NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Reddyfire's avatar
Reddyfire
Aspirant
Aug 26, 2020

Double NAT and EcoBee

Good day everyone,

 

I have been searching for a solution for this all day and attempting various solutions with no resolve. I appear to be double-NAT'ed on my current setup which prevents my Ecobee smart thermostat from reaching the servers.

 

I have a Netgear MR1100 or M1 hotspot hooked up, branded and locked to AT&T network. This is on firmware NTG9X50C_12.05.05.14_ATT_04.06

 

This is hooked up behind a Ubiquiti Gateway 3P and a UAP-LR both with the latest firmware as of today.

 

In its default settings the ecobee will hookup to the wifi that m1 creates and connect to its servers with no issues. However as soon as i setup the m1 for use with my gateway and ap by disabling dhcp, disabling ethernet standby and enabling ip passthrough; ecobee is locked out and my port 8190 is now closed. All my other devices hookup online just fine and are able to browse (albeit the port is still closed). 

 

The M1 assigns a 10.* IP address to the gateway and the gateway assigns a 192.168.0.* to the devices on the network. Port forwarding rules on the M1 are unable to be created and on the gateway have no effect. 

I am unable to update the M1 to the latest firmware due to the option of manual update not available on the AT&T firmware.

 

I am at my wits end trying to figure out how to allow ecobee to use port 8190 to talk to its servers. Has anyone encountered this issue or have any incling of a solution to this double NAT situation i am in ?

If there is any other questions in regards to my particular setup please let me know and ill provide details ASAP.

 

Best regards,

Frustrated in Seattle!

1 Reply

  • You are receiving the 10.x.x.x (private NAT'ed IP) from your wireless provider.  If they do not give you a public IP, you don't have any ports to forward into your network.  This is called "Carrier Grade Network Address Translation" or "CGNAT".  Even if you eliminate the NAT in your MR1100, it does not affect the NAT upstream at your wireless provider's end.

     

    One idea is to get a VPN service that provides port forwarding.  They give you a way to control port forwarding on their end.