Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Rules to make Spotify happy?

    Scheduled Pinned Locked Moved Firewalling
    6 Posts 3 Posters 507 Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F Offline
      furom
      last edited by

      Hi,

      below is what I use for my media players and such
      29eec0e4-e2ee-422b-b53f-1d545db90cdc-image.png
      I occasionally have Spotify complain over my network settings, and have tried many variants. As all know, some rules must be there these days.

      What do you use for media, especially interested in Spotify, but all ideas are welcome.

      Error in Spotify is not that exhaustive; just telling me to "Check my network settings" to continue listening...

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG Offline
        Gertjan @furom
        last edited by Gertjan

        @furom

        As soon as you remove these

        cdcda659-6c95-4ae5-b3d0-df9cd797dccd-image.png

        from your LAN interface, and changed it (them) for this

        362bc43c-77b3-45d3-9b56-7342c43e751e-image.png

        you've given yourself a job.

        For every device, every application used, you need to know what IPs and ports and protocols are being used / are needed.
        No exceptions. No short cuts.

        Btw : you final block rules logs.
        So, off to the firewall log, and check all blocked packets one by one.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        F 1 Reply Last reply Reply Quote 0
        • F Offline
          furom @Gertjan
          last edited by

          @gertjan said in Rules to make Spotify happy?:

          @furom

          As soon as you remove these

          cdcda659-6c95-4ae5-b3d0-df9cd797dccd-image.png

          from your LAN interface, and changed it (them) for this

          362bc43c-77b3-45d3-9b56-7342c43e751e-image.png

          you've given yourself a job.

          For every device, every application used, you need to know what IPs and ports and protocols are being used / are needed.
          No exceptions. No short cuts.

          Btw : you final block rules logs.
          So, off to the firewall log, and check all blocked packets one by one.

          Thanks. Yes, I am aware I will explicitly need to open for everything, that is intentional, as is the logging. But I don't see any blocks, hence the question. I know Spotify uses all sorts of ports and at one time I had many of them defined in aliases used by the player, but that didn't (seemingly) do much, or anything really...

          GertjanG 1 Reply Last reply Reply Quote 0
          • GertjanG Offline
            Gertjan @furom
            last edited by Gertjan

            @furom said in Rules to make Spotify happy?:

            I know Spotify uses all sorts of ports and at one time I had many of them defined in aliases used by the player, but that didn't (seemingly) do much, or anything really...

            Throw them in a "Ports" alias.

            Example :

            When I define an alias called "thisfirewallports" :

            29898d0b-75ad-498a-81e8-663909f7e845-image.png

            and use it like this :

            7ad6648e-81ce-4bf4-8cba-a8013cdb827a-image.png

            As soon as I lauch a browser on a device on LAN, it will use port "443".
            The rule will match, and counters in front of the rule start to rise as you can see.

            If the spotify LAN device IP is known, you can even limit the rule to the IP of the device.
            Or make a list (alias ;) )with IPs from the known devices that are suspected to use spotify.

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 1
            • F Offline
              furom
              last edited by furom

              Thank, this is very helpful :) I have used a few aliases before but will try to use them more. Created one for Spotify now... :)

              Edit: But now I want to organize stuff... Can I assign more than one alias per rule? It wouldn't accept that it seems... But would be so nice... (bringing order to chaos) 👍
              Edit2: GOT it! I created a new alias and added the ones I already had... Works great! Love pfSense some days! lol Only(?) drawback is I can now only see the other alias names, not their contained ports

              1 Reply Last reply Reply Quote 0
              • S Offline
                ser
                last edited by

                Thanks, that was super useful! :) I’ve used a couple of aliases before but now I’ll start using them more often. Just created one for Spotify… :)

                Edit: Now I’m trying to organize things better… Is it possible to assign multiple aliases to a single rule? It didn’t seem to allow that… Would be amazing for tidying things up 👍

                Edit2: Figured it out! I made a new alias and added the existing ones inside it… Works perfectly! Gotta love pfSense sometimes! lol The only downside(?) is that I can now only see the alias names, not the ports they contain.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.