View your security cameras remotely, even behind CGNAT

GetAStatic gives your NVR (network video recorder) or camera PC a static public IPv4 over WireGuard. Skip the camera maker's cloud and keep the cameras off the internet.

Instant setup US-based IP

Updated

The problem

Why remote viewing breaks

Most cameras and NVRs offer two ways to watch from outside: the maker's P2P cloud, or a port forward on your router. On Starlink, 5G home internet and other CGNAT connections, the port forward never works: the ISP drops incoming connections.

That leaves the P2P cloud. It can be slow, drop live view, and send your video through servers you do not control. Blue Iris and Frigate have no relay of their own, so behind CGNAT they cannot be reached at all without extra tools.

Pricing

Choose your plan

Plus for light use, Pro for most people, Ultra for full gigabit.

Plus
$2/mo

 

  • 1 dedicated IP address
  • 10 devices
  • 5 open ports
  • 100 GBbandwidth
  • 20 Mbpsspeed
Ultra
$10/mo

 

  • 2 dedicated IP addresses
  • Unlimited devices
  • Unlimited open ports
  • 5 TBbandwidth
  • 1 Gbpsspeed
  • Inbound + outbound access
  • Instant activation
  • 7-day money-back guarantee
  • Cancel anytime
Add-ons, per IP addressCustom hostname $5·Addtl. IP $2/mo (Ultra $7/mo)·Gigabit Speed (Plus & Pro) $5/mo·SMTP $25
Why use GetAStatic?

Why camera owners pick GetAStatic

  • Live view from your own address, not a vendor relay
  • Works on Starlink, 5G home internet and other CGNAT connections
  • Every port starts closed, so you decide exactly what is reachable
  • Run your own WireGuard server on the IP and keep camera pages private
How it works

Reach your recorder at your own IP

GetAStatic gives you a dedicated static IPv4. WireGuard runs on the machine that records (the Windows PC with Blue Iris, the Frigate host) or on your router for NVR boxes. It dials out to our node in Kansas City, Missouri or San Jose, California, and connections to your IP on the ports you open come back down the tunnel.

The safest setup opens one port: 51820 UDP, for your own WireGuard server. Your phone connects to that server first, and then the NVR app or web page works as if you were at home. Camera and NVR web pages have a long history of security holes, so keep them off the internet.

If you must open a web page directly, open only the recorder's, behind HTTPS with a strong password, never a camera's.

Setup

Set up remote viewing

  1. Sign up for GetAStatic and note your static IP.
  2. In the dashboard, open 51820 UDP. Open other ports from the table only if you need them.
  3. Import the WireGuard config on the recorder or router and turn it on. On a router, forward each open port to the recorder.
  4. Set up your own WireGuard server on port 51820, on the router or a Linux host such as the Frigate machine, and add your phone to it.
  5. Away from home, turn that tunnel on and open the NVR app, Blue Iris app or Frigate page with the recorder's local address.
PortProtocolUsed for
51820UDPYour own WireGuard server (recommended)
443TCPNVR or Blue Iris web UI, behind HTTPS
554TCPRTSP, only if a recorder elsewhere must pull the streams
8971TCPFrigate web UI with login

Video adds up. A low-resolution stream is about 1–2 Mbps and a main stream about 4–8 Mbps. One hour of a 2 Mbps low-resolution stream uses about 0.9 GB, so leaving live view open all day would use Plus's 100 GB in under a week. Plus suits quick checks through your own WireGuard server; pick Pro (1 TB, 100 Mbps) for several cameras or regular live viewing.

Good to know

Limits and safety

  • Security is your job: change default passwords and keep firmware updated.
  • Never open Frigate's port 5000: it has no login. Use 8971, which asks for one.
  • Speed is capped per IP (20 Mbps on Plus, 100 Mbps on Pro), the same in both directions. Going over the monthly bandwidth pauses the tunnel until it resets or you upgrade.
  • The device running WireGuard sends all its traffic through the IP, including any camera cloud uploads it makes.
  • Video travels through Kansas City, Missouri or San Jose, California. If you are far from the IP's city, live view lags more and takes longer to start.
  • This is not cloud recording. If power or internet at home fails, so does remote viewing.
  • It is a datacenter IP, not a home IP.
FAQ

Questions, answered.

01Is this safer than the camera maker's P2P cloud?

It removes the vendor's relay. How safe it is depends on what you open. With only your own WireGuard server open, nothing else on your network can be reached from the internet.

02Do I need to open RTSP (port 554)?

Usually not. Viewers use the NVR app or web page. Open 554 only if a recorder elsewhere must pull the streams.

03Will the Reolink or Hikvision app work?

It should. Through your own WireGuard server, add the NVR by its local IP, as at home. To connect without it, add the NVR by your static IP and the ports you opened; the ports each model needs differ, so check your vendor's guide.

04Which plan do I need?

Plus ($2/mo) is enough if you only open your own WireGuard server and check in now and then. For several cameras or long live viewing, Pro ($4/mo) gives you 1 TB a month and 100 Mbps.

Have more questions? See the full FAQ →