Hello,

I am using qbittorrent for torrenting and my ISP has refused to open up firewall because of fucking “security” reasons. however I can still seed the torrent how is that possible? I mean all the incoming connections should be blocked right? isn’t it how firewall works?

  • Grippler@feddit.dk
    link
    fedilink
    English
    arrow-up
    35
    arrow-down
    3
    ·
    edit-2
    5 months ago

    Stop using your ISPs router and they’re not going to have much control over it.

    • whoareuOP
      link
      fedilink
      English
      arrow-up
      22
      arrow-down
      1
      ·
      5 months ago

      no they have firewall enabled on their side so even if I use my own router it won’t do much.

            • Baggins [he/him]
              link
              fedilink
              English
              arrow-up
              18
              ·
              5 months ago

              Does OP really know exactly what technology at his ISP is preventing him from “opening ports”?

              • Grippler@feddit.dk
                link
                fedilink
                English
                arrow-up
                7
                arrow-down
                1
                ·
                5 months ago

                Maybe not, but you and I definitely dont, so let’s stick to what they’re actually saying instead of guessing.

                • Baggins [he/him]
                  link
                  fedilink
                  English
                  arrow-up
                  4
                  arrow-down
                  1
                  ·
                  5 months ago

                  You commented that it’s “super weird and invasive” for an ISP to “firewall” listening ports. It just so happens that CGNAT also has the same effect and is super commonly used right now.

                  I think I’m good 👍

              • whoareuOP
                link
                fedilink
                English
                arrow-up
                5
                ·
                5 months ago

                Yes I know what’s preventing me from opening ports. I also called my ISP they said we can’t open the firewall so the incoming connections will be blocked.

          • whoareuOP
            link
            fedilink
            English
            arrow-up
            8
            ·
            5 months ago

            It’s definitely not CGNAT. I have tested it using traceroute.

        • bier@lemmy.blahaj.zone
          link
          fedilink
          English
          arrow-up
          8
          ·
          5 months ago

          Ipv4 shortage lead to a lot of IPS adopting CG-NATs where they are sharing one exit IPv4 for multiple end users and that’s why opening a port on the end user side won’t do a thing as your just opening a port in the ISP Network and not to the Internet

        • lemmyingly@lemm.ee
          link
          fedilink
          English
          arrow-up
          2
          ·
          5 months ago

          Who says the ISP isn’t blocking ports via a firewall?

          I thought it was common practice for ISPs to block certain ports for residential connections?

          • cmnybo@discuss.tchncs.de
            link
            fedilink
            English
            arrow-up
            4
            ·
            5 months ago

            They will usually block port 25 so you can’t run a mail server. It’s unusual for an ISP to block everything unless you are on CGNAT.

  • Brickfrog@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    27
    ·
    edit-2
    5 months ago

    however I can still seed the torrent how is that possible?

    Yes you can still seed as well as download. But you are limited and can only upload and download torrent data in swarms that contain peers that are themselves fully connectable (port forwarded).

    So say you join a torrent swarm that only contains peers just like you (firewalled, no ports forwarded) then no one will transfer any torrent data with each other. Everyone is stuck waiting for a fully connectable (port forwarded) peer to join that swarm.

  • axzxc1236@lemm.ee
    link
    fedilink
    English
    arrow-up
    16
    ·
    5 months ago

    If the firewall just means no incoming connections, your computer can still reach out to the other side (if they open their port)

    • infinull@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      2
      ·
      5 months ago

      Right, only one side of the connection needs an open port (and most clients will let that be either seed or leech side)… this is why having an open port on your end is useful if you’re downloading, since you can download from seeders that don’t have an open port.