Manual port-forwarding to Time Capsule behind firewall (NVG589)

A happy new year to all. I'm writing seeking help with my computer setup in a well-connected home. In short, here is what I want to do: I want to get access to my latest-gen Time Capsule (wireless AC) from outside my house, so that I can read or write files on the 2TB HD on my time capsule, using the Back to My Mac feature in the Time Capsule (with my Apple ID). I have no interest in sharing screens or anything else, just in the data on the drive.
Now, my current setup, which otherwise works like a charm.
ATT Uverse's Motorola NVG589 is the incoming modem/gateway/firewall for my entire house (using their 'Power' service, the fastest): it is possible via various tricks and hacks to put the NVG589 into 'near-bridge mode' or to root the modem via and exploit and through it into full bridge mode (which the Motorola NVG589 is capable of, but ATT does not expose that functionality [imagine the tech calls!]). I'm resisting the temptation to do so, because I don't want to the run the risk of messing up service to our house, and a call to ATT tech support. If it ain't broke, don't fix it.
The Motorola NVG589 has its DHCP service on and doles out IP addresses to everything else in the network (thankfully it also has a hidden mDNS system, too, allowing me Bonjour functionality inside my whole house). The Time Capsule, however, has a static-IP that I've assigned, and I also have a DHCP reservation for the Time Capsule in the NVG589's DHCP table.
One crucial thing is that the Motorola NVG589 does not expose UPnP or NAT-PMP to the user, which means that I'll have to do the work manually to allow externally-originating traffic to pass through the Motorola NVG589 to the Time Capsule.
Apple's latest Time Capsule 2TB unit, in bridge mode, so that its IP address is the one given it by the Motorola NVG589 (192.168.1.x, not the usual 10.0.0.x that the TC would give out were it the router). No double-NAT, in other words. The Time Capsule is solely a wireless access point and a passive shared disk (and my target for Time Machine on my Mac).
Nothing else on my home network needs to be accessed from the outside world, no gaming, no servers, no Back to My Mac for any individual Mac computer (we have four).
So what I'm looking for is help knowing what holes to poke into the NVG589's firewall to direct to my time capsule. I've searched through many docs here on Apple's support site, and the number of potential ports I could open is dizzying. Security concerns require that I open the necessary ports, and no more.
I'd be grateful for any help.

LaPastenague,
I connected one of devices that I was trying to reach directly to the U-Verse modem and the port forwarding doesnt work anymore.  This must be somthing in the way I reconfigured the U-Verse modem to work with my new TC, becuase it used to work jsut fine.
I have a U-Verse modem model number 3801HGV.  I have a new TC with a 3TB HD but I don't know the specifcs of what generation is it.  It is new and dual band WiFi...  that is why I am trying to use it as a wireless access point behind my At&T modem/router.
As far as the details go, I will explain.  The port forwarding worked before I added the TC, so I'm sure I just dont have them working together yet.  The devices that I want to reach from my iPhone and iPad are a Foscam 8910W IP camera, and a Neptune Apex aquarium controller.  Both devices have static IPs and configured with ports 8080, and 8090 respectivly.  The IP camera is connected to the TC wirelessly and the Apex is a little different...it is connected to a Sonos (wireless music media) bridge via a ethernet patch cable.  The Sonos bridge is connected to the Sonos wireless network (assume it is a dedicated frequency) which originates at another Bridge that is physically connected to the TC with a ethernet cable.  Sounds weird, but it works as that is one of the features the the Sonos has is to offer.  I think it is similar to a wirless gaming adapter in that sense.
As far as port fowarding goes, I configured within the U-Verse router to open up the two IP ports 192.168.X.X:8080 for the Apex and 192.168.Y.Y:8090 for the Foscam in the Firewall section called "Applications, pinholes and DMZ".  I would use my cellphone when away from home by putting my public IP along with the correct port number to get access to the assocated device (ex.99.56.289.34:8080).  The phone was on a cellular signal and not tethered to the wireless network.  My public IP always stays the same so I don't have to worry about that variable.
Again, all this used to work, but now when I added the TC I cant access it externally.  Any suggestions to get this to work would be apprected.
Best Regards

Similar Messages

  • Port forwarding for Time Capsule

    Could someone be so kind as to forward instructions for portforwarding ports 80, 443,4125, and 554 on my time capsule?
    Im a novice user at best but I want to learn to set up security cameras for my small bussiness. Im useing an air link101 IP camera system.
    Any help would be great.

    Port forwarding on a Time Capsule is done in AirPort Utility's Advanced panel, Port Mapping tab.  You'll also need to use the Internet panel, DHCP tab, to reserve a fixed IP address to the camera so that the Time Capsule can forward to a definite address.

  • I want to port forward my time Capsule which I use as my router.

    For my son I'm trying to set up a Minecraft server and I want to open access via port forwarding. How do I do that? I have seen quite a few directions on the net, but one compatible with the OS X 10.8.3 version.

    See this User Tip by forum expert Tesserax to get started.
                     AirPort - Port Mapping Basics using AirPort Utility v6.x

  • How to port forward on time capsule for share center dlink?

    Hello, I have just bought a Dlink ShareCenter, and have not been able to get everything to work correctly , all of the videos are from the older version, the steps are not compatible with the new airport app, I want to open 21 and 8 , they have to be open so that I can access my files outside , can I please get help with this please ,thank you. i provided an image at the screen that I am not sure what to plug in.
    https://www.dropbox.com/s/5yl5c86xfll0rkr/Screen%20Shot%202012-06-07%20at%208.20 .59%20PM.png

    Please explain the whole network..
    Start with the modem.. what broadband do you have?
    What modem and is it a modem router or straight modem?
    Is the share centre using dhcp or static IP?
    I am not sure how sensitive the TC is to port forwarding to static IP addresses but if it works ok, then use that.. simply set the Dlink to
    10.0.1.254 as its IP.
    255.255.255.0 as its subnet.
    10.0.1.1 as both gateway and dns.
    This is assuming the TC is at its default address. if not it won't work.
    From the summary page tell me what IP the TC is at.
    In the port forwarding box you use that IP.. 10.0.1.254
    Use same port in as out.. and it makes no difference if you fill in both udp and tcp. Apply it and then apply port 80.
    If it still fails, it has to be something else.
    Are you using 5.6 utility??

  • How can I test the usb port on my Time Capsule to see if it is working?

    Ever since lightening struck nearby (which took out our internet and copy machine) the printer I had connected to the usb port on my Time Capsule in my office has has failed to print through the TC. I can plug the printer directly into my MacBookAir and can print just fine. So there is nothing wrong with the printer nor the usb cable.
    I've turned off and unplugged the printer with the usb cable connected & disconnected to the TC, no change. I've unplugged the TC, no change. I've opened the printer utility several times, and always get the "offline" error. I open the print queue, and it says the printer is not connected. I reinstalled the driver for the printer, still the same thing.
    I'm starting to wonder if the usb port on my Time Capsule got fried. Any help anyone can give in trying to see if the usb port even functions anymore would be greatly appreciated.
    My Time Capsule is model no. A1409.

    Power is not likely to be killed .. it is the data components that are more fragile.
    So you do have power which as you say is why the USB flashes.. but you don't have signal.
    The only other thing you can do is use USB powered hub.. if you have one handy.. but I would not go out and buy one.
    A damaged board is impossible (at cost less than replacement TC) to repair. And repairers do not like working on stuff damaged by lightning as components that did survive were stressed.. the transistor junctions become liable to fail at any time.. so you repair it and it just keeps coming back as not working. Sorry if you cannot use it without USB junk it and buy a replacement. A second hand Gen3 is about the best of them it seems.
    You can also buy an ethernet to USB print server.. but a new ethernet or wireless network printer is probably near to the same price.
    You can hunt ebay for second hand USB print servers.. or airport express, extreme or TC.. often you can find something suitable for just a few dollars if you shop well. Since you don't need the latest greatest to do this sort of job.. and people are disposing of things like USB print servers as soon as they buy network printers.

  • How to plug a hard drive on the USB port of a Time Capsule. TC in bridge mode

    Hello
    I would like to connect a hard drive onto the USB port of a Time Capsule. This is for saving files (different frome the Time Machine savings). I am struggling to get it working it seems that I can see the HD when under "drives or discs" (running Snow Leopard in French) from the AirPort Utility but I can't access to it.
    The TC is in bridge mode.
    Thanks for help and guidances.
    Best
    Pierre

    The question is clear enough.. I just don't understand why you are having issues.
    Can you see in the internal disk of the TC in the finder?
    What format are you using on this disk? Try and format it HFS+ if it isn't already.
    If you plug it directly into the Mac it works ok??
    The other issue is the need for a powered hub on the TC due to the low power it gives the internal port.. or lack of bios compatibility with a range of usb hub chips. Try a powered hub as that can also help.

  • Will the USB port from the Time Capsule power an external hard drive?

    I am interested in purchasing an external hard drive (Iomega 1TB Helium Portable or G-Technology 750GB G-DRIVE mobile)
    to connect to my time capsule, expanding my wireless storage, but I want to know if the Time Capsule has a powered USB port or does the drive I purchase need to have its own power source? Also, Is there any compromise to using a drive that is USB powered, vs one that requires a power source?
    Thanks!

    Even if the hard drive that you choose has its own power supply, you usually need to use a powered USB hub with the Time Capsule.
    Reason....the USB port on the Time Capsule is under powered. You should not really rely on this port to power anything except a single printer.

  • Est-il possible de connecter un téléphone VoIP sur un port LAN de Time Capsule ?

    Est-il possible de connecter un téléphone VoIP sur un port LAN de Time Capsule ? Genre Gigaset A 510 IP ou C 610 IP.

    Paolo,
    Tu as completement raison... 
    J'ai des problemes de visions qui agissent differemment de temps a autre.   
    Oui..  ce sont des partis completement independents, donc sans limitations...
    Je remet ma "patch" noir sur mon oeil..    
    Desole' pour la confusion..
    R

  • Extend ethernet ports on my Time Capsule 1TB

    Hi,
    I need more ethernet ports for my time capsule. Somebody told me that a Switch would do the job. Now I need to know if a normal switch would do the job, or if I need a GIGABIT switch..
    Thx for your help!

    Depends upon the speed of the devices you are going to connect. Just purchase the gigabyte switch and make it simple. These switches are auto adjusting anyway.

  • Time capsule behind a sprint airvana

    I would like to access my time capsule from the internet but it is behind a sprint airvana device that is working as a router. Are there any step by step instructions out there for this?
    Thanks

    There are no instructions specific to that router... the standard BTMM might work. Check that out as it gives the simplest way to connect to a Mac or TC behind a router.. where you have dynamic public IP.
    To do it manually the normal instructions like here will work.
    Main thing is to port forward 548 TCP in the sprint router. You will need to look up the router manual to figure that out.

  • Set up VNC on time capsule behind uverse?

    Please Help....
    I want to have the ability to VNC into my machine remotely. Along with a handful of other things I use, plex, back to my mac, remote access to the time capsule HDD,  ect. I had this all setup before perfectly with Time Warner using a dyndns.com account and my time capsule (worked flawlessly)
    Unfortunately I am stuck using Uverse in my new apartment with a 2wire router/modem as it's my only ISP option.
    I have a time capsule plugged into the 2wire (3801HVG) and the only way I can get VNC to work (port 5900) is to put my machine into DMZ mode and the time capsule in bride mode. I'm just afraid that this will be not very secure even with the software firewall turned on in my system prefs. With this setup my machine has the same public IP as the 2wire– essentially does not have a private ip. -"hello world here is my iMac!"
    Although with this setup I went to canyouseeme.com and after testing various random ports it could only see me on 5900. Which is exactly what I want but I'm still worried about my iMac's ip being the same as my public ip.
    I tried to port forward just the port I want to use in the settings for the 2wire (gateway.2wire.net) but it does not connect. Only if I put the machine in DMZ mode does it work.
    I've tried so many different setups and spent hours digging through the interwebs and I just cannot seem to make it happen.
    things I've tried / info you should know:
    1. disabling routing all together on the 2wire (not possible with my model I found out)
    2. tried separately putting both devices in DMZ mode (my machine, time capsule)
    3. forwarding ports on 2wire and time capsule
    4. time capsule in bridge mode, sharing a public ip, distributing a range of ip's
    5. I also have the wireless function of the 2wire router off
    6. I have tv through them as well
    7. I put in my own DNS servers from opendns.com
    8. called ATT and they attempted to open the ports for me which worked at first then I realized they put my machine in DMZ mode, then they transferred me to another company who wanted to charge me $150 for a week of support. (yuck)
    Is there anyone out there that could point me in the right direction to the best way to set this up? Or is it safe having my public ip the same as my iMacs?
    Thanks in advance.
    -Eric

    BUMP!
    Hello! Anyone out there have authoritative info on getting Back to My Mac working without opening DMZ using uverse 2wire router? Is opening DMZ  very risky even if you keep   appropriate firewalls  in place?
    I agree Uverse were wanks for this: the tech who installed my system said it would work just as it was w prior service (ie BTMM working perfectly). Now, I discover I can't remotely login, and ATT tries to farm me off to some $150 tech service for what they should have done @ the outset.

  • Time Capsule behind router

    Hey guys
    I was not able to find an answer to my question by searching the internet. So i'm asking here.
    I have the following network setting at home:
    - A Linksys router (LS) is connected to the internet
    - Currently the DHCP server
    - A Time Capsule (TC) is connected through wire to the LS
    - Receives dynamic ip through DHCP
    - Bridge mode
    - Some clients are wirelessly connected to the TC
    - Other clients are wirelessly connected to the LS
    - The LS may or may not be turned on.
    You may see the problem: If LS is turned off, all clients that try to connect to the TC can't get an ip => These Clients are not able to backup to TC
    I want the TC to be able to distribute ip addresses to it's clients all the time, so that a client can backup to TC even if the LS is turned off.
    Of course all the clients should be able to communicate with the internet if the LS is turned on.
    However it is not necessary, that a client of TC can communicate with a client of LS.
    This may sound a little bit exotic, but is there a way i can achieve this?

    I couldn't keep my hands of.
    It seems to work now.
    I have now the following setting:
    - LS works as before (192.168.1.1)
         - and has now a routing
              - Target LAN: 192.168.2.0
              - Mask: 255.255.255.0
              - Gateway: 192.168.1.2
    - TC
          - has "external" static ip 192.168.1.2 in the LS network
         - has "internal" static ip 192.168.2.1 in its own network
         - acts as DHCP server in it's own network
    I also needed to set the ISP DNS servers manually for the TC. Before setting a static ip for the TC it received the addresses automatically (from LS?).
    Is it ok to manually enter these DNS addresses into TC?
    How often do they change? If they "never" change, then i'm ok with this solution.
    The good thing is now, that everything "inside" the TC network can act autonomously.
    + Clients can backup to TC while LS is off
    + Clients can communicate in the TC network while LS is off (e.g. video streaming, file sharing, ...)
    Negative:
    - It is not possible to remotely access TC-Clients from the internet without port forwarding (double nat). This should be no problem for me, since i only want to start requests from the TC network.
    - Services based on bonjour won't work cross TC <=> LS (all broadcasting?). I'm ok with that.
    Are there any problems, that i don't see or did not mention?

  • Port Forwading Airport Time Capsule

    Hi There,
    I have got New Airport TIme capsule Today and not able to forward port .
    My Set up -
    Dlink Modem - My Modem has been setup with PPPe0E configuration.
                            It has own IP as 192.168.1.1
    ATC -              I have set up this as Static IP (192.168.1.2) in Airport Utility > Internet tab.
                           Network tab
                            DHCP Only
                           Range ... XXX....XXX
                            DHCP Reservation - Done
                           Port Settings - This is Disabled
    Now i have opened port 5900 for my macmini(192.168.1.3)  in my Dlink Modem .. for both IP (192.168.1.2 & 192.168.1.3) . But its not working and it's still closed.,
    I have tried to use DHCP and NAT option but it throws .. Double NAT err. However Port Open (5900) and i see amber color on TC.
    Please advice me in setting.
    Regards

    The D-Link "modem" appears to also be a router.....so the Time Capsule must be configured to operate in Bridge Mode to work correctly with another router "upstream" on the network.
    You only want one device handling routing functions on a network. Other routers need to be configured in Bridge Mode to avoid IP address conflicts and Double NAT errors.
    There are no port forwarding settings in Bridge Mode since all incoming and outgoing ports are already automatically open.

  • Time Capsule behind Cisco WRVS4400N

    I have tried adding a time capsule to my existing network, but after setting it up and doing the manual setup, the Time Capsule couldn't be reached by any MAC just Windows PC.
    TC is behind a Cisco WRVS4400N connecting by ethernet cable. Always when I try to connect a MAC to it I got a connection failed error. I followed some post here doing a hard reset and setting TC up as Internet (Off -Bridge Mode) and wireless OFF with no success.

    I have used Time capsule 1.5 year behind a copperjet  modem on ADSL, no problems.
    Changed provider and am connected by cable with new cisco modem including router.
    So the set up looks like:
    internet>cisco modem/router>airport time capsule>macbook pro
    The cisco modem without airport time capsule is working ok: when logged in speed is 99 Mbps as it should be (wired and wireless)
    Connecting cisco router with UTP cable to time capsule and time capsule with UTP to macbook slows down speed to 9 Mbps
    (time capsule in bridgemode)
    Specs:
    Macbook pro OSX yosemite
    Airport Time capsule 2TB 2013 (v 7.7.3)
    Cisco modem/router:EPC3928

  • Can I activate the ethernet ports (routing) of Time Capsule "joining" an existing non-Apple wireless network ?

    Hello,
    I have a DSL modem that is also a WIFI router as my main WIFI network from room A. In room B, I have a TC wirelessly joining the existing WIFI network (not creating a new one). That works fine, I have one SSID, and I can wirelessly access the TC disks and backup my Mac on my TC.
    Now, I would like to connect a wired device (with on WIFI) to the ethernet port of my TC. Unfortunately, the ethernet ports of the TC don't seem to be "activated" as they do not have internet on them.
    More precisely, I'd like to connect a GE Cordless Skype Phone Model# 31591 (http://www.gephones.com/products/skype/dect-6-0-expandable-digital-cordless-phon e-with-skypetm.html) that connects to a router via Ethernet. I'm aware that I could simply connect it to the DLS router, but that's not what I want... Is there any way to activate the ethernet ports of the TC while in "join" mode ? Or do I really have to buy a Airport Express to create my main network and then extend it ?!?

    Thanks, the reason why I asked again, is because you told me to start another thread with the specifics of the device I want to connect, so I did
    Not a big deal, and it is easy to become confused.....but to be clear about this  
    Your question.....
    is there a way I can connect my Bluray player to the TC ?
    My Answer.....
    Please start a new post for that. Tell us the make and model number of the player and whether you plan to connect using wireless or Ethernet.
    so I tried to creat the main WIFI network with a first-generation Airport Express M9470LL/A (802.11b/g, no "draft N" or "n" support) and the TC wouldn't extend it either, is it too old/not supported
    Unfortunately, the "extend" setup will only work with "n" devices.  The older Express does not have a setting to "Allow this network to be extended", so the Time Capsule cannot pick up the signal.
    I'm not sure what else to suggest other than what I already have.  I'm assuming that you do not want to buy another new Airport Express.

Maybe you are looking for

  • Brand new Intel iMac with hard drive failure?

    I have a two week old iMac. I shut it down last night. When I started it this morning I got a folder with a question mark. I had no warnings or indications of any problems prior to this. I had just loaded some Disney pictures and have no backup of th

  • Printing Word document as pdf files whilst  retaining active internal links

    Hi, I have a Word file (Word 2004 for Mac Version 11.3.5) with active links to various sections within the document. However, when I print this as a pdf file all the links become inactive. Is anyone aware of a way to prevent this? Kind regards, Damon

  • Problem in Transporting Data in test environment

    Hi, I've added some new attributes to an existing object. I load it in Developement environment, everything is working fine in that. But when I transported the object and Transfer rules in Test environment, the data in new fields is not getting loade

  • Captivate 4 -software simulation error

    I'm using Captivate 4 running on Parallels/Windows 7 (32 bit) on MacBook Pro. Software simulation won't record or stop. Any ideas? Is anyone using this configuration? Thanks, Nancy

  • Quarter folds?

    I just purchased pages to replace Publisher.  But seems like there is no template that easily allows a quarter fold document.  All the printing on one side of the page, then fold in half and half again to make a little program.  Am I missing somethin