• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Nintendo Switch connection issue Error code

Gaming
nintendo upnp static mapping acl nat
5
55
10.6k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • J
    JonathanLee
    last edited by JonathanLee Oct 8, 2023, 3:15 AM Oct 2, 2023, 2:34 AM

    Hello fellow Netgate community members can you please help?

    Everything works on our new Nintendo Switch, Except the final step of the connection test I get an error on upload error displayed is 2160-8052. I even have NAT B Can anyone help?
    login-to-view
    login-to-view
    I have enabled UPnP

    UPnP works for my XBOX one it shows connections and online games. Nintendo Switch no.

    login-to-view
    I have created static port mappings for the device.

    The Nintendo Switch can access Hulu just fine. I have the proxy enabled and it runs fine.

    login-to-view
    (Firewall is set to disabled for Nat Reflection)

    I feel I still do not have enough experience with the NAT settings to know if this is set correctly for a simple home set up.

    I am running a simple airport in bridge mode for all my lan my wan connects to the wan Dsl modem.

    I have a static DHCP mapping for the switch. Snort shows nothing blocked when the tests run.

    login-to-view
    (Nintendo is set to splice only with custom it fails when it says aborted)

    login-to-view
    (TCP/UDP ports open for the gaming group)

    Nintendo Switch specific approved ports.
    TCP: 6667, 12400, 28910, 29900, 29901, 29920
    UDP: 1-65535

    login-to-view

    I can not get it to start the Disney speed game.

    Make sure to upvote

    1 Reply Last reply Reply Quote 0
    • J
      JonathanLee
      last edited by Oct 5, 2023, 3:19 AM

      Also does Nintendo switch normally use cURL out of the box new?

      login-to-view
      If so I will whitelist it.

      Make sure to upvote

      1 Reply Last reply Reply Quote 0
      • J
        JonathanLee
        last edited by JonathanLee Oct 8, 2023, 3:14 AM Oct 8, 2023, 12:50 AM

        Can anyone please help me with getting a Nintendo switch to work with online games. My Xbox works with UpNp but my Nintendo will not. It testers to NAT type B and after shows good download speed. It fails right at upload. I have static ports set up also.

        It runs some games but the connection test fails on upload test

        Make sure to upvote

        1 Reply Last reply Reply Quote 1
        • J
          JonathanLee
          last edited by Oct 9, 2023, 4:04 PM

          I am thinking it requires stun . . .

          I am starting to see this inside of SNORT

          login-to-view

          Make sure to upvote

          M 1 Reply Last reply Oct 9, 2023, 4:12 PM Reply Quote 1
          • M
            michmoor LAYER 8 Rebel Alliance @JonathanLee
            last edited by Oct 9, 2023, 4:12 PM

            @JonathanLee You sure?
            I got a switch and i log ALL connectivity be it inbound or outbound and pulling up a report for my switch over the last 7 days i dont see STUN.
            Lots of 443 and 53

            login-to-view

            Firewall: NetGate,Palo Alto-VM,Juniper SRX
            Routing: Juniper, Arista, Cisco
            Switching: Juniper, Arista, Cisco
            Wireless: Unifi, Aruba IAP
            JNCIP,CCNP Enterprise

            M 1 Reply Last reply Oct 9, 2023, 4:16 PM Reply Quote 0
            • M
              mcury @michmoor
              last edited by Oct 9, 2023, 4:16 PM

              @michmoor perhaps you are using portfoward and disabled uPnP in the nintendo Switch ?

              What I found problematic is the range ports that Switch needs.. UDP from 1024 to 65535 ??

              https://en-americas-support.nintendo.com/app/answers/detail/a_id/22272/~/how-to-set-up-a-routers-port-forwarding-for-a-nintendo-switch-console

              dead on arrival, nowhere to be found.

              M 1 Reply Last reply Oct 9, 2023, 4:18 PM Reply Quote 0
              • M
                michmoor LAYER 8 Rebel Alliance @mcury
                last edited by Oct 9, 2023, 4:18 PM

                @mcury no port forward here although i do not have UPnP turned on for that vlan.
                But i do have a permit any/any for outbound internet access so i wouldve seen the attempt.

                Firewall: NetGate,Palo Alto-VM,Juniper SRX
                Routing: Juniper, Arista, Cisco
                Switching: Juniper, Arista, Cisco
                Wireless: Unifi, Aruba IAP
                JNCIP,CCNP Enterprise

                M 1 Reply Last reply Oct 9, 2023, 4:20 PM Reply Quote 0
                • M
                  mcury @michmoor
                  last edited by mcury Oct 9, 2023, 4:21 PM Oct 9, 2023, 4:20 PM

                  @michmoor said in Nintendo Switch connection issue Error code:

                  no port forward here although i do not have UPnP turned on for that vlan.
                  But i do have a permit any/any for outbound internet access so i wouldve seen the attempt.

                  NAT shows open for you with those settings ? I don't think it will and perhaps voice in game for some games wouldn't work..

                  And what about static outbound NAT, is that enabled for the Switch IP address ?

                  dead on arrival, nowhere to be found.

                  M 1 Reply Last reply Oct 9, 2023, 4:21 PM Reply Quote 0
                  • M
                    michmoor LAYER 8 Rebel Alliance @mcury
                    last edited by Oct 9, 2023, 4:21 PM

                    @mcury @JonathanLee I think the questions are for you.

                    Firewall: NetGate,Palo Alto-VM,Juniper SRX
                    Routing: Juniper, Arista, Cisco
                    Switching: Juniper, Arista, Cisco
                    Wireless: Unifi, Aruba IAP
                    JNCIP,CCNP Enterprise

                    1 Reply Last reply Reply Quote 0
                    • J
                      JonathanLee
                      last edited by Oct 9, 2023, 4:45 PM

                      I have NAT B with these settings.

                      I use DNS Unbound forwarder

                      login-to-view
                      (UPnP)
                      login-to-view
                      (STATIC PORT)

                      My son can play many online games except Disney Speedster

                      This is the weird result of the test

                      login-to-view
                      (NAT B)

                      login-to-view
                      (FAILS ON UPLOAD SPEED)

                      Lots of games are playable

                      Does use of google stun.l.google.com require a port forward configured from 3478 to 19302? Or if that is configured inside of UPnP is it already set up to do that?

                      login-to-view

                      login-to-view

                      Make sure to upvote

                      1 Reply Last reply Reply Quote 1
                      • J
                        JonathanLee
                        last edited by JonathanLee Oct 9, 2023, 5:00 PM Oct 9, 2023, 4:47 PM

                        @mcury @michmoor UPnP only works for my XBOX shows NAT open on it

                        login-to-view
                        (UPnP RUNNING Xbox shows open nat)

                        login-to-view
                        (ACL)
                        login-to-view
                        (ACL)

                        I do have a proxy the only way the xbox works using both transparent + custom

                        Does Squid need ACLs? If it does why does xbox still run with out it?
                        login-to-view
                        (XBOX NAT OPEN)

                        login-to-view
                        (SQUID ACLs)

                        login-to-view
                        (FIREWALL NAT)

                        Make sure to upvote

                        M 1 Reply Last reply Oct 9, 2023, 5:00 PM Reply Quote 1
                        • M
                          mcury @JonathanLee
                          last edited by Oct 9, 2023, 5:00 PM

                          @JonathanLee said in Nintendo Switch connection issue Error code:

                          Does Squid need ACLs? If it does why does xbox still run with out it?

                          If squid is showing connection attempts in port 80 or 443 for the Nintendo Switch, you should bypass it from the transparent proxy setting in Squid.

                          By the way, I would create an IOT network and put these things there.
                          Disable Squid and Snort in this network, allow everything but not to the internal networks, enable uPnP or enable portforward, latter is preferred.

                          Note that Snort will listen in the parent interface, so this IOT network should be a separate network and not a VLAN, this will help to avoid the waste of CPU cycles in Snort/pfSense.

                          dead on arrival, nowhere to be found.

                          J 1 Reply Last reply Oct 9, 2023, 5:01 PM Reply Quote 2
                          • J
                            JonathanLee @mcury
                            last edited by Oct 9, 2023, 5:01 PM

                            @mcury The switch allows Proxy use, it has options for it where as the Xbox does not. That is what's weird I have no issues with anything in Games except the new Disney racing game. Nintendo does allow you to use a proxy in the LAN settings.

                            Make sure to upvote

                            M 1 Reply Last reply Oct 9, 2023, 5:03 PM Reply Quote 1
                            • M
                              mcury @JonathanLee
                              last edited by Oct 9, 2023, 5:03 PM

                              @JonathanLee I see, but is there a reason to use proxy in the nintendo switch ?
                              I don't have one here so I really can't say, perhaps it has a browser that kids could use that you don't want them to use ?

                              dead on arrival, nowhere to be found.

                              J 1 Reply Last reply Oct 9, 2023, 5:09 PM Reply Quote 1
                              • J
                                JonathanLee @mcury
                                last edited by Oct 9, 2023, 5:09 PM

                                @mcury Yes I protect the web browser from specific sites. Child Safe system.

                                login-to-view

                                (It works great with many games like this)
                                (F-ZERO X Online 99 players Racing game)
                                login-to-view
                                (Proxy use is approved of for Nintendo Switch)

                                Nintendo Does not block proxy use, they approve of it. But this connection test may check for a proxy right? That is why it has NAT B over NAT A but it should still do a upload test ok right?

                                Make sure to upvote

                                M 1 Reply Last reply Oct 9, 2023, 5:13 PM Reply Quote 1
                                • M
                                  mcury @JonathanLee
                                  last edited by Oct 9, 2023, 5:13 PM

                                  @JonathanLee When you get the error code: 2160-8055 (upload test fails), what shows up in Squid ?

                                  Since you are using transparent proxy, you won't be able to bypass that specific domain, but you can check their network IP range in https://whois.domaintools.com/.

                                  After getting their network range, can you try to bypass that network in Squid settings and test again ?

                                  dead on arrival, nowhere to be found.

                                  J 1 Reply Last reply Oct 9, 2023, 5:17 PM Reply Quote 0
                                  • J
                                    JonathanLee @mcury
                                    last edited by JonathanLee Oct 9, 2023, 5:20 PM Oct 9, 2023, 5:17 PM

                                    @mcury a simple connection test thats shows good https response

                                    login-to-view

                                    ctest-ul-lp1.cdn.nintendo.net//upload
                                    ctest-dl-lp1.cdn.nintendo.net//download

                                    both show ok in proxy too

                                    Maybe . . .

                                    login-to-view stun port forward???

                                    Make sure to upvote

                                    M 1 Reply Last reply Oct 9, 2023, 5:20 PM Reply Quote 0
                                    • M
                                      mcury @JonathanLee
                                      last edited by Oct 9, 2023, 5:20 PM

                                      @JonathanLee I can see that Squid is intercepting SSL connections.
                                      Can you do a quick test ? Disable SSL interception for one second, test again and confirm the results..

                                      Then enable it again.

                                      If the test passes, you would need to bypass that network completely from Squid.

                                      I mean, better to bypass the entire network than a single IP address because they usually change.

                                      dead on arrival, nowhere to be found.

                                      J 1 Reply Last reply Oct 9, 2023, 5:21 PM Reply Quote 0
                                      • J
                                        JonathanLee @mcury
                                        last edited by JonathanLee Oct 9, 2023, 5:22 PM Oct 9, 2023, 5:21 PM

                                        @mcury it is splice always for Nintendo already so it is transparent for this device

                                        login-to-view

                                        Make sure to upvote

                                        M M 2 Replies Last reply Oct 9, 2023, 5:23 PM Reply Quote 0
                                        • M
                                          michmoor LAYER 8 Rebel Alliance @JonathanLee
                                          last edited by Oct 9, 2023, 5:23 PM

                                          @JonathanLee Its sitll passing through the proxy.
                                          Can you set this up so it doesnt use the proxy at all. Have it hit a firewall rule instead.?

                                          Firewall: NetGate,Palo Alto-VM,Juniper SRX
                                          Routing: Juniper, Arista, Cisco
                                          Switching: Juniper, Arista, Cisco
                                          Wireless: Unifi, Aruba IAP
                                          JNCIP,CCNP Enterprise

                                          J 1 Reply Last reply Oct 9, 2023, 5:24 PM Reply Quote 0
                                          8 out of 55
                                          • First post
                                            8/55
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.