Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Bringing out the big guns - PLEX, VPN and portforwarding

    Scheduled Pinned Locked Moved Firewalling
    25 Posts 3 Posters 3.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      Wolf666
      last edited by

      Try to set outbound rule with static port for your Plex Media Server, using your vpn gareway. this solution will open a comunication with plex clouds and they will be able to reach you without any port forarding since you have a state alive.

      Modem Draytek Vigor 130
      pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
      Switch Cisco SG350-10
      AP Netgear R7000 (Stock FW)
      HTPC Intel NUC5i3RYH
      NAS Synology DS1515+
      NAS Synology DS213+

      1 Reply Last reply Reply Quote 0
      • X
        Xerial
        last edited by

        As much as I think that sounds like a great idea I am really not sure as to what to put where here. Could you please help me understand that?

        I yellowmarked the areas where I am not sure. I am guessing the interface should be OPT1 (my VPN client running with the public id). Also the address under translation should be QA (which is my test machine for this). But when it comes to source destination and pool options I'm not sure.

        ![2017-01-29 18-13-43.jpg](/public/imported_attachments/1/2017-01-29 18-13-43.jpg)
        ![2017-01-29 18-13-43.jpg_thumb](/public/imported_attachments/1/2017-01-29 18-13-43.jpg_thumb)

        1 Reply Last reply Reply Quote 0
        • W
          Wolf666
          last edited by

          Interface: the one assigned to VPN
          Source: ip of media plex server

          Translation
          Address "network" and thick "static port"

          As a first step use the defaults and see the behavior.

          Modem Draytek Vigor 130
          pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
          Switch Cisco SG350-10
          AP Netgear R7000 (Stock FW)
          HTPC Intel NUC5i3RYH
          NAS Synology DS1515+
          NAS Synology DS213+

          1 Reply Last reply Reply Quote 0
          • X
            Xerial
            last edited by

            Something like this? I can't select network under Translation Address. At the moment it is not working.

            Also I should probably mention that you can't select a single client as source. Only an entire network. So if I input 10.20.30.40 (which is my PLEX client's ip) I get 10.20.30.0/24.

            1.jpg
            1.jpg_thumb

            1 Reply Last reply Reply Quote 0
            • W
              Wolf666
              last edited by

              In source don't put any port…if Plex ask to go with 32400 the static port preserve natting the port.
              In the transaltion section, in address you should be able to select "network address".... do you have other options?

              Modem Draytek Vigor 130
              pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
              Switch Cisco SG350-10
              AP Netgear R7000 (Stock FW)
              HTPC Intel NUC5i3RYH
              NAS Synology DS1515+
              NAS Synology DS213+

              1 Reply Last reply Reply Quote 0
              • X
                Xerial
                last edited by

                I can only choose from my host aliases and "other subnet".

                2.jpg
                2.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • W
                  Wolf666
                  last edited by

                  Use exactly "interface address"

                  Modem Draytek Vigor 130
                  pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                  Switch Cisco SG350-10
                  AP Netgear R7000 (Stock FW)
                  HTPC Intel NUC5i3RYH
                  NAS Synology DS1515+
                  NAS Synology DS213+

                  1 Reply Last reply Reply Quote 0
                  • X
                    Xerial
                    last edited by

                    Still the same results.. Reposting my rules in the attached picture. Does it matter that I have rules to forward traffic coming in on 32400 via the WAN activated the same time as I have the corresponding rule but for traffic coming in from OPT1 (VPN)?

                    3.jpg
                    3.jpg_thumb

                    1 Reply Last reply Reply Quote 0
                    • W
                      Wolf666
                      last edited by

                      Can you post the gareway screenshot and interface assignement…
                      Opt1 is the VPN gateway? Or the interface assigned to plex subnet?

                      Modem Draytek Vigor 130
                      pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                      Switch Cisco SG350-10
                      AP Netgear R7000 (Stock FW)
                      HTPC Intel NUC5i3RYH
                      NAS Synology DS1515+
                      NAS Synology DS213+

                      1 Reply Last reply Reply Quote 0
                      • X
                        Xerial
                        last edited by

                        Here you go!

                        Opt1 is the vpn gateway yes.

                        4.jpg
                        4.jpg_thumb

                        1 Reply Last reply Reply Quote 0
                        • W
                          Wolf666
                          last edited by

                          I don't have any other idea…sorry.

                          Modem Draytek Vigor 130
                          pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                          Switch Cisco SG350-10
                          AP Netgear R7000 (Stock FW)
                          HTPC Intel NUC5i3RYH
                          NAS Synology DS1515+
                          NAS Synology DS213+

                          1 Reply Last reply Reply Quote 0
                          • X
                            Xerial
                            last edited by

                            No problem you really did make an effort so thank you very much friend!

                            1 Reply Last reply Reply Quote 0
                            • X
                              Xerial
                              last edited by

                              @Wolf666:

                              I don't have any other idea…sorry.

                              Hey Wolf I just wanted to tell you (and anyone else with this weird problem) that I solved it. After spending an hour or so googling yet another time I found a thread where a guy had issues not very different from mine. He received the advise to remove all rules under the OpenVPN tab under rules. After I did that it worked. The rule I had there was automatically created from the OpenVPN server wizard that I had run a while back. Really weird but it did the trick!

                              1 Reply Last reply Reply Quote 0
                              • W
                                Wolf666
                                last edited by

                                Great! Thank you for feedback.

                                Modem Draytek Vigor 130
                                pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                                Switch Cisco SG350-10
                                AP Netgear R7000 (Stock FW)
                                HTPC Intel NUC5i3RYH
                                NAS Synology DS1515+
                                NAS Synology DS213+

                                1 Reply Last reply Reply Quote 0
                                • First post
                                  Last post
                                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.