External Access Behind CG NAT

Started by Ryushin, March 20, 2025, 12:07:05 AM

Previous topic - Next topic
I'm currently on Starlink using the 40GB Business Priority plan which gives me a IPv6 /56 block and a single public IPv4 address.  Due to them changing my plan in 28 days that will force me to go behind CG-NAT, I need to come up with a solution that will allow external access to my server. 

There were a lot of recommendations to use Tailscale which I just go into this morning.  It solves a few of my problems but not for external access to my server.

So I initially thought I could go with something like NordVPN and a static IPv4 IP.  Got that all set up in Opnsense and found out I cannot port forward traffic down the VPN to my firewall.  So that's out.

Searching for VPNs that support port forwarding I found PIA VPN and that offers port forwarding.  But you have to use special scripts to make use of it, at least on PFSense.  Is there a VPN service that offers a public IPv4 IP and will port forward all traffic to a specific host?

Ideally, since I get a IPv6 /56 block from Starlink, if there was some service that would do a IPv4 to IPv6 gateway that would be ideal, but I could not find such a service.

All my DNS is on HE.net and I use them also for Dynamic DNS.

Thoughts?  Suggestions?


Quote from: Ryushin on March 20, 2025, 12:07:05 AMIt solves a few of my problems but not for external access to my server.

Check out tailscale funnel or cloudflared