Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Whitelist Amazon AWS servers for those using VPN gateway (Netflix and others)

    Scheduled Pinned Locked Moved Routing and Multi WAN
    11 Posts 8 Posters 14.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      knight26
      last edited by

      Thanks for this, man.  I've been killing myself trying to find a list of hostnames to build a bypass like I did for hulu. It worked with a list 24 hostnames, but I could never find a comprehensive list for netflix.

      Hardware:
      GIGABYTE GA-B85M-DS3H-A LGA 1150 Intel M-ATX MB
      Intel Pentium i3-4130T dual core cpu
      Intel Pro 1000 dual port server adapter
      Crucial 8Gb RAM
      Mushkin 60gb SSD

      1 Reply Last reply Reply Quote 0
      • M
        maxamus456
        last edited by

        Thank you for this! I am still a little confused… I don't currently have PIA because I had to cancel it because of Netflix. But how does this work? The way I had it set up before was with this guide " https://www.privateinternetaccess.com/forum/discussion/18111/openvpn-step-by-step-setup-for-pfsense-firewall-router-with-video ". Would this still work? Isn't it just routing everything from the WAN to the VPN?

        Thanks,
        Maxamus456

        1 Reply Last reply Reply Quote 0
        • K
          knox203
          last edited by

          knight26: Glad I could help!!

          maxamus456: The link you provided is the same setup I followed initially when I first got everything configured. It's important to follow the instructions to the T if you want to be sure that you have it configured properly, without a chance of "leakage". After you've got your VPN configured properly as a gateway, you would then disable your default LAN rule, and configure a new one while specifying the VPN gateway (in advanced options at the bottom) under the new (VPN) Allow-All rule. You can then work on white-listing services. In the case of this post, Amazon AWS services along with Netflix. If you need further help, hop on over to the Reddit X-Post, I'm a bit more active there than I am here.

          1 Reply Last reply Reply Quote 0
          • M
            manaox2
            last edited by

            Thanks much for making the list! FQDNs weren't going to cut it this time like it would with something like Hulu, saved me a ton of time.

            1 Reply Last reply Reply Quote 0
            • F
              FlashEngineer
              last edited by

              I've been trying for days and still can't get this to work.  So far I have 500+ CIDR entries from pfblocker and still didn't work.  Anyone have any idea?

              1 Reply Last reply Reply Quote 0
              • F
                FlashEngineer
                last edited by

                Update:

                Can't get this to work, at least Canada, there's seem to be more and more AS # added to their content delivery.  I've found these so far but not sure if it's 100% from netflix.

                AS14618
                AS2906
                AS209
                AS16509
                AS4804

                Still can't stream.  This is ridiculous, I think I will cancel Netflix at this point because I'm going over the top just to protect my privacy.  pfblocker populated 17825 CIDR entires for this and still can't stream.

                1 Reply Last reply Reply Quote 0
                • S
                  shad0wca7
                  last edited by

                  Sorry to bump this up again but I've been having issues and can't seem to whitelist Netflix effectively. I've loaded the latest AWS and Netflix lists I can find from the original Reddit thread but no dice. Am I missing something?

                  1 Reply Last reply Reply Quote 0
                  • R
                    rcmpayne
                    last edited by

                    if you are in Canada, specifically on Bell Aliant you also need to allow the following

                    ntflxhfns[0-9].bellaliant.net

                    1 Reply Last reply Reply Quote 0
                    • S
                      someuser123
                      last edited by

                      i know this is old thread, but still wanted to check.
                      does anyone have whitelist for xfinity stream app to work while at home, to bypass vpn? web url is tv.xfinity.com

                      thanks

                      1 Reply Last reply Reply Quote 0
                      • S
                        someuser123
                        last edited by

                        ok i found the AS numbers for xfinity live tv

                        AS7922

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.