Mourning the loss of our friend, WhitPhil.
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
 
Networking
Tag Cloud
access audio black screen blue screen boot bsod connection crash dell desktop driver drivers dvd email error excel firefox hard drive hardware hijackthis internet keyboard laptop malware monitor motherboard network networking outlook problem ram recovery router safe mode screen slow sound spyware trojan upgrade vba video virus vista vundo windows windows 7 windows vista windows xp wireless
Search
Search for:
Tech Support Guy Forums > Internet & Networking > Networking >
annoying NAT/Firewall in my router!

Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

Closed Thread
 
Thread Tools
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 03:40 AM #1
Unhappy annoying NAT/Firewall in my router!
hi, i previously posted a thread on how to disable the firewall in my router. I did as told by going to security when accessing my router then to firewall. I disabled the "SPI Firewall Protection" and unticked any filters. I also unticked the "Block anonymous internet requests". I understand the risks but its okay since i have a good firewall. At first this method worked and nothing was blocked, but later my bitcomet and other stuff became blocked again! So the only method that works for me is DMZ even when the firewall is off. wat does this mean! I dont want to forward ports all the time and do the usual routine. I want this whole firewall thing to be gone!
Wat do i do ?

thanks.
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 03:45 AM #2
forgot to mention, my router is LINKSYS WAG54G2 Wireless ADSL2+ Gateway
JohnWill's Avatar
Computer Specs
Moderator with 96,685 posts.
 
Join Date: Oct 2002
Location: South Eastern PA, USA
Experience: Advanced age & experience
15-Sep-2009, 08:41 AM #3
If you remove the NAT layer, you also remove the routing function. Since the DMZ works, what's the exact problem?
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 08:54 AM #4
well since the dmz only works for one pc. i got 3 pcs at home and i want them NAT free.
JohnWill's Avatar
Computer Specs
Moderator with 96,685 posts.
 
Join Date: Oct 2002
Location: South Eastern PA, USA
Experience: Advanced age & experience
15-Sep-2009, 09:01 AM #5
You need three public IP addresses if you want to run three machines. Open the wallet, because the ISP is going to charge you for that capability.
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 09:11 AM #6
ok but why doesnt turning off the spi firewall do anything???
zx10guy's Avatar
zx10guy has a Photo Album
Computer Specs
Senior Member with 1,333 posts.
 
Join Date: Mar 2008
Experience: Clueless
15-Sep-2009, 11:02 AM #7
There are a couple of concepts you're not understanding here. First the SPI functions and firewall are all related to network security. The firewall has set rules under which it will allow traffic to go in and out of your private network.

The NAT function or network address translation is used primarily to allow people to run multiple private devices all with unique IP addresses behind a single or pool of public IPs. In a typical home user situation, home users will only get one public dynamic IP. The NAT function of many routers is to allow a range of internal private addresses to hang off of this single IP. NAT is a confusing subject for those who get into higher level networking. In the Cisco environment, the NAT commonly used is really a PAT or port address translation. Routers keep track of sessions by keeping a port table. Because by the very nature of TCP traffic, the client initiating a session is going to grab a random high port. This port is then kept in the session table which allows the router to direct the return response back to the appropriate internal IP address. When you have multiple internal IPs sharing a single public IP, this is called NAT overloading.

So really, when you turn off SPI, you're not doing anything to how the router is routing traffic. As John has indicated, if you want to front multiple devices directly to the internet, you're going to have to purchase multiple public IPs from your ISP...if this is even an option.
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 11:41 AM #8
pfft... ok.. so my only method is just dmz right ? damn... this is breaking my ballz
Soundy's Avatar
Computer Specs
Senior Member with 1,412 posts.
 
Join Date: Feb 2006
Location: The Pitt, BC
Experience: Omnigeek
15-Sep-2009, 12:42 PM #9
If your router, PCs and software all support UPnP (Universal Plug'n'Play), it can help in some port-forwarding situations by essentially allowing the computers to create their own routing tunnels. You mention Bitcomet, for example - it supports UPnP, if you're running it on XP or later versions of Windows. From the Bitcomet site: "Auto Config UPNP port mapping in router (UPnP support is required in router, Windows XP is required)."
Hambuga's Avatar
Computer Specs
Member with 83 posts.
 
Join Date: Apr 2007
Experience: Beginner
15-Sep-2009, 12:47 PM #10
ya they all do support upnp now how do i get this done
Soundy's Avatar
Computer Specs
Senior Member with 1,412 posts.
 
Join Date: Feb 2006
Location: The Pitt, BC
Experience: Omnigeek
15-Sep-2009, 01:18 PM #11
Make sure it's enabled in your router; make sure the UPnP service is running in Windows (for XP, right-click My Computer, go to Manage, then to Services, and check that the service is Started and set to Automatic), and make sure the option is enabled in Bitcomet. Other torrent clients I've used (Shareaza, utorrent) will test for UPnP operation and let you know if it is or isn't working.
JohnWill's Avatar
Computer Specs
Moderator with 96,685 posts.
 
Join Date: Oct 2002
Location: South Eastern PA, USA
Experience: Advanced age & experience
15-Sep-2009, 04:51 PM #12
It would help to know specifics of why the DMZ access is required here.
Closed Thread Bookmark and Share

Tags
annoying, disable, firewal, nat, router

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Smart Search

Find your solution!



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.

Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -5. The time now is 02:03 PM.
Copyright © 1996 - 2009 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2009, Jelsoft Enterprises Ltd.
Powered by Cermak Technologies, Inc.