Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Building my own router.

    Hardware
    5
    54
    3.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Master Henry @stephenw10
      last edited by

      @stephenw10 IMG_0169.jpg

      G 1 Reply Last reply Reply Quote 0
      • G
        GeorgePatches @Master Henry
        last edited by

        @Master-Henry OK, so your LAN IP is not a valid private IP. Try setting it to 192.168.1.1/24. That's the default and things will probably work.

        M 1 Reply Last reply Reply Quote 0
        • M
          Master Henry @GeorgePatches
          last edited by

          @GeorgePatches @stephenw10

          Hey guys, sorry I missed your reply @GeorgePatches. I reset my pfsense router both times for when using unmanaged switch and no switch. No dice. I've seen various videos that the default IP address for pfsense is 192.168.1.1 and it is unreachable. No rice cooker sound and no notification that my computer sees that there's another network; usually when I use/install a new router it shows. Very weird. It's almost midnight in NY and I am going to crash. If you guys have any more suggestions, I do appreciate it but find it very weird that it is not working. If all doesn't work. I'm gonna try and install OPNsense.

          stephenw10S 1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator @Master Henry
            last edited by

            @Master-Henry said in Building my own router.:

            the default IP address for pfsense is 192.168.1.1 and it is unreachable

            It would only be reachable on that IP when the LAN interface is configured to use it of course.

            Is there any particular reason you chose to use 168.142.6.1?

            M 1 Reply Last reply Reply Quote 0
            • M
              Master Henry @stephenw10
              last edited by

              @stephenw10

              No reason. I changed it just to get into pfsense.

              M 1 Reply Last reply Reply Quote 0
              • M
                Master Henry @Master Henry
                last edited by Master Henry

                @Master-Henry said in Building my own router.:

                @stephenw10

                No reason. I changed it just to get into pfsense.

                @stephenw10 @GeorgePatches

                Ok guys. Good news. I got pfsense. Internet and Xbox is working. How do I get Xbox to open NAT? How do I port forward? I do not want UPNP on.

                G 1 Reply Last reply Reply Quote 0
                • G
                  GeorgePatches @Master Henry
                  last edited by

                  @Master-Henry said in Building my own router.:

                  I do not want UPNP on.

                  Any particular reason? It would make life easier for you.

                  @Master-Henry said in Building my own router.:

                  How do I port forward?

                  Step 1, you need to setup your xbox with a static IP. So either manually set that on the xbox or assign it a static lease in pfsense.

                  Step 2 to X, follow theses instructions. Assigning port forwards

                  M 1 Reply Last reply Reply Quote 1
                  • M
                    Master Henry @GeorgePatches
                    last edited by Master Henry

                    @GeorgePatches

                    Hey George, sorry for the late response. Been playing around with my pfsense router.

                    Xbox NAT is still strict if I forward all the required ports by Microsoft/Xbox. For one of my PC programs, I port forward a port and it opened up.

                    Do I need to enable UPNP? I know that there is a deny tick box. On my consumer routers, I disable UPNP because of security reasons/concerns and for gaming NAT. I would get moderate/strict NAT.

                    Is there another way?

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      You might need a static outbound NAT rule for the xbox to prevent it changing the source port.

                      https://docs.netgate.com/pfsense/en/latest/nat/outbound.html#nat-staticport

                      JonathanLeeJ M 2 Replies Last reply Reply Quote 2
                      • JonathanLeeJ
                        JonathanLee @stephenw10
                        last edited by

                        @stephenw10 I went this route for games it works amazingly well, I also have it running on a different subnet and interface so my NAS and secure VPN side doesn’t see or touch the gaming guest network. Great guide

                        Make sure to upvote

                        1 Reply Last reply Reply Quote 0
                        • M
                          Master Henry @stephenw10
                          last edited by

                          @stephenw10 said in Building my own router.:

                          You might need a static outbound NAT rule for the xbox to prevent it changing the source port.

                          https://docs.netgate.com/pfsense/en/latest/nat/outbound.html#nat-staticport

                          @stephenw10 I believe I did it right, but my NAT is still strict. I also added my xbox via DHCP leases and set up a static IP. Are there any other ways without using UPNP?

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            How did you do it? You have screenshots?

                            M 1 Reply Last reply Reply Quote 0
                            • M
                              Master Henry @stephenw10
                              last edited by

                              @stephenw10 Capture.PNG Capture2.PNG

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                The source address there should be the static IP address reservation for the xbox in the LAN subnet. That should be in the private LAN subnet and as such there is no need to obscure it.

                                The translation address needs to be the WAN address not LAN.

                                M 1 Reply Last reply Reply Quote 0
                                • M
                                  Master Henry @stephenw10
                                  last edited by

                                  @stephenw10

                                  The Source IP address is my Xbox. I switched to WAN instead of LAN for translation and it's still strict after restarting my Xbox. I haven't rebooted my router.

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    With the rule as it was set I'm surprised the xbox could connect out at all. Try clearing the states.

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.