Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Netflix and Hulu won't stream, Prime video will.

    General pfSense Questions
    6
    24
    3.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      HardRooster @bcruze
      last edited by

      @bcruze

      When I run it through the VPN, yes. When I bypass the VPN, no.

      Nobody has asked for screenshots yet, so what do you want to see?

      This?

      da6e2712-f763-4731-a29e-50c9668963d9-image.png

      This?

      44e1328f-4745-42b8-8656-2139edfb6743-image.png

      That?

      a17699c6-b8e3-4920-9243-1cdf3a072550-image.png

      Thus?

      5f746f9c-761a-499f-8c87-fba6a841cf48-image.png

      Other?

      1 Reply Last reply Reply Quote 0
      • M
        mhertzfeld
        last edited by

        Maybe post some pics of your unbound settings.

        Are you doing DNS redirecting? From your posts it doesn't sound like you are but I know some of the guides for setting up VPN client include the steps for redirecting DNS and sending the requests over the VPN.

        H 1 Reply Last reply Reply Quote 1
        • H
          HardRooster @mhertzfeld
          last edited by HardRooster

          @mhertzfeld

          I'm not sure what an unbound setting is, so I'm going to have to assume it's set to default, or I just don't understand what you mean.

          Basically, everything is default, other than what the NordVPN guide said to do, plus some extra steps for setting up the alias/Rules to allow specific devices to bypass the VPN.

          I haven't had a chance to get any further into personalizing my pfsense setup, and do stuff like add packages, or shape traffic, or monitor or anything, because I'm still trying to get through the metaphorical front door. The setting up of the VPN was the first "unique" thing I've tried, and I'm think I've got that part working, but something else, besides the VPN is giving me issues.

          Edit:

          I'll take my best stab at it, based on the NordVPN guide, this stuff?

          8f0344cb-a5c7-497a-8071-cdc1849cbb7a-image.png

          1 Reply Last reply Reply Quote 0
          • M
            mhertzfeld
            last edited by

            The resolver screen shot is what I was looking for, you got it. Can you post your Port Forward screen as well to see if you are doing any redirecting?

            For troubleshooting I would recommend reverting the settings in the resolver back to their defaults. Or at a minimum I would set the outgoing network interface to WAN.

            As an alternative to using the VPN for your DNS traffic you could do DNS over TLS to cloudflare or quad9. That should keep your ISP from snooping on your DNS queries and you would still be able to resolve DNS if your VPN went offline for some reason.

            H 1 Reply Last reply Reply Quote 1
            • H
              HardRooster @mhertzfeld
              last edited by

              @mhertzfeld

              This one?

              04027320-aa3e-4c5a-a9b4-a2aa7db7ec47-image.png

              1 Reply Last reply Reply Quote 0
              • M
                mhertzfeld
                last edited by

                That helps but what I was asking for is under firewall\nat\port forward.

                H 1 Reply Last reply Reply Quote 0
                • H
                  HardRooster @mhertzfeld
                  last edited by HardRooster

                  @mhertzfeld

                  Oh I haven't done anything in there, it's empty.

                  6924b549-b513-4763-9258-1a16603eddbc-image.png

                  OK, so I'm gonna try the troubleshooting bit you mentioned. I'll try setting outbound to WAN

                  1 Reply Last reply Reply Quote 0
                  • H
                    HardRooster
                    last edited by

                    OK then, it's working. Changing that to WAN works.

                    Does this mean the VPN is now being fully bypassed by everything? Or do the rules/aliases still count?

                    1 Reply Last reply Reply Quote 0
                    • M
                      mhertzfeld
                      last edited by

                      Switching the Outgoing Network Interface setting to WAN means that the DNS query traffic from your DNS resolver in pfsense will go through your WAN interface, where before it was going through your VPN.

                      All your host traffic should be going through which ever gateway you configured in your firewall rules. So if I remember your setup correctly, all the traffic in that alias should use the WAN and everything else uses the VPN.

                      Netflix wasn't working because of some sophisticated systems they setup to detect if users are using a VPN or some sort of other mechanism to get around their geo blocks. DNS is part of that, but I don't have time to explain right now.

                      1 Reply Last reply Reply Quote 1
                      • GertjanG
                        Gertjan
                        last edited by

                        d5cc103f-5982-42b6-adb5-eeb94b28c82c-image.png

                        That's the Forwarder.
                        As the image stated, it's deactivated.

                        The Resolver ?

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        1 Reply Last reply Reply Quote 0
                        • S
                          smash33 Banned
                          last edited by

                          This post is deleted!
                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.