Sometime in October port forwarding was disabled in my internet box with no warning. And I seem to no longer have a public ipv4 IP which is the basic cause. Can anybody explain and how to resolve the issue without being charged by Myservice for fixing something Swisscom changed? Something to do with ipv6/ipv4 implementation by Swisscom?
Ok. So a bit further along. I need to have port 1194 open to access my openvpn server on the ipv6 address. How does one do this for ipv6? I have tried the 3 settings in the internet box setup, (and set 1194 good for both ways in the custom one rules) and always with nmap I see:
Not shown: 996 closed ports
PORT STATE SERVICE
53/tcp open domain
80/tcp open http
8888/tcp open sun-answerbook
49152/tcp open unknown
Port 1194 never appears as open no matter what I tell the box.
Why?
I can run the openvpn internally ok over pcs and tablet with the fulll ipv6 address, but suspect that is not going thru the internet.
I am also suspicious that even port 80 is open when accessed from the web.
Ok. So a bit further along. I need to have port 1194 open to access my openvpn server on the ipv6 address. How does one do this for ipv6? I have tried the 3 settings in the internet box setup, (and set 1194 good for both ways in the custom one rules) and always with nmap I see:
Not shown: 996 closed ports
PORT STATE SERVICE
53/tcp open domain
80/tcp open http
8888/tcp open sun-answerbook
49152/tcp open unknown
Port 1194 never appears as open no matter what I tell the box.
Why?
I can run the openvpn internally ok over pcs and tablet with the fulll ipv6 address, but suspect that is not going thru the internet.
I am also suspicious that even port 80 is open when accessed from the web.
thanks for that CGNAT clue. I would be about 99% sure that is the problem. My ip4 is 100.87... which is in the range allocated to CGNAT. So, do you have expeience as to how to opt-out of CGNAT? Some other forums indicate that it is not all that obvious to do it. I need to access computers in my LAN for VPN file transfers and home security access when remote.
Ask the hotline if you can move away from CGNAT.