Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PfSense - Cannot connect to Netflix and Hulu on Andriod devices / Smart TVs

    General pfSense Questions
    15
    43
    9.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      CCNewb
      last edited by

      Happy Holidays everyone, any help is super appreciated.

      I'm brand new to pfSense (installed last night), but comfortable in this area.

      This one has me stumped for the last few hours–  only Netflix and Hulu can no longer connect over specific devices.

      iPhone 7 & iPad Pro - working great
      Windows PC - working great
      Macbook Air - working great
      Android Tablet / Roku Smart TVs - Netflix "NW-2-5" error when connecting ; Hulu - previews load, when trying to watch a stream I get "something is wrong with your connection"

      Firewall logs at the time of connection show nothing from these device IPs.

      I've spent ~30 minutes searching for this same error

      Anyone heard of this before?

      1 Reply Last reply Reply Quote 0
      • C
        CCNewb
        last edited by

        Shoot happens with Amazon Video on Android / Smart TVs too.

        I'm tempted to hardwire the TVs into ISP routers / skipping the pfSense firewall.

        Found another other thread– but dude didn't remember his fix.
        https://forum.pfsense.org/index.php?topic=141791.0

        1 Reply Last reply Reply Quote 0
        • C
          CCNewb
          last edited by

          And it gets worse.

          Amazon Echo and Echo Dot no longer connect / even when going through factory reset.

          Crap– what could be going on?

          1 Reply Last reply Reply Quote 0
          • chpalmerC
            chpalmer
            last edited by

            https://forum.pfsense.org/index.php

            Like this?

            Triggering snowflakes one by one..
            Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

            1 Reply Last reply Reply Quote 0
            • B
              bcruze
              last edited by

              firewall > rules > lan

              add a static entry for each of the devices.

              edit the gateway of EACH statically created device and change it to gateway/ WAN interface.

              this works for both PIA and nordvpn

              1 Reply Last reply Reply Quote 0
              • C
                CCNewb
                last edited by

                @bcruze:

                firewall > rules > lan

                add a static entry for each of the devices.

                edit the gateway of EACH statically created device and change it to gateway/ WAN interface.

                this works for both PIA and nordvpn

                thanks, but it unfortunately didn't make a difference

                Network: 192.168.100.20/32  (IP address of a Smart TV)
                Gateway: 192.168.2.1 (Gateway of WAN2)
                Interface: <interface is="" correct="">I'm using dual-WANs through a gateway group.</interface>

                1 Reply Last reply Reply Quote 0
                • C
                  CCNewb
                  last edited by

                  I'm also not using a VPN.

                  It's just pfSense 2.4.2 basic configuration w/ a gateway group setup for Dual WANs.

                  I'm going to erase and install 2.3.5

                  1 Reply Last reply Reply Quote 0
                  • C
                    CCNewb
                    last edited by

                    pfSense 2.3.5, out of the box, didn't configure anything but 1 WAN and LAN through the initial install prompts.

                    Same situation- Netflix, Hulu, Amazon Video all fail to load on the Smart TVs.

                    Zero issues with Apple and MSFT products.

                    This is really frustrating

                    1 Reply Last reply Reply Quote 0
                    • R
                      Rai80
                      last edited by

                      IPV6 in play?

                      1 Reply Last reply Reply Quote 0
                      • C
                        CCNewb
                        last edited by

                        @Rai80:

                        IPV6 in play?

                        Got it disabled / set to "None" on the WAN / LAN interfaces

                        Temporarily setup a Floating Firewall rule to Deny any IPv6 Traffic - source anywhere, destination anywhere– but didn't make a difference.

                        Poor Amazon Echo won't connect either :/

                        1 Reply Last reply Reply Quote 0
                        • M
                          molykule
                          last edited by

                          Hi,

                          Heres what i have done. Please make an alias with all the static assigned IP's of media devices. Create a floating rule for that alias and ope the ports for it. I think i have 80 and 443 and then all the ephemeral ports. You can google the range for ephemeral ports.
                          Please see the attached screen shot of my floating rule for media devices. Also if you have squid, by pass the rule for those ip's.

                          Please let me know if you are still stuck,
                          thanks,
                          molykule

                          Untitled.png
                          Untitled.png_thumb

                          1 Reply Last reply Reply Quote 0
                          • C
                            CCNewb
                            last edited by

                            @molykule:

                            Hi,

                            Heres what i have done. Please make an alias with all the static assigned IP's of media devices. Create a floating rule for that alias and ope the ports for it. I think i have 80 and 443 and then all the ephemeral ports. You can google the range for ephemeral ports.
                            Please see the attached screen shot of my floating rule for media devices. Also if you have squid, by pass the rule for those ip's.

                            Please let me know if you are still stuck,
                            thanks,
                            molykule

                            I copied your floating firewall rule starting w/ 1 Smart TV IP – added Alias for ports 80, 443, and 49152:65535, however the issue still persists.

                            Another weird thing I noticed, the "sign in" button on pfchangs.com doesn't trigger the pop-up; happens on all computers.  Works when I switch to Wifi off ISP modem.

                            For what it's worth, I installed and did the basic config of OpenSense-- same issues there too.

                            Here's my full setup if this helps...

                            WAN 1 -> Time Warner Coax -> Netgear Modem -> Linksys Velop Router -> PCIe Dual Nic Port 1 (WAN1 in)
                            WAN 2 -> ATT Uverse Copper -> ATT Modem/Router Combo -> PCIe Dual Nic Port 2 (WAN2 in)
                            LAN out -> Netgear Gigabit Switch -> Wired Devices / Wifi Controller in Bridged modem (DHCP on wifi controller turned off)

                            Ubuntu 16 Desktop Parent Host
                            1x Onboard NIC (LAN in)
                            1x PCIe NIC (LAN out)
                            1x PCEe Dual Nic ( WAN1 in, WAN2 in)

                            Virtual Box- VM Hosting pFSense 2.4.2
                            Bridged Adapters for WAN1 in (em0) WAN2 in (em1) LAN1 out (em2) - > Promiscuous Mode - Deny All on all adapters

                            WAN1 em0: 192.168.2.x (assigned by DHCP of Linksys Router)
                            WAN2 em1: 192.168.1.x (assigned by DHCP of ATT Modem/Router Combo)
                            LAN em2: 192.168.100.1 (gateway for local network devices / issuing DHCP)

                            DNS: I disable internal DNS server from pfSense.  I have LAN DHCP server set to use a custom DNS IP for devices-- a Raspberry Pi thats running PiHole

                            1 Reply Last reply Reply Quote 0
                            • M
                              mrkool
                              last edited by

                              I ran into lots of issues because of the following

                              1. Pfsense loves intel Nic’s (not your issue just throwing it out there)
                              2. Clear the blacklisted ip addresses
                              3. (do u have snort enabled?) if yes what rules sources Are you using?

                              1 Reply Last reply Reply Quote 0
                              • C
                                CCNewb
                                last edited by

                                @mrkool:

                                I ran into lots of issues because of the following

                                1. Pfsense loves intel Nic’s (not your issue just throwing it out there)
                                2. Clear the blacklisted ip addresses
                                3. (do u have snort enabled?) if yes what rules sources Are you using?

                                Nothing blacklisted.  All NICs are physically Intel except 1, but they're all Intel emulated within Virtualbox.

                                For now, I have the TVs connected to the Linksys Velop Wifi (different than my regular wifi controller) / bypassing pfSense.  On the CODELQ traffic shaper for that WAN, I reduced the speed 12mbits leaving room for the TVs if my main network is saturating the circuits.

                                Not sure what snort is, unless it's enabled and installed by default, I don't have it.

                                It's frustrating to the point where I'd pay someone $50 to fix it.  Any takers :)?

                                YanikY 1 Reply Last reply Reply Quote 0
                                • U
                                  usedtolosing
                                  last edited by

                                  You have to enable IPV6 from lan to wan.

                                  I had the same issue. My guess is that it is part of the anti-VPN measures Netflix et Al have put in place

                                  T 1 Reply Last reply Reply Quote 0
                                  • YanikY
                                    Yanik @CCNewb
                                    last edited by

                                    @ccnewb
                                    Hey,
                                    Are you using DNS Resolver?

                                    GertjanG 1 Reply Last reply Reply Quote 0
                                    • GertjanG
                                      Gertjan @Yanik
                                      last edited by

                                      @yanik @usedtolosing : why are you replying against a 4 years old thread ?

                                      No "help me" PM's please. Use the forum, the community will thank you.
                                      Edit : and where are the logs ??

                                      1 Reply Last reply Reply Quote 0
                                      • U
                                        usedtolosing
                                        last edited by

                                        @gertjan because I found a solution, and I had a problem.

                                        Google still returns search results for old threads.

                                        Why are you replying to a 4 year old thread?

                                        GertjanG 1 Reply Last reply Reply Quote 0
                                        • GertjanG
                                          Gertjan @usedtolosing
                                          last edited by

                                          @usedtolosing said in PfSense - Cannot connect to Netflix and Hulu on Andriod devices / Smart TVs:

                                          Google still returns search results for old threads.

                                          pfSense, dated 4 years ago has close to nothing to do with pfSense today.
                                          Like applying a Windows XP solution on Wiondows 10.
                                          Are you using a pfSense version from 2017 ?

                                          No "help me" PM's please. Use the forum, the community will thank you.
                                          Edit : and where are the logs ??

                                          1 Reply Last reply Reply Quote 0
                                          • T
                                            truetype @usedtolosing
                                            last edited by

                                            @usedtolosing
                                            How did you enable IPv6 from LAN to WAN?
                                            This thread may be old, but it's still an Issue with Chromecast 4th gen and Netflix. Although it works when I make a floating rule to pass all for the Chromecast.

                                            I 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.