> Source: [sk178444](https://support.checkpoint.com/results/sk/sk178444)

# sk178444 - How to change the NAT type that the Check Point Security Gateway provides to game consoles

| Property | Value |
|----------|-------|
| Solution ID | sk178444 |
| Date Created | 2022-03-21 |
| Last Modified | 2025-05-14 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS) |
| OS | Gaia |

## Solution

**Background:**

Check Point does not support UPnP due to its associated security risks. This means that when a Check Point Appliance uses **Hide NAT** to connect to the internet to secure an internal network with a games console on it, the games console typically has the strictest NAT control (i.e. NAT Type 3 on Playstation; NAT Type Strict on Xbox). This can cause various connectivity issues for online gaming.

Games console manufacturers recommend that users avoid NAT Type 3 internet connectivity for this reason.

**To change the NAT type from type 3 to type 2 on a Playstation, or from Strict to Moderate on an Xbox:**

1. Give the games console a static IP address.
2. In SmartConsole, create a network object (type Host) to represent the games console.
3. In SmartConsole, create a network object (type Host) that holds the IP address of the Check Point Security Gateway's external IP address (i.e. the internet facing Public IP address).   
   **Note** - If this is a dynamically assigned IP address from an ISP, you must update this network object when the ISP changes this IP address.
4. In the NAT policy, add a rule above the implied rules. In this rule:
   1. Place the games console object created in step 2 in the original source field.
   2. Place the external IP address object in the translated source field.
5. Publish and install policy.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
