I know that this topic has been discussed before, but I cannot seem to find an exact scenario match since I am dealing with a dynamic public IP address. Interfaces ethernet1/1 Primary internal network Default virtual router 172.16.50.1/24 Zone: Internal ethernet1/2 Public internet connection with dynamic IP address Default virtual router Zone: External ethernet1/3 Secondary internal network dedicated to Xbox Default virtual router 172.16.51.1/24 Zone: Xbox DHCP reservation in place for the Xbox at 172.16.51.2 Security Policies Rule to allow traffic from Internal and Xbox zones to External zone. Includes URL filtering, etc. Rule to deny all other traffic. NAT Policies Single NAT policy defined as follows: Original Packet Source Zone: Internal, Xbox Destination Zone: External Destination Interface: ethernet1/2 Service: any Source Address: any Destination Address: any Translation Packet Translation Type: Dynamic IP and Port Address Type: Interface Address Interface: ethernet1/2 Internal and Xbox zones are able to browse the Internet without any issues; however, the Xbox reports the NAT type as Strict which causes Xbox Live to not function properly. Given the fact that I have only a single public IP address for all traffic (which is also dynamic and not static), how do I go about allowing the necessary ports through to the Xbox? Ports in question: Xbox Network Ports | Xbox 360 Network Ports | Xbox Live Network Ports Thank you in advance! Steven
... View more