OPNsense Forum

English Forums => General Discussion => Topic started by: cynicalApples7 on April 18, 2023, 04:12:23 PM

Title: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: cynicalApples7 on April 18, 2023, 04:12:23 PM
I would really appreciate if there was a Setup guide in the documentation on how to correctly setup NAT, port forwarding or UPnP for gaming consoles like Xbox or PlayStation, etc. I've been struggling with this for a long time, and I can't get my Xbox NAT type to be open, it is also Moderate.

I know it is on me. But still I don't think I am the only struggling with this.

Thanks.
Title: Re: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: RamSense on April 18, 2023, 06:34:36 PM
have you tried this:
Short Version:

    Give your XB1 (or PS4, same process required) a static IP
    Install/Enable UPNP
    Set "User Specified Permissions" to "allow 88-65535 10.1.1.x/32 88-65535", where 10.1.1.x is the static ip of the XB1/PS4
    Firewall>NAT>Outbound - Set to Hybrid/Manual rule generation
    Create a rule with the following set: "Source Address - Single Host or network - 10.1.1.x" & "Static Port - Checked"
    Do a hard-reboot of your XB1/PS4 (shutting it down and pulling the power for 2 mins will do"


You should now have a NAT Type of Moderate (XB1), or Type 2 (PS4).

found here: https://forum.opnsense.org/index.php?topic=8812.0 (https://forum.opnsense.org/index.php?topic=8812.0)
Title: Re: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: cynicalApples7 on April 18, 2023, 07:24:26 PM
Yes I had something like that setup, and it resulted in "Moderate NAT".
I tried this guide https://niallbest.com/achieve-full-open-nat-with-port-forwarding-for-xbox-live-via-opnsense that I had bookmarked months ago again, and it seems to have worked after a few restarts and toggling QoS DSCP tagging on and off on the console. I now have NAT type: Open.

I did add additional ports in "Xbox Live TCP/UDP port Alias" to include:
Port 88 (UDP)
Port 3074 (UDP and TCP)
Port 53 (UDP and TCP)
Port 80 (TCP)
Port 500 (UDP)
Port 3544 (UDP)
Port 4500 (UDP)

https://support.xbox.com/en-US/help/hardware-network/connect-network/network-ports-used-xbox-live
Title: Re: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: BondiBlueBalls on April 18, 2023, 09:41:47 PM
I have NAT Type Open on my Xbox Series X and NAT Type 2 on my PS5 using OPNsense. Per this guide, these are the ideal NAT types for consoles behind a firewall.

https://portforward.com/nat-types/

I'll try to provide the settings I'm using. Hopefully it helps!

With these settings, everything works perfectly. Hope it helps!
Title: Re: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: EchoMikeMike on February 19, 2026, 07:30:56 AM
For anyone else following all these steps and still getting Type3 - set your PS to bypass Unbound DNS on Opnsense that is turned on by default. I set my PS5 to 1.1.1.1 and no restart immediately popped up with Type2 following these guys suggestions.
Title: Re: [Request] NAT Setup guide for console (Xbox/PlayStation)
Post by: nero355 on February 19, 2026, 01:50:08 PM
Quote from: EchoMikeMike on February 19, 2026, 07:30:56 AMI set my PS5 to 1.1.1.1 and no restart immediately popped up with Type2 following these guys suggestions.
That makes no sense...

The only thing I can think of is some kind of "Online Connectivity Check Domain" being blocked via Unbound and not via 1.1.1.1 so the PS5 can do the checks it needs to do and shows Type 2 NAT ?!