Speedtouch 585v6 Firewall

Started by david666, Mar 12, 2008, 16:21:13

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

david666

Just got this modem today,set it up no problem,played Call of Duty 4 online,went to have a look at 585 logs 
and it has a full page of this!

03:59:57 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:55:55 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:54:54 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:52:52 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:49:50 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:45:47 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit


Error    03:41:44 (since last boot)   FIREWALL icmp check (1 of 1): Protocol: ICMP Src ip: 212.69.63.243 Dst ip: xxxxxxxx Type: Time Exceeded Code: Time to Live exceeded in Transit

(i.p edited out)

Is there anything to worry about (router is at defualt wired settings,no firmware upgrade)
Firewall is on "Standard" setting

i'am a noob-be gentle :blush:

Steve

#1
Hi did it work ok?If so fine, if not my suggestion.

Have you setup port forwarding. If not look at http://portforward.com/guides.htmit tells you how set this up quite easily, look under thomson-alcatel for your modem. i dont use a static ip address I use the DHCP to give me the same address for each device every time they connect, Dont know whether the rules are the same for windows versions and xbox versions. There are rules already configured for the xbox in the 585, you just need to assign them to its address( so hence static ip or same one required when you connect)

regards
Steve
------------
This post reflects my own views, opinions and experience, not those of IDNet.

Rik

Rik
--------------------

This post reflects my own views, opinions and experience, not those of IDNet.

david666

Iam not using my xbox,iam playing online through my pc (i am not hosting either) Is there a setup guide anywhere that i can read (ive read the official pdf.no help),ive looked but cannot find any.

Steve

#4
Two ways to set port forward up for cod4

First http://www.portforward.com/english/routers/port_forwarding/Thomson-Alcatel/SpeedTouch585/Call_of_Duty_4.htm


You must assign a static ip address, as you always portforward to that address. i.e your computer must always connect to the router with the same address. You can do this manually from within your network adaptor setting in windows, it must however be outside of the range of DHCP. Therefore as I have done, is to ensure that DHCP always gives me the same address. This you can do simply within the 585 go Home>Home Network> devices> your computer>configure.tick always use the same address.You should also notice immediately below this: connection,sharing game or service. In this there is COD, whether they are the same ports as suggested by portward.com I havent checked. You select the relevant entry and it is assigned to your selected device.This allows these ports from your machine to be accessible.

PS the cod ports used in the 585 game definition are the same as suggested by portforward.com and I have UPNP on :)
Steve
------------
This post reflects my own views, opinions and experience, not those of IDNet.

Mytheroo

port forwarding normally only applies to TCP and UDP, but the log shows ICMP. PINGs are all I know of that use ICMP so I'm not sure a port forward would change any of this. Also, as you send out info first to join a server, the incoming stuff from that address should be routed back the the originating PC automatically (this is just something a router does normally).

Is the IP address listed the IP address of the server you were playing on?
There are 10 kinds of people, those who understand binary and those who don't.

david666

The i.p listed is not the server i.p.I do know thats it not port forwarding as you only need that when you "host" a server so your friends can join,iam not doing this.

Mytheroo

IP 212.69.63.243 seems to be an IDnet server of some kind. Time to live exceeded normally would mean it took more than 64 hops, but I guess you can set TTL when you send a ping to something lower
There are 10 kinds of people, those who understand binary and those who don't.

david666

I did the  "DHCP always gives me the same address i.p" and that seems to have stopped the firewall logs,tried it with cod4 and quake wars.Thx for the help

Rik

I just checked the IP, it's one of IDNet's routers. They are set to give low priority to pings, so I think that's why you are seeing timeouts. I doubt there's anything to worry about.
Rik
--------------------

This post reflects my own views, opinions and experience, not those of IDNet.

david666

"low priority to pings" noo i need high priority to pings! maybe cos iam on the free trial ;D

Rik

It's only the routers which give low priority, David, not the network. Oh, and it isn't because you need to put £1 in the meter either.  ;D
Rik
--------------------

This post reflects my own views, opinions and experience, not those of IDNet.

david666


Mytheroo

when gaming we talk about 'low pings' but infact the info exchanged isn't an actual PING (ICMP echo request or something like that). The PING we can send to the server gives an indication of the latency, but you could for instance block PINGS but be able to run a server (i think)

This fence is quite comfy  ::)
There are 10 kinds of people, those who understand binary and those who don't.

Rik

Rik
--------------------

This post reflects my own views, opinions and experience, not those of IDNet.

Lance

Indeed, it's no different to how a lot of personal routers are set up. Mine is set to ignore all ping requests from the internet side, but it certainly doesn't stop me communicating accross the www!
Lance
_____

This post reflects my own views, opinions and experience, not those of IDNet.

Rik

Likewise. There are arguments whether it increases security, but to my mind, if my IP address appears to be 'unoccupied' it's got to help. :)
Rik
--------------------

This post reflects my own views, opinions and experience, not those of IDNet.

Lance

Thats my logic as well, Rik!
Lance
_____

This post reflects my own views, opinions and experience, not those of IDNet.