Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense on Virtualbox's Guest + Emby(Plex) on VirtualBox's Host

    Scheduled Pinned Locked Moved General pfSense Questions
    30 Posts 2 Posters 2.6k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D Offline
      didiosn
      last edited by

      here is my LAN firewall rules :
      b78b378a-b5f8-4cf5-b4ae-3b14f2aac722-image.png

      I will like to let them access my media server after logged via the Captive Portal.
      For now they're just using it for internet.

      1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        Right, but how are they trying to access it? What error are they seeing?

        1 Reply Last reply Reply Quote 0
        • D Offline
          didiosn
          last edited by

          The browser says Adress Unreachable...

          1 Reply Last reply Reply Quote 0
          • stephenw10S Offline
            stephenw10 Netgate Administrator
            last edited by

            What address are they trying to go to? What does Emby expect?

            If there are no states it looks like the clients are not even trying so I would guess what's happening is clients are tryting to fo to emby.local.lan or some such but that is not resolvable behind pfSense.

            Steve

            1 Reply Last reply Reply Quote 0
            • D Offline
              didiosn
              last edited by

              Emby is on 192.168.1.65:8960 so I tried to connect to it from browser with that IP, no hostname. About states, I swear that I've tried with my phone. Clients are not trying because Its not working yet to tell them.
              How can I make that IP to be resolvable behind pfsense ? Its too weird for me...

              1 Reply Last reply Reply Quote 0
              • stephenw10S Offline
                stephenw10 Netgate Administrator
                last edited by

                OK if you're trying to connect by IP address that should work. pfSense will route that traffic to the WAN because it is in that subnet directly.
                It sounds like maybe clients are not using pfSense as the route to that subnet? You should be seeing states opening from clients if they were.

                Steve

                1 Reply Last reply Reply Quote 0
                • D Offline
                  didiosn
                  last edited by

                  Hello, Thank you for all our replies. I'm on the way o fix my issue but please, is that a way to hide the access to an IP (LAN) behind the captive portal ?

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S Offline
                    stephenw10 Netgate Administrator
                    last edited by

                    Yes, you can just block/reject connections from that IP to the server using a firewall rule on WAN. Just put of above the pass rule(s).

                    Steve

                    1 Reply Last reply Reply Quote 0
                    • D Offline
                      didiosn
                      last edited by

                      I finally fix IP to the LAN side of the host (WIN 10 - RJ45), the one I connect to the router that clients. So Now Emby is in the same network like the clients so, is now accesible via 192.168.100.135, and without Authentification, thats the problem now.
                      I dont want to block connection to that IP, I want them to log in before access to that IP, even if its in LAN

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S Offline
                        stephenw10 Netgate Administrator
                        last edited by

                        If it's in the same subnet as the clients connecting to it that traffic never goes through pfSense so it cannot filter it. Or act on it in any way such as applying captive portal login.

                        Steve

                        1 Reply Last reply Reply Quote 0
                        • D Offline
                          didiosn
                          last edited by

                          Hello, thank you for your patience and replies.

                          Please is that a way to open a new web to client after authentificate ?

                          The problem is that, on mobile device, after authentificate, the redirect page closes itself.

                          Thank you

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S Offline
                            stephenw10 Netgate Administrator
                            last edited by

                            The 'After authentication Redirection URL' page from the captive portal?

                            If their browser closes it there's not much you can do. Once the CP is passing their traffic it does not redirect them again unless they are logged out.

                            Steve

                            D 1 Reply Last reply Reply Quote 0
                            • D Offline
                              didiosn @stephenw10
                              last edited by

                              @stephenw10 Ok, It's too bad....
                              For users, It's that a way to create a period of validity ? For exemple I create a voutcher of 1440 minute (24h) of internet access, which can be valid for 3 days. Means He can connect himself when he wants.

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S Offline
                                stephenw10 Netgate Administrator
                                last edited by

                                Hmm, I'm not sure if you can set an expiry date for vouchers. You can obviously remove them manually.

                                D 1 Reply Last reply Reply Quote 0
                                • D Offline
                                  didiosn @stephenw10
                                  last edited by

                                  @stephenw10 Lol For all users, No I can't. Is it possible with user account (username and password) ?

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S Offline
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    You can set an expiry date for local users sure.

                                    https://docs.netgate.com/pfsense/en/latest/book/usermanager/user-management.html#adding-editing-users

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.