DNAT [XBOX 2]
Traffic selector: Any → {port 4567} → External (WAN) (Address)
Destination translation: XBOX 2
Service translation: XBOX Live
I am an advanced user/admin of astaro firewalls and I have been for years, just bought a xbox kinect and needed an update and it failed. When I looked in the logs I didnt see much so I googled it, and found this forum post. I opened the NAT ports as laid out here and still no joy. When I looked in my logs I noticed that the IPS saw some "malware" traffic....guess what thats MS live [[:)]] that said, I added an exclusion in IPS for ms live addresses and it worked like a charm...downloading updates while I type this [[:)]]
Hope it helps someone
Here is a screen cap of the settings for my exception in IPS. Note: I only enable this when I want to update my xbox, same for my NAT rules, i dont leave this stuff on because I dont trust the security of the Xbox [:)]
"I started by setting my Xbox 360 with a static IP of 192.168.1.200 and created a new Network in Definitions > Networks called Xbox 360, type Host, address 192.168.1.200.
I then created two new rules in Network Security > Packet Filter > Rules:
Source: Xbox 360
Service: Any
Destination: Any
Action: Allow
Source: Any
Service: Any
Destination: Xbox 360
Action: Allow"
I created a new network definition for my xbox 360, 2 service definitions, 2 packet filter rules, and 2 NAT translations for the xbox live ports
Service Definitions:
Name: Xbox Live 1
Type Of Definition: TCP/UDP
Destination Port: 3074
Source Port: 1:65535
Name: Xbox Live 2
Type Of Definition: UDP
Destination Port: 88
Source Port: 1:65535
Packet Filters:
Source: Xbox 360
Service: Xbox Live 1
Destination: Any
Action: Allow
Source: Xbox 360
Service: Xbox Live 2
Destination: Any
Action: Allow
NAT Translations:
Name: Xbox Live
Traffic Source: Any
Traffic Service: Xbox Live 1
Traffic Destination: External (WAN) (Address)
NAT mode: DNAT
Destination: Xbox 360
Destination Service: Xbox Live 1
Automatic Packet Filter rules checked
Name: Xbox Live 2
Traffic Source: Any
Traffic Service: Xbox Live 2
Traffic Destination: External (WAN) (Address)
NAT mode: DNAT
Destination: Xbox 360
Destination Service: Xbox Live 2
Automatic Packet Filter rules checked
[FONT=monospace]2011:04:05-21:07:56 Warden snort[6494]: id="2101" severity="warn" sys="SecureNet" sub="ips" name="Intrusion protection alert" action="drop" reason="WEB-CLIENT CAB SIP authenticode alteration attempt" group="500" srcip="184.84.220.160" dstip="10.20.30.99" proto="6" srcport="80" dstport="24335" sid="16530" class="Attempted User Privilege Gain" priority="1" generator="3" msgid="0" [/FONT]
I created a new network definition for my xbox 360, 2 service definitions, 2 packet filter rules, and 2 NAT translations for the xbox live ports
Service Definitions:
Name: Xbox Live 1
Type Of Definition: TCP/UDP
Destination Port: 3074
Source Port: 1:65535
Name: Xbox Live 2
Type Of Definition: UDP
Destination Port: 88
Source Port: 1:65535
Packet Filters:
Source: Xbox 360
Service: Xbox Live 1
Destination: Any
Action: Allow
Source: Xbox 360
Service: Xbox Live 2
Destination: Any
Action: Allow
NAT Translations:
Name: Xbox Live
Traffic Source: Any
Traffic Service: Xbox Live 1
Traffic Destination: External (WAN) (Address)
NAT mode: DNAT
Destination: Xbox 360
Destination Service: Xbox Live 1
Automatic Packet Filter rules checked
Name: Xbox Live 2
Traffic Source: Any
Traffic Service: Xbox Live 2
Traffic Destination: External (WAN) (Address)
NAT mode: DNAT
Destination: Xbox 360
Destination Service: Xbox Live 2
Automatic Packet Filter rules checked
Hope it works for you [:)]