

You usually only need to specify the internal host ip to setup a port forward. It should forward that to whatever the public ip is at the time.
If the isp is providing the model/router and generally being oppressive i highly recommend researching if you can place your own router behind it.
One option that i am not sering here that is also very safe is install wireguard and allow them to use it via vpn.