Community Forum

Nest Thermostat and Firewall Settings

Frequent Visitor

Nest Thermostat and Firewall Settings

I would like to keep the IPV4 firewall set to maximum on my Technicolor MediaAccess TC8717C gateway.

 

Unfortunately the Nest apps do not work and Alexa can't find the Nest themostat.

 

Is there a port forwarding or port triggering setting that would allow the nest app to communicate with the nest?

 

or... how do I customize the Medium firewall setting to be almost at the Maximum level and still allow the Nest app to work?

 

New Poster

Re: Nest Thermostat and Firewall Settings

Having the same issue here. were you able to get around this? I've read every posting and tried every reasonable combination of settings along with different port forwarding options. Would really appreciate any help. Thanks
New Poster

Re: Nest Thermostat and Firewall Settings

I would like to use the Maxium Security setting for the Firwall as well.

 

Maximum Security (High)

LAN-to-WAN: Allow as per below.

HTTP and HTTPS (TCP port 80, 443)

DNS (TCP/UDP port 53)

NTP (TCP port 119, 123)

email (TCP port 25, 110, 143, 465, 587, 993, 995)

VPN (GRE, UDP 500, 4500, 62515, TCP 1723)

iTunes (TCP port 3689)

WAN-to-LAN: Block all unrelated traffic and enable IDS.

 

But it looks like I can only use the 

 

Typical Security (Medium)

LAN-to-WAN: Allow all.

WAN-to-LAN: Block as per below and enable IDS.

IDENT (port 113)

ICMP request

Peer-to-peer apps:

kazaa - (TCP/UDP port 1214)

bittorrent - (TCP port 6881-6999)

gnutella- (TCP/UDP port 6346)

vuze - (TCP port 49152-65534)

 

Or  

Minimum Security (Low) 

LAN-to-WAN: Allow all.

WAN-to-LAN: Block as per below and enable IDS

IDENT (port 113)

 

I gave up trying to get Nest to work with the Maximum Security setting and I selected the Typical/Medium setting.  

 

I wish I could use the maximum setting.

LAN-to-WAN: Allow as per below.

HTTP and HTTPS (TCP port 80, 443)
DNS (TCP/UDP port 53)
NTP (TCP port 119, 123)
email (TCP port 25, 110, 143, 465, 587, 993, 995)
VPN (GRE, UDP 500, 4500, 62515, TCP 1723)
iTunes (TCP port 3689)

WAN-to-LAN: Block all unrelated traffic and enable IDS.

 

 

LAN-to-WAN: Allow as per below.

HTTP and HTTPS (TCP port 80, 443)
DNS (TCP/UDP port 53)
NTP (TCP port 119, 123)
email (TCP port 25, 110, 143, 465, 587, 993, 995)
VPN (GRE, UDP 500, 4500, 62515, TCP 1723)
iTunes (TCP port 3689)

WAN-to-LAN: Block all unrelated traffic and enable IDS.

LAN-to-WAN: Allow as per below.

HTTP and HTTPS (TCP port 80, 443)
DNS (TCP/UDP port 53)
NTP (TCP port 119, 123)
email (TCP port 25, 110, 143, 465, 587, 993, 995)
VPN (GRE, UDP 500, 4500, 62515, TCP 1723)
iTunes (TCP port 3689)

WAN-to-LAN: Block all unrelated traffic and enable IDS.

Official Employee

Re: Nest Thermostat and Firewall Settings

LamarD2, higher firewall settings may prevent nest from connecting. You can check this out to get more info on recommended wiFi network settings for nest here: https://support.google.com/googlenest/answer/9240155?hl=en


I am an Official Comcast Employee.
Official Employees are from multiple teams within Comcast: CARE, Product, Leadership. We ask that you post publicly so people with similar questions may benefit from the conversation.
Was your question answered? Mark the post as Best Answer!