Xfinity XB7 & XB8 Bridge Mode Setup Guide (10.0.0.1)
To enable Bridge Mode on an Xfinity XB7 (CGM4331COM / TG4482A) or XB8 (CGM4981COM) gateway, unplug any Xfinity xFi Pods, browse to http://10.0.0.1, sign in with username admin and your gateway password, click Gateway > At a Glance > Bridge Mode > Enable, and plug your router's WAN into Port 4 (the red-striped 2.5GbE port). After a 90-second reboot, it runs as a pure DOCSIS 3.1 modem.
- Unplug xFi Pods first: Bridge Mode is greyed out or automatically reverts to
Disableif any Xfinity WiFi Boost Pods are paired to your account. - Use Port 4 (Red Stripe): Always connect your third-party router's WAN port to Port 4 on the XB7 or XB8, which is the dedicated 2.5GBASE-T (2.5 Gbps) Ethernet port.
- Admin password change on newer firmware: If
admin/passwordfails athttp://10.0.0.1, check the bottom sticker QR label or enable Admin Tool access inside the Xfinity mobile app. - 10.0.0.1 stays reachable: Even in Bridge Mode, you can still inspect DOCSIS 3.1 downstream/upstream OFDM signal levels by browsing to
http://10.0.0.1from behind your own router.
1. Pre-Checks: Removing xFi Pods and Enabling Admin Tool Access
When Comcast Xfinity provisions an xFi Advanced Gateway—either the Wi-Fi 6 XB7 (Technicolor CGM4331COM / ARRIS TG4482A) or the Wi-Fi 6E XB8 (CommScope CGM4981COM)—it defaults to router mode on the 10.0.0.1/24 subnet. Connecting your own mesh system or router without enabling Bridge Mode creates a Double NAT bottleneck and leaves overlapping WiFi radios active.
Before logging into the gateway, verify two prerequisites that commonly block Bridge Mode:
- Remove Xfinity xFi Pods: If you ever paired Xfinity WiFi Boost Pods (Plume extenders) to your account, unplug them from the wall and remove them under WiFi → View WiFi equipment in the Xfinity app. Cloud orchestration automatically overrides and disables Bridge Mode if a Pod remains registered.
- Unlock the Local Admin Tool: On 2025–2026 XB7/XB8 firmware, Comcast disables local web GUI logins by default until toggled on. Open the Xfinity smartphone app, go to WiFi → View WiFi equipment → Advanced settings → Admin Tool online access, and toggle it On.
2. Enabling Bridge Mode at http://10.0.0.1
Connect a computer directly to the XB7 or XB8 via Ethernet (or join the gateway's WiFi network) and open a browser to http://10.0.0.1. Log in with username admin. For the password, enter password (on older firmware or factory-reset units), the custom admin password you previously set, or the default password printed on the bottom sticker of newer XB8 units.
- On the initial landing page (Gateway → At a Glance), locate the Bridge Mode row near the top of the screen.
- Click the Enable button next to Bridge Mode.
- A warning modal will appear stating: "WARNING: Enabling Bridge Mode will disable Router functionality of gateway and turn off the existing private Wi-Fi network." Click OK.
- Wait 90 to 120 seconds while the XB7/XB8 reconfigures its internal eRouter bridge, shuts down its 2.4 GHz, 5 GHz, and 6 GHz private WiFi radios, and disables its built-in MoCA 2.0 controller.
3. Wiring Port 4 (2.5GbE) to Your Third-Party Router WAN
Once Bridge Mode is active, only one single Ethernet port on the back of the XB7 or XB8 can receive a public IPv4/IPv6 lease from Comcast's CMTS. You must disconnect all other Ethernet devices (PCs, TVs, switches) from the remaining three gateway ports and move them behind your own router.
Inspect the four RJ45 ports on the rear of the XB7 or XB8:
- Ports 1, 2, and 3: Standard 1000BASE-T (1 Gbps) ports, which cap throughput at ~940 Mbps even if you subscribe to Xfinity's 1.2 Gbps or 2.0 Gbps Gigabit Extra / x2 plans.
- Port 4 (marked with a Red/Orange Stripe): Dedicated 2.5GBASE-T (2.5 Gbps) multi-gig port.
Run a Cat6 patch cable from Port 4 on the XB7/XB8 to the 2.5G WAN (or primary WAN) port on your router. Power-cycle the XB7/XB8 for 30 seconds, wait for the top status LED to turn solid white, and then power on your router so it acquires your public Comcast IPv4 address (typically 73.x.x.x, 68.x.x.x, or 24.x.x.x) and a DHCPv6 /60 prefix delegation.
4. Accessing 10.0.0.1 Diagnostics and Managing Xfinity Hotspots
Even after your router receives a public WAN IP, the XB7/XB8 continues listening on http://10.0.0.1 on its cable modem diagnostic interface. As long as your personal router's LAN subnet is not 10.0.0.0/24 (for example, your router uses 192.168.1.0/24 or 192.168.50.0/24), you can open http://10.0.0.1 from any PC on your LAN to inspect Gateway → Connection → Xfinity Network for DOCSIS 3.1 downstream SNR, power levels (-7 dBmV to +7 dBmV), and uncorrectable codewords.
Finally, note that enabling Bridge Mode disables your private WiFi SSIDs, but it does not automatically turn off Comcast's public xfinitywifi and XFINITY passpoint hotspots, which broadcast on separate virtual VLAN interfaces using dedicated RF bandwidth. To completely silence the gateway's RF transmitters, sign into your Xfinity account portal or the Xfinity app, navigate to WiFi → View WiFi equipment → Advanced settings → Xfinity WiFi Hotspot Network, and toggle the public hotspot feature Off.
Xfinity Gateway Models (XB6, XB7, XB8) Bridge Mode Comparison
| Gateway Model | Manufacturer / Hardware ID | Multi-Gig Port | Bridge Mode Behavior & Notes |
|---|---|---|---|
| XB8 (Wi-Fi 6E) | CommScope CGM4981COM | Port 4 (2.5GbE Red Stripe) | Passes up to 2.3 Gbps over Port 4; disables 2.4/5/6 GHz & MoCA |
| XB7 (Wi-Fi 6) | Technicolor CGM4331COM / ARRIS TG4482A | Port 4 (2.5GbE Red Stripe) | Passes up to 2.3 Gbps over Port 4; solid white LED when bridged |
| XB6 (Wi-Fi 5) | ARRIS TG3482G / Technicolor CGM4140COM | None (2x 1GbE ports only) | Caps bridged speed at ~940 Mbps; request free XB7/XB8 upgrade for >1G |
| XB10 (DOCSIS 4.0) | Sercomm / CommScope FDX Gateway | 2x 10GbE RJ45 Ports | Used on X-Class symmetrical multi-gig tiers; supports full Bridge Mode |
| Customer-Owned Modem | Hitron CODA56 / Netgear CM3000 / Arris S33 | 2.5GbE WAN Port | Pure bridge modem by design; eliminates $15/mo rental if no unlimited promo |
Xfinity XB7 / XB8 Bridge Mode Commissioning Checklist
- All Xfinity xFi Boost Pods unplugged and removed from the Xfinity mobile app.
- Admin Tool online access enabled in the Xfinity app (WiFi > View WiFi equipment > Advanced settings).
- Logged into http://10.0.0.1 and set Gateway > At a Glance > Bridge Mode to Enable.
- Third-party router WAN connected exclusively to Port 4 (red-striped 2.5GbE port) on the XB7/XB8.
- All other Ethernet devices disconnected from XB7/XB8 Ports 1, 2, and 3.
- Public xfinitywifi hotspot disabled in Xfinity account settings to eliminate co-channel RF interference.
Frequently Asked Questions
Why does Bridge Mode keep turning itself off on my Xfinity XB7 or XB8?
If Bridge Mode reverts to Disabled within a few minutes of enabling it, your Xfinity account still has an xFi Pod (WiFi extender) associated with it in Comcast's cloud profile. Remove any paired Pods in the Xfinity app before enabling Bridge Mode at http://10.0.0.1.
How do I turn Bridge Mode off if I lose internet and cannot reach 10.0.0.1?
Plug a laptop directly into Port 1 or Port 4 on the XB7/XB8 via Ethernet, wait for an IP assignment (or set a static IP of 10.0.0.2 with subnet mask 255.255.255.0), and browse to http://10.0.0.1 to click Disable next to Bridge Mode. Alternatively, hold the physical Reset button (or WPS/Reset sequence on the back of the XB7/XB8) for 30 seconds to factory-reset the gateway.
Does enabling Bridge Mode on an XB7 or XB8 disable my wireless Xi6 / XiOne Xfinity TV boxes?
Wireless Xi6 and XiOne 4K TV boxes can connect directly to your third-party router's WiFi or Ethernet network once the XB7/XB8 is in Bridge Mode. However, legacy coax-based XG1v4 / XiD MoCA set-top boxes require a standalone MoCA 2.5 adapter plugged into your router's LAN port because Bridge Mode disables the XB7/XB8's internal MoCA controller.
What IPv6 Prefix Delegation size should I set on my router for Comcast Xfinity?
Residential Comcast Xfinity DOCSIS networks issue up to a /60 IPv6 block (16 individual /64 subnets) via DHCPv6 Prefix Delegation. Configure your router's WAN IPv6 connection type as DHCPv6 / Native, set Prefix Delegation Size to 60 (or 64 for a single LAN), and enable Track Interface on your LAN.