam which leads me to believe it's not using UPnP to connect to steam.

          Bob.DigB 1 Reply Last reply Reply Quote 0
          • Bob.DigB
            Bob.Dig LAYER 8 @franky29
            last edited by Bob.Dig

            @franky29 I don't think that steam is using UPnP in general.

            And if you route everything through a VPN, UPnP won't work good either.

            F 1 Reply Last reply Reply Quote 0
            • F
              franky29 @Bob.Dig
              last edited by

              @bob-dig Ok. Understood. So if I add an Outbound NAT manula rule that would have let's say the Nintendo Switch IP address to go through the normal GW and not use the VPN then that should technically use the UPnP right?

              Bob.DigB 1 Reply Last reply Reply Quote 0
              • Bob.DigB
                Bob.Dig LAYER 8 @franky29
                last edited by

                @franky29 I can't tell but I would disable all vpn until you got this worked out.

                1 Reply Last reply Reply Quote 0
                • F
                  franky29
                  last edited by

                  thanks for the feedback. I'll try both.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.