NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Papagaiou's avatar
Papagaiou
Aspirant
Sep 07, 2012

help me getting access to the router from internet

Hello,

I searched here and there but still the same issue. I have a Nas ultra 2 connected to a router Cisco E3200 which is connected to my modem router a Sagem VDSL modem from Scarlet (Belgium, Belgacom). I would like to be able to use Photo II, Remote and Plex when I am away from home.

I can connect to those applications perfectly from within the LAN. From the internet, Photos.readynas.com tries to connect to my IP but fails. Same for the rest FTP server... that I could create. I open all ports that I think I need :
Cisco router has 192.168.1.3 local IP from modem.

On the modem I have opened:
LAN servers
Name Activated Protocol Public start port Public end port LAN start port Local IP Address
Readynas remote Yes TCP 6300 6300 6300 192.168.1.3
Ftpnas Yes TCP 20 21 21 192.168.1.3
ReadyNAS PhotosII Yes TCP 8086 8086 8086 192.168.1.3

I also set in port triggering of the modem:
Port Triggering

Protocol Outgoing Trigger Ports Incoming Ports to Open Action
L2TP - Layer Two Tunneling Protocol
UDP Any -> 1701 UDP Any -> Same as Initiating

TFTP - Trivial File Transfer Protocol
UDP 1024-65535 -> 69 UDP Any -> Same as Initiating

ftpreadynas
TCP 20-21 -> 20-21 TCP 20-21 -> 20-21

photo
TCP 8086 -> 8086 TCP 8086 -> Same as Initiating

remotenas
TCP 6300 -> 6300 TCP 6300 -> Same as Initiating

On the router E3200 I opened the following ports as TCP/UDP for 192 . 168 . 0.120 (this is the IP of the NAS)
6300-6300
8086-8086
20-21

I also tried to put DMZ on IP of the NAS of the router and also DMZ on the router IP within the modem. Still without success.

What I am doing wrong? Thank you.

8 Replies

Replies have been turned off for this discussion
  • First thing you need to do is change your LAN setup to have a single router. Right now you have a NAT router behind a NAT router, so you'll never be able to connect from outside.

    If you can change your DSL modem into bridge mode that would be easiest. This way the modem acts as a dumb DSL bridge. The router will obtain a public IP on its WAN port and intelligently handle traffic between your LAN and WAN.

    From there if your E3200 has uPnP enabled Photos II should setup port forwarding automatically. Personally, I am not a fan of uPnP from a security standpoint and I disable it on systems I work on. If you choose to follow my practice you'll need to port forward the "listen" port (usually TCP 8086) in your router.

    Here's the Photos II manual. The first 10 pages or so discusses port forward. http://www.downloads.netgear.com/files/ ... 9Mar12.pdf

    If you want to learn how to port forward for your E3200 look here: http://homekb.cisco.com/Cisco2/ukp.aspx ... 96&slnid=3
  • In my case because of TV and telephone over IP, i cannot use bridge mode for the modem.
    I found a website to test my ftp server. That helps me to debug
    I could only access the ftp server of the nas if at the modem I put DMZ for the router IP where the NAS is connected to. Then the routeur E3200 has still the firewall ON.

    As there is nothing connected to the modem (except SIP and TV), all the rest pass through E3200. I guess my LAN is still safe from the internet.

    I do not understand why the port triggering was not working as it should from the modem. Logically if I open the same port on the routeur and modem, all should pass thru?
  • I sure hope that VDSL modem has a SPI firewall. Consider connecting your NAS directly to a VDSL modem LAN port (or if you have only one LAN port, connect a switch.). See if you can connect to Photos II. If not, likely that VDSL modem does not support uPnP which means you'll need to get the manual and port forward to the NAS IP. Be sure to set a static IP for the NAS.

    Convert your E3200 router to an access point. See this for instructions. http://www.smallnetbuilder.com/wireless ... cess-point

    And finally, you can use the E3200 as your LAN switch after you convert to an access point.
  • OK. I can get access by FTP to my ReadyNAS.

    However Photo II still is not accessible. The IP shown by photos.readynas.com is correct. The port forwarding are 8086 correct? TCP or UDP?
    Thank for help.
  • I d like to add all checks were fine in the settings of photos II. Still the server does not return the photo II and time out.
  • Did you manually setup port forwarding or does your router support uPnP? The Photos II app will tell you in the connectivity test.

    Are you running the latest version of Photos II?
  • Yes i manually forwarded 8086 tcp . The diagnostic says all is OK. However when I try to access it it times out. I did the test from my company maybe it's firewall is blocking it but when that happens I get a warning normally.
  • Ok photo ii works from the Internet. My cie is indeed blocking this port. I need to check readynas remote now.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More