Ports open but NAT type still strict
-
Im unable to get my game out of a strict NAT type. I use opnsense for a router.
So far I've:
Disabled windows firewall completely
Enabled UPnP - pluto does not open the port and log files show an attempt was never made
Created the port forwards - canyouseeme(dot)org says I cannot be reached at the specified ports. I have other ports open for different services and they work fine.
Updated my launcher
Disabled windows defender, restarted pc, restarted router, etc etcWhen I open up my resmon, I can see that the plutonium exe is listening on 3074 and 4976.
Using wireshark and filtering for those 2 ports, this is what I get after I boot up the game and enter the main menu. So traffic is freely flowing from my game to the servers, but for some reason my NAT type wont switch to open. Any ideas? Trying to play some customs with friends and they cant join me.
-
Hey man I'd love to help you with this as I also use opnsense but I don't have a strict nat type. I wonder if it's ISP related? As it should just work.
Do other black ops games show the same nat type?
You don't have to port forward for this game (as far as I'm aware) as I haven't had to do that. Opnsense does also have a upnp package you could try installing and seeing if that works better for ya.
Are your firewall rules pretty strict like a deny all with only allowed entries?
You can drop your discord if you'd like more real time help or whatever you use. I don't hop on the forums often. -
canyouseeme is useless because it's UDP and it can only ping TCP afaik
Do you have any other antivirus (even if it's disabled). Some of them have firewalls that can block things on games
-
Resxt unrelated but could you please assist me in the other thread I have about more than 1 player playing on a local network? I have the workaround for now but i'd rather not have to force my friends to use it every time we play and I have people over.
-
Resxt Didnt know that about canyouseeme thanks for the info.
My PC does not have any antivirus or security programs installed besides windows defender
My router does not have any advanced firewall features enabled (IDS/IPS, DPS etc). Has the default deny rule and 2 others to allow me to vpn into my home network...
My ISP is Xfinity (fiber), im in south usa.
Lmk if you have any other ideas
-
dudemanguy123 Hey thanks for the reply man sorry i thought id get emailed...
Ive never had issues with my ISP before itd be weird if they were somehow blocking these specific ports... i run other services and never had issues with them for years
Only other black ops game i play is black ops 3 and it works just fine (can host customs, join anyone, etc). The other cods also work perfect. Played the hell out of MW2022 and had no issues.
Yeah I have the upnp plugin installed thats what I referenced in the OP but the game never attempts to open the port so idk. I have parsec and nicotine+ installed on the same pc and theyre able to holepunch just fine.
Yes I have the default deny all in rule and some allowed entries
You can add me on discord ktfjulien if you have any other ideas
-
ktfjulien said in Ports open but NAT type still strict:
Only other black ops game i play is black ops 3 and it works just fine (can host customs, join anyone, etc). The other cods also work perfect. Played the hell out of MW2022 and had no issues.
Doesn't really count, they have hundreds of servers just for NAT hole punching, we don't have that luxury.
ktfjulien said in Ports open but NAT type still strict:
My ISP is Xfinity (fiber), im in south usa.
Xfinity definitely has caused issues in the past with its "xFi Advanced Security".
Something you could try is to host a server (with a server key) and check with wireshark if you get any incoming queries.
-
ktfjulien I can probably add ya and do some testing tomorrow. It's very possible that the deny all rule could have something to do with it which would necessitate a port forward.
We can test out joining each other's games and seeing what traffic gets captured. Also im pretty sure opnsense has some logging we can check