Blue Iris App on LTE (major lag)

Dasstrum

IPCT Contributor
Joined
Nov 4, 2016
Messages
578
Reaction score
736
Location
Florida
Does not support a true bridge or passthrough mode. Dmz of your asus ip is the closest it offers. I ran into this recently at a customer site and found running the at&t as a normal router and port forwarding blue iris port to the asus address behind it, and port forwarding in the asus to the blue iris pc was the most reliable and fast access when a vpn is not an option. Your pace at&t router is causing your issues in current configuration. It will be double nat the way I described, but it does work.
Hmm... good suggestion. I will give this a try and report back. Funny thing is its been like this for 2 years now. I havent touched any setting (except when I was doing my stunnel video and added in another port in the Asus to forward)... just out of the blue it (BI app) started lagging like crazy
 

lifeatredline

Getting the hang of it
Joined
Jul 4, 2016
Messages
102
Reaction score
73
Location
USA
Hmm... good suggestion. I will give this a try and report back. Funny thing is its been like this for 2 years now. I havent touched any setting (except when I was doing my stunnel video and added in another port in the Asus to forward)... just out of the blue it (BI app) started lagging like crazy
Same reason I switched to double nat for the customer, seems like at&t changed something in their router or the way they were handling traffic. I checked every setting before resorting to double nat which fixed the issue instantly and caused no ill effects for anything else on the network that I was concerned for.
 

lifeatredline

Getting the hang of it
Joined
Jul 4, 2016
Messages
102
Reaction score
73
Location
USA
On a side note, since you are using port forwarding if you haven't already you should enable the firewall in blue iris server by adding approved ranges or specific ip's. They will still use login credentials but everything that is not those ranges will not be allowed to attempt login. With a blank box blue iris will allow anyone with any ip to attempt logging in and the russians and who knows who else will sit there trying all day if you don't. I added verizon subnet, my local subnet, and my wan ip to mine. Some have said it even made their connection faster by doing it this way.
 

bp2008

Staff member
Joined
Mar 10, 2014
Messages
12,666
Reaction score
14,005
Location
USA
I just use a high numbered port, and get very few random connections, with no IP blacklisting/whitelisting. However, using a common port that is open to anybody is definitely going to get a lot of unwanted attention.

Some have said it even made their connection faster by doing it this way.
Lol. Classic placebo effect.
 

Dasstrum

IPCT Contributor
Joined
Nov 4, 2016
Messages
578
Reaction score
736
Location
Florida
Should I put the Asus router in access point mode or leave it in router mode?
 

TonyR

IPCT Contributor
Joined
Jul 15, 2014
Messages
16,436
Reaction score
38,154
Location
Alabama
Does not support a true bridge or passthrough mode. Dmz of your asus ip is the closest it offers. I ran into this recently at a customer site and found running the at&t as a normal router and port forwarding blue iris port to the asus address behind it, and port forwarding in the asus to the blue iris pc was the most reliable and fast access when a vpn is not an option. Your pace at&t router is causing your issues in current configuration. It will be double nat the way I described, but it does work.
That is EXACTLY how I got a AT&T uVerse Pace 5268ac to work with a BI server 3 years ago....been working with no hiccups since. Created a "pinhole" in 5268ac to allow TP-LINK router with DHCP enabled do the port forwarding to BI server. TP-LINK on different subnet (it's on 192.168.2.x, Pace on 192.168.1.254) and it's WAN runs to Pace LAN so as mentioned above it's a double NAT but at 20Mbps up/down on the uVerse you can't tell it.....and it works. It was a "Hail Mary" as I was NEVER able to put the Pace in bridge mode, even following AT&T's own support documents.
 

Dasstrum

IPCT Contributor
Joined
Nov 4, 2016
Messages
578
Reaction score
736
Location
Florida
Problem is FIXED! I disabled "NAT Acceleration" and it instantly was better. This setting must have been enabled with some firmware update.

Screenshot_20190412-224912_Chrome.jpg
 
Last edited:

Dasstrum

IPCT Contributor
Joined
Nov 4, 2016
Messages
578
Reaction score
736
Location
Florida
How I stumbled on this setting is I was going through my QoS settings and Parental control (it was off but was just clicking around) and noticed that both QoS and Parental control require NAT Acceleration to be turned off for either of these features to work. I thought... hmm well if QoS need NAT-A turned off then MAYBE,... just maybe it is causing some conflict. Turned it off and BAM... instant fix.

I hope this helps someone in the future fix their problems.
 

Dasstrum

IPCT Contributor
Joined
Nov 4, 2016
Messages
578
Reaction score
736
Location
Florida
Also, from an article:

Potential NAT Acceleration Issues and Conflicts
NAT Acceleration, specifically the CTF Cut Through Forwarding portion can conflict with a few other common features. You should consider disable NAT acceleration or turn it to off if you experience any of the problems below.

Port Forwarding Not Compatible

NAT Acceleration is reported to not be compatible with port forwarding feature. This means that when you have the NAT Acceleration, you will typically unable to host gaming sessions from your home. So you will not be able to host any game servers such as Minecraft, MMO, or First person shooters since players will not be able to connect to it.

Issues with Mirroring of Streaming Devices

In some cases, CTF can cause choppiness in the mirroring of stream devices such as Apple TV, Chromecast, and VoIP. This is because the data transmitted may be corrupted and routers “resend” those data. However, your end point devices show those corrupted data since they are designed to be latency sensitive.


NAT Acceleration On or Off | Router Guide
 
Top