How can I forward an external WAN IP:PORT to internal LAN IP (no port desiganted)? Zyxel USG-20

Options
124»

All Replies

  • OldTiger
    OldTiger Posts: 19  Freshman Member
    First Comment
    Options
    My Authentication Policy is not enabled.  Are you suggesting enabling it and making a new rule?

  • CHS
    CHS Posts: 177  Master Member
    First Anniversary 10 Comments Friend Collector First Answer
    Options

    It should be working when using 1:1 NAT.

    If it is doesn't not work, how about checking with the manufacturer of NVR or IP camera about the following questions?

    e.g.,

    IP cameras are located on Internet and NVR is behind NAT router.

    Which port should be opened on NAT router for video stream from Internet to NVR in this scenario?

    Any other settings required to be set on IP camera and NVR?

  • Zyxel_Emily
    Zyxel_Emily Posts: 1,296  Zyxel Employee
    First Anniversary 10 Comments Friend Collector First Answer
    Options
    Hi @OldTiger,

    If you have two public IP addresses from the ISP, try to configure a bridge interface to bridge WAN and LAN interface so the NVR gets the public IP address.

  • OldTiger
    OldTiger Posts: 19  Freshman Member
    First Comment
    Options
    Only one IP. 

    I think my request here as far as the USG20 should be considered exhausted, unless anyone knows anything about the video feed/stream from IP cameras.  My post on September 20, 2019 8:57PM shows the working model of NAT that actually does forward the port as I originally requested.  With that config, I can locally type in a local LAN address of 192.168.1.250 and it will direct me to an external IP of 23.241.176.188:250.

    My problem is that for some unknown reason, the video feed/stream will not pass through as expected and I merely get a black screen where the video image should be.  If anytime has any suggestions PLEASE LMK!  I am considered an expert with IP-CCTV, but this eludes me.


  • zyman2008
    zyman2008 Posts: 199  Master Member
    First Anniversary 10 Comments Friend Collector First Answer
    Options
    I think most of the camera or media player discovery protocol is broadcast or multicast packets.
    Which NAT only can process UDP or TCP unicast packets.

    I suggest to capture the packets between NVR and IP camera to check what's the traffic.
    That's easy to know the root cause.
  • OldTiger
    OldTiger Posts: 19  Freshman Member
    First Comment
    Options
    Unfortunately capturing packets & checking them is beyond my knowledge.  If you care to give me directions, I would be happy to follow them.  I can do it on 2 identical IP cameras, one on the LAN and one on the WAN.

  • zyman2008
    zyman2008 Posts: 199  Master Member
    First Anniversary 10 Comments Friend Collector First Answer
    Options
    This steps assume your NVR is under interface lan1.
    1. On USG GUI, go to Maintenance > Diagnostics > Packet Capture
    (1) Interface: select wan and lan interface
    (2) Host IP: select User Defined, and set IP address of NVR
    (3) Click Capture button to start 


    2. Go to your NVR GUI to add the IP camera on WAN

    3. Wait for 1 min. or NVR get fail. Go back to the USG packet capture page and click Stop.

    4. On Packet Capture > Files page.
    Select .cap file and click Download. It can select one file in one time to download. 


    Then you send the .cap file to Zyxel support to analysis.

Security Highlight