Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Avahi Help!

    Scheduled Pinned Locked Moved pfSense Packages
    19 Posts 3 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      WyoFarr @Setarcos
      last edited by

      @Setarcos it is indeed bound to 5353 but nothing on 44711. instead It is also bound to 23250 Screen Shot 2020-06-24 at 6.25.49 AM.png

      1 Reply Last reply Reply Quote 0
      • W
        WyoFarr @Gertjan
        last edited by

        @Gertjan I'll go back and re-read that entire thread but I think I've tried everything there and still can't get Avahi to work/discover anything on the subnet's it is looking at.

        1 Reply Last reply Reply Quote 0
        • SetarcosS
          Setarcos @Gertjan
          last edited by

          @Gertjan said in Avahi Help!:

          @WyoFarr said in Avahi Help!:

          enable-dbus=yes

          Aha, got it. You saw this https://forum.netgate.com/topic/134339/new-avahi-package/11
          But if you saw that, you already have all the answers (why the error message, why it is a don't care, etc) and all is well.

          So, why asking the question ?

          This thread had a bunch of great info and probably has all the answers you need to get things setup. The only different thing I noticed is that without an explicit rule to permit multicast, the UDP port 5353 traffic was getting blocked and I ended up having to add a rule to permit it as shown here: https://forum.netgate.com/topic/153828/avahi-and-sonos/2

          W 1 Reply Last reply Reply Quote 0
          • W
            WyoFarr @Setarcos
            last edited by

            @Setarcos
            I had seen that in the Avahi new package thread, and have a rule allowing 5353 to any, from the IOT network, I had assumed I didn't need it on my private network since it can get to anything on any of the other vlan's already.
            is that possibly the problem? or is it because I have it to any and not specifically to the multicast address Avahi uses?
            Screen Shot 2020-06-25 at 5.54.42 AM.png

            SetarcosS 1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan
              last edited by

              Rule :
              1 : it never matches any traffic.
              2 : Matches UDP traffic send to port 5353 (question : TCP traffic exist , Can exist ?)
              3 : disabled
              4 : Like 1.
              5 : Well ... all depands what "HomeNetworks" stands for.

              On your LAN network, the network you trust (?) with all the devices you trust, the devices you want to share with other networks, place a default pass all rule (have you kept it ?).
              I'm doing just that : I share my printers, present on my LAN, with users (pure strangers) that are on a non trusted captive portal network. My LAN has just one rule : any to any ok.

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              W 1 Reply Last reply Reply Quote 0
              • W
                WyoFarr @Gertjan
                last edited by

                @Gertjan
                I guess I need to look into what I've done wrong with allowing traffic to my DNS Server(pihole) rule 1, and the Plex server rule 4. Though Plex is working from every tv in the house so I'm not sure why it has no traffic.
                3 I disabled once I couldn't Avahi to work, those are the ports od devices associated with maracas, airplay, chrome cast etc etc. figured if Avahi wasn't working there wasn't any. reason to let those devices have access to my trusted network.
                5 home networks is an alias for the private network and guest network. 192.168.79.x/24 and 10.1.79.x/24
                I've not changed any of the default rules on the private network..Screen Shot 2020-06-25 at 7.08.00 AM.png

                1 Reply Last reply Reply Quote 0
                • SetarcosS
                  Setarcos @WyoFarr
                  last edited by

                  @WyoFarr If in doubt, check the firewall logs: Status->System Logs->Firewall

                  W 1 Reply Last reply Reply Quote 0
                  • W
                    WyoFarr @Setarcos
                    last edited by WyoFarr

                    @Setarcos
                    So I've sorted out DNS, when I transitioned to pfsense I put the old pihole address in the dns box for the iot network.
                    Avahi, still remains a bit of a mystery. the state table has a number of no_traffic:single entries. I'm not 100% clear on what this means but google would make me think that Avahi/something is not responding? Screen Shot 2020-06-26 at 5.58.36 PM.png

                    SetarcosS 1 Reply Last reply Reply Quote 0
                    • SetarcosS
                      Setarcos @WyoFarr
                      last edited by Setarcos

                      @WyoFarr These look normal. Remember that the traffic is multicast and there is no response.

                      If you have a Linux box on BWEIOT or BWEPRIVATE run:

                      avahi-browse -artp
                      

                      It will tell you if things are working or not.

                      1 Reply Last reply Reply Quote 1
                      • GertjanG
                        Gertjan
                        last edited by

                        ... Or, if the network supports also Wifi access, a smartphone with a "Discover" App

                        Apple has one - test on my captive portal - non trusted - network :

                        33620e5e-4aae-4ed7-a13d-8fb99600f1b8-image.png

                        These are all my printers.
                        Which enables clients / visitors to print if they know how to ... print using their smart phone.
                        Mostly used for printing plain tickets etc.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        1 Reply Last reply Reply Quote 1
                        • W
                          WyoFarr
                          last edited by

                          it looks like everything IS working...discovery app return a number of things from the IOT vlan while I was on my trust network. Thanks for putting up with and helping a newbie.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.