Thankyou. How about first question re what i've done to get Warhawk working - all ports open to the PS3?
Main Topics
Browse All TopicsHi all,
I finally bought myself a PS3 today! The problem is that it requires quite a few ports to be opened. I got through the standard ones as per the online docs, but when a began playing an online game (Warhawk) it needed more. I watch the logs on my Astaro device and was amazed at what it needed - first to connect, then to download the usgae policy, then the server list, then to join a game ... I gave up and just made an ANY to PS3 packet filter rule on all ports.
Q1. Is this bad practice?
Q2. Other forum posts suggest putting the PS3 in a DMZ. As these a basic consumer posts, they suggest the DMZ with the modem/router features - the Lynksys AM300 for example. Can I create a DMZ with my Astaro security gateway. My setup is static IP to brigded modem to ASG to router.
Thanks heaps,
Warren
This Question has been solved and asker verified All Experts Exchange premium technology solutions are available to subscription members.
Experts Exchange has been collecting answers to technology questions since 1996…3 million and counting! If you have a question, chances are we already have your answer.
If you can't find the exact answer you're looking for, ask our exclusive community of 50,000 experts. You’ll get a personalized answer from a trusted professional.
Thousands of free tech tips, tricks, how-to’s and tutorials are available in our peer reviewed articles section. See for yourself how smart our experts are, no login required.
Access the answers to your technology questions today.
30-day free trial. Register in 60 seconds.
Members of the expert community talk about why the experience at Experts Exchange is different than what you will find anywhere else.

Try it out and discover for yourself.
30-day free trial. Register in 60 seconds.
Join the community of experts here and help other tech pros by answering question in your area of expertise. You can earn FREE access to all Experts Exchange's premium features and resources.
Hmmmm... Now you've got me interested...
This is what I did:
I had those ports you mentioned NATed with automatic packet filter rules in an effort to log on the the PS Network. That didn't work. I then got rid of the NATs and just made Packet Filter rules and that got me onto the PS Network where I downloaded Warhawk.
When I went to play Warhawk, it would not connect so I looked at my logs then I made a rule for (from memory) 10071 then 10070 then 10070:10080, then 10069 and then more and more so I just opened all.
I'm curious as to why you think the ports you mentioned will run the lot.
Couple of questions:
First, as I understand your setup, you have: Modem -> Astaro -> Router
Are you actually connected from the Astaro to another router, or is it a switch? If it is indeed a router, are you connected from the Astaro to the WAN port on the router, and what is the model of your router.
If you are running from Astaro to another Router, you likely have 2 layers of firewall between the internet and your internal LAN, and this can complicate things.
I assume you are using Astaro version 7, let me know if otherwise.
Hi Warren, I went back and reviewed the setup in our previous discussion. So it looks like you are set up with a separate subnet between the Astaro and your router.
Normally your outgoing ports should trigger automatically, but I think that the way the addresses are mapped and NAT'd with that middle subnet might be causing your problem. I'm thinking that the port numbers might get changed due to the fact that both the Astaro and your Firewall are performing NAT.
Try setting up a Source NAT rule. It should look something like:
Traffic Source: Router WAN IP (the IP address of your router in the "Middle" subnet between the Astaro and Router)
Service: Any
Traffic Destination: Any
Type: Source (SNAT)
Source: Astaro External IP (should be your Internet IP address).
Serivce: *Leave Blank
Business Accounts
Answer for Membership
by: MASQUERAIDPosted on 2009-10-25 at 05:19:44ID: 25656396
As you've already discovered I think there is a competiton between software houses to see who can use the most ports on a PS3!
However you should be able to run on:
TCP: 80, 443
UDP: 3478,3479,3658
TCP/UDP: 5223
For pretty much everything if you are using fixed IP's in your LAN.
Try with that behind the ASG PC but if you are still having problems and your router supports a separate DMZ then you could place it straight off the router.