Netbird remote Linux peers cannot access local IP addresses on Xfinity Internet

Hello everyone. I’m new to the Netbird community. I think Netbird has a lot of potential and I enjoy everything I’m learning about remote access to a self hosted Netbird account.

I setup a NetBird self hosted account to access a end-of-life MyCloud NAS.

Setup:

Machine: Alienware-17-r5

16 gb ram

CPU: i7

GPU: NVIDIA Mobile 1070

Operating systems

KDE Neon, Zorin, Linux Mint XFCE

NetBird: v0.68.1

Network as apposed to network Route

7 Peers

2 Routing Peers

  • 3 Access Groups
  • All
  • Users
  • Routing Peer

3 Policies

  • All to All
  • Lan to All users
  • Users to Routing Peers

Resources

Home-Lan

MyCloud (added for testing)

I have tried the following Operating systems

Linux KDE Neon – no remote access to local IPs

Linux Mint – no remote access to local IPs

Linux Zorin – no remote access to local IPs

Android 15 – has remote access to local IPs

Windows 10 – has remote access to local Ips

I tried updating local iptables, opening ports 443 and 3478 on the Xfinity modem/router. I tried a Netbird Network Route. The only way the Linux peers can access the Local Ips is to use my android as a WiFi hotspot. I checked the log file and the Linux peer will not connect P2P. Relay only.

NetBird status -d results:

Peers detail:

desktop-cabm3md.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx

Public key: ZFxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connecting

-- detail –

Connection type: -

ICE candidate (Local/Remote): -/-

ICE candidate endpoints (Local/Remote): -/-

Relay server address:

Last connection update: 3 hours, 4 minutes ago

Last WireGuard handshake: -

Transfer status (received/sent) 0 B/0 B

Quantum resistance: false

Networks: -

Latency: 0s

douglash-alienware-17-r5.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx.

Public key: 0P/xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connecting

-- detail –

Connection type: -

ICE candidate (Local/Remote): -/-

ICE candidate endpoints (Local/Remote): -/-

Relay server address:

Last connection update: 3 hours, 4 minutes ago

Last WireGuard handshake: -

Transfer status (received/sent) 0 B/0 B

Quantum resistance: false

Networks: -

Latency: 0s

pa3qsqw.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx

Public key: rBxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connected

-- detail –

Connection type: Relayed

ICE candidate (Local/Remote): -/-

ICE candidate endpoints (Local/Remote): -/-

Relay server address: rels://streamline-us-nyc1-0.relay.netbird.io:443

Last connection update: 2 hours, 38 minutes ago

Last WireGuard handshake: 1 minute, 20 seconds ago

Transfer status (received/sent) 7.3 KiB/24.6 KiB

Quantum resistance: false

Networks: -

Latency: 0s

douglas-alienwareaurorar6.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx

Public key: YMxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connected

-- detail –

Connection type: P2P

ICE candidate (Local/Remote): host/srflx

ICE candidate endpoints (Local/Remote): 10.xxx.xxx.xxx:51820/76.xxx.xxx.xxx:51820

Relay server address: rels://streamline-us-nyc1-1.relay.netbird.io:443

Last connection update: 3 hours, 4 minutes ago

Last WireGuard handshake: 1 minute, 11 seconds ago

Transfer status (received/sent) 17.3 KiB/17.3 KiB

Quantum resistance: false

Networks: 10.xxx.xxx.xxx/24, 10.xxx.xxx.xxx/32

Latency: 34.41394ms

douglas-satellite-a505.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx

Public key: Fkxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connected

-- detail –

Connection type: P2P

ICE candidate (Local/Remote): host/srflx

ICE candidate endpoints (Local/Remote): 10.xxx.xxx.xxx:51820/76.1xxx.xxx.xxx:55750

Relay server address: rels://streamline-us-nyc1-2.relay.netbird.io:443

Last connection update: 3 hours, 4 minutes ago

Last WireGuard handshake: 1 minute, 4 seconds ago

Transfer status (received/sent) 12.1 KiB/28.9 KiB

Quantum resistance: false

Networks: -

Latency: 68.176755ms

douglas-alienware17r5.netbird.cloud:

NetBird IP: 100.xxx.xxx.xxx

Public key: UPxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx=

Status: Connecting

-- detail –

Connection type: -

ICE candidate (Local/Remote): -/-

ICE candidate endpoints (Local/Remote): -/-

Relay server address:

Last connection update: 3 hours, 4 minutes ago

Last WireGuard handshake: -

Transfer status (received/sent) 0 B/0 B

Quantum resistance: false

Networks: -

Latency: 0s

Events:

[INFO] SYSTEM (138ec2dd-7aad-4bc9-b3b4-82e09e2ababf)

Message: Network map updated

Time: 3 hours, 4 minutes ago

[INFO] SYSTEM (664bf6dc-7ebe-426e-92f2-4d41fe499527)

Message: Network map updated

Time: 2 hours, 33 minutes ago

[INFO] SYSTEM (bf9ba75f-063f-434e-b5d9-2cc13e32fcdd)

Message: Network map updated

Time: 1 hour, 59 minutes ago

OS: linux/amd64

Daemon version: 0.68.1

CLI version: 0.68.1

Profile: default

Management: Connected to https://api.netbird.io:443

Signal: Connected to https://signal.netbird.io:443

Relays:

[stun:stun.netbird.io:443] is Available

[stun:stun.netbird.io:5555] is Available

[turns:turn.netbird.io:443?transport=tcp] is Available

[rels://streamline-us-nyc1-2.relay.netbird.io:443] is Available

Nameservers:

FQDN: douglas-alienware-17-r5.netbird.cloud

NetBird IP: 100.xxx.xxx.xxx/16

Interface type: Kernel

Quantum resistance: false

Lazy connection: false

SSH Server: Disabled

Networks: -

Peers count: 3/6 Connected

Any help would be deeply appreciated.

Hi everyone. It turns out it was overlapping sub-nets. My self-hosted cloud which is a WD MyCloud os3, cannot run Netbird and therefore I had to use routing peers. The problem was both my host location and my remote location have Xfinity internet service and have the same sub-nets. I used one of my routing peers and set up strict firewall rules and host the shares on it. All is working great now.

This topic was automatically closed 7 days after the last reply. New replies are no longer allowed.