Comcast blocking ports for inbound to BI

Coloscott

Young grasshopper
Joined
Dec 13, 2018
Messages
33
Reaction score
3
Location
United States
Hello,

I have searched for the answer to this but I didn't find anyone with this issue. For the past several months Comcast keeps blocking the port I've assigned to BI for in bound on both browser UI and the phone apps which affects both Apple and Android. I started with port 81, then went to 82, then 100, then 101 and all have been blocked after a few weeks.

Can anyone give me any pointers on what I can do to circumvent this?

Blue Iris 5

Thanks

Scott
 

th182

BIT Beta Team
Joined
Sep 11, 2018
Messages
693
Reaction score
1,206
Location
Minnesota
Not sure about Comcast but with CenturyLink I had to call and talk to like 10 different people until someone understood what a "port" was when I needed 25 opened for an email server. Might be worth a call. But note that most ISPs prohibit hosting servers so it may be a violation depending on how they view it.


Sent from my iPhone using Tapatalk
 

mikeynags

Known around here
Joined
Mar 14, 2017
Messages
1,035
Reaction score
940
Location
CT
Try picking a port above 1024. I have had experience with my ISP doing the same and since most service ports are 1024 or below, running your UI3 at something like 8181 tends to look more like a client-side port than a server listening port depending on how your ISP is identifying the traffic. Give that a shot and report back.
 

looney2ns

IPCT Contributor
Joined
Sep 25, 2016
Messages
15,670
Reaction score
22,959
Location
Evansville, In. USA
Hello,

I have searched for the answer to this but I didn't find anyone with this issue. For the past several months Comcast keeps blocking the port I've assigned to BI for in bound on both browser UI and the phone apps which affects both Apple and Android. I started with port 81, then went to 82, then 100, then 101 and all have been blocked after a few weeks.

Can anyone give me any pointers on what I can do to circumvent this?

Blue Iris 5

Thanks

Scott
don't be forwarding ports. It's a huge security risk. In the blue bar at the top of the page under wiki, study how to use a VPN to secure your network.
 

mikeynags

Known around here
Joined
Mar 14, 2017
Messages
1,035
Reaction score
940
Location
CT
don't be forwarding ports. It's a huge security risk. In the blue bar at the top of the page under wiki, study how to use a VPN to secure your network.
Actually - that is very true. VPN is the most secure way to go. Forgot to mention that. What was I thinking? :)
 

th182

BIT Beta Team
Joined
Sep 11, 2018
Messages
693
Reaction score
1,206
Location
Minnesota
Actually - that is very true. VPN is the most secure way to go. Forgot to mention that. What was I thinking? :)
Still have to forward your VPN port :) but yes, don't forward BI directly. Do it through a VPN!


Sent from my iPhone using Tapatalk
 

iseeker

Getting the hang of it
Joined
Nov 16, 2018
Messages
229
Reaction score
90
Location
TEXAS
I use a vpn on my nas. I’m finding that different isp’s don’t like the port through which i access BI either. I’m point the iOS app to 192.168.1.xx/3700 and when on cell service it won’t connect but on a friends WiFi it will. Strange
 

SouthernYankee

IPCT Contributor
Joined
Feb 15, 2018
Messages
5,170
Reaction score
5,320
Location
Houston Tx
I have been using comcast for years, I have a VPN system setup on my personal Arris modem/router (passthru mode) and a Asus router for 2 years absolutely no problems.
 

SouthernYankee

IPCT Contributor
Joined
Feb 15, 2018
Messages
5,170
Reaction score
5,320
Location
Houston Tx
There are two types of VPN, do not get them confused.
The type depends on where the traffic conversation originates

1) origination: local home network, destination the internet.
This type of VPN hides your activity from the internet, it is outbound, it normally costs a monthly fee to use. Direction is from your home PC to the internet, going to your bank, google, porn sites,,,, this not what you want

2) Origination: the internet world wide web, destination: your home network
This VPN type is used to provide a secure connection into your local network, in bound to you local home network, from your office computer, your cell phone in your car, tablet at the coffee shop.. This is what you want, it does not have a monthly fee and is normally completely free. OpenVPN is this type of VPN.
 
Joined
Sep 19, 2015
Messages
958
Reaction score
1,218
Location
Naples Fl
I was told by a local apple network specialist that VPNs drastically slow down your whole network and the 350 download speed I have now would be like 15 meg download speed. he . recommended to either use an appliance firewall and limit access to that port to just my devices or if I want to use a vpn use a second router and a seperate ip
 

iseeker

Getting the hang of it
Joined
Nov 16, 2018
Messages
229
Reaction score
90
Location
TEXAS
I have real trouble with speed sometimes through my vpn server on my synology nas, with OpenVPN, but many others do not (been trying to remedy on other forums and have heard their experiences). Right now I’m getting about 40% of my provisioned speeds when on remote networks. Seems to me that some networks play nicer with openvpn than others.
I signed up for mullvad vpn for 6 months (installed on clients only) and they have a decent FAQ about getting the best speed. They mention that some isp try and limit vpn on udp protocol and suggest trying the other protocol. Trial and error to tune for me.
 

fenderman

Staff member
Joined
Mar 9, 2014
Messages
36,907
Reaction score
21,290
I have real trouble with speed sometimes through my vpn server on my synology nas, with OpenVPN, but many others do not (been trying to remedy on other forums and have heard their experiences). Right now I’m getting about 40% of my provisioned speeds when on remote networks. Seems to me that some networks play nicer with openvpn than others.
I signed up for mullvad vpn for 6 months (installed on clients only) and they have a decent FAQ about getting the best speed. They mention that some isp try and limit vpn on udp protocol and suggest trying the other protocol. Trial and error to tune for me.
mulvad is another paid vpn service that provides zero security, in fact, you are providing your info to an unknown.
 

iseeker

Getting the hang of it
Joined
Nov 16, 2018
Messages
229
Reaction score
90
Location
TEXAS
mulvad is another paid vpn service that provides zero security, in fact, you are providing your info to an unknown.
Zero security? That depends on the use case. I’m not using it for any ipcam stuff. It is useful for encrypting web traffic and some level of anonymity on the web. Doesn’t leak dns. You can pay with cryptocurrency if you want or send cash to an address. You don’t even need to provide an email address to sign up. Gets highratingson those items from all the places I’ve read
 

looney2ns

IPCT Contributor
Joined
Sep 25, 2016
Messages
15,670
Reaction score
22,959
Location
Evansville, In. USA
I was told by a local apple network specialist that VPNs drastically slow down your whole network and the 350 download speed I have now would be like 15 meg download speed. he . recommended to either use an appliance firewall and limit access to that port to just my devices or if I want to use a vpn use a second router and a seperate ip
Ummm, no. It certainly won't slow down the entire network.
My download speeds here at home don't change with VPN on or off. It's installed on my router.
 

SouthernYankee

IPCT Contributor
Joined
Feb 15, 2018
Messages
5,170
Reaction score
5,320
Location
Houston Tx
The paid outbound VPN services are collection your information. The data is encrypted from you to theVPN providers server, where it is decrypted, stored and sent out on the internet.
 

nbstl68

Getting comfortable
Joined
Dec 15, 2015
Messages
1,399
Reaction score
322
Ummm, no. It certainly won't slow down the entire network.
My download speeds here at home don't change with VPN on or off. It's installed on my router.
Is there an advantage to installing a VPN on your router (assuming your router allows it, My CenturyLink router cannot support one) vs. running VPN on your computer?
 
Top