Bug on Control access to “Friends”

I just add a new eMail user to my account as “friend” and do not add all the librararys on “Grant Library Access”.

Strangly All the librarary could be open on App of this eMail user. I check his device and could see my private librararys.

That is a huge security problem, because I allready gave the access a lot of friends with childs. I dont want them to access some librararys.

Please help.

Please go to “Home & Library Access” https://app.plex.tv/desktop/#!/settings/users-sharing/

Click on the user name/email of the new user
Make sure you are on the “Libraries” tab (selection at the top)
Now click on “Edit” at the right side of your server name

Which libraries are selected here?
All of them or just your selections from before?
Are you using the local or the hosted https://app.plex.tv web app?

Does this mean that this friend was in your home at the time?
And if so, did you give him access to your private WiFi network?
If you did that, check this:
In Plex, look at
Settings - Server - ‘Show Advanced’ - “List of IP addresses and networks that are allowed without auth”

Is there something inside this input field?
If you added your whole private network IP address range into it, then it is to be expected that every device which is inside your home network has full access to all your libraries.
Which means this is not Plex malfunctioning. It is merely doing what you told it to do.

And this also means that your firend was only able to access all these libraries because his device was inside your home network.
As soon as he leaves, he will lose this access and from then on will only be able to see those libraries which you explicitly shared with him.

You are so right.

That is exactly what happened.

Its my fault.

I never thought that give permission my network, completely open all libraries for any user inside my network (networks because using VPN, every place even far away, have some access, because I add more then one permitted networks: local and VPN ones).

I will think about this for some days, then let you know my opinion, for what I think that should mean same network…

I understand that Plex is made for lots of realitties. As iPhones are doing, at a time there are too much option, and some of them out of place.

Somehow, security should be all together to avoid loops.

Or even better, a inside toll that could test what each user could see with cuttrnt configuration bot avoid misunderstanding, like Facebook do and Load Balance tools insede Routers as Draytek allows.

Maybe is asking too much, but safety is safery.

Also goes to 2nd way Authenticator,

Beeing a member for Plex for so e years, and just now get in community, I hope to help.

Please delete my last post with my presentation, or make this conversation private just with Plex team.

Regatds,

Miguel

Hi,

  1. After thought about it, I think I have a solution that could make everything much more easy.

Well, in eletronics there are 2 concepts easy to explain, but difficult to find out what both means util I got it - It´s “NO” and “NC”.

That means “Normaly Opened” and “Normaly Closeed”.

What that means, in this case, is that when you create/change a Librarary, it´s visible by default, but you also can make it hidden by default, by checking a Check box on that way.

I think that solve it.

With time, I understand with devlopers and programming teams, understand a image is a better way then put it in words. So here goes 2 solutions (I would go the first one - With a Explanation after it):

Or

That way, by default one or more librararies could be hidden (when created, or when neded, Admin could change that. On same network (even with one IP range or more, define as open to every device, or a new user or a new eMail user). If you want to open it, Admin would have to login and check “on” folders to a personal user. So checking “On” to a specific user (or in future to Groups), wiil override “Usually hidden” to that user, but keep it close to the other all users.

Ok ? I think it makes sense.

I allready gave my exemple, but let me give one other more option, to help what I mean, and go even further on even a bigger scale (to Plex as a business, and if you can see, I have been subscribe year by year, instead of buying Plex one time forever, to help Plex as I can. Also let other sugestions on other topic. It was about Keeping librararies arranged allways to the same user. Like when login in on a new device, or as you change “arrange libraries” to a user on one device, changes on the others - can have a checkbox not so Sync arrange. I open a post about it.).

  1. You could open Apps on the same network not to need to login.

For exemple, on login page/start page, for a new Plex on a TV you could have a place to “Login to local Server/s”

That way you just press, and “bum” you have all “normal open” libraries ready to go. You could also define a “Standard User”, by selected on configuration, to Normal User, So would open first time Plex it will go straight to that user. Then User could change to other User.

Other way, you could have just one user, so goes straight to one user that is the only.

Could have the option to Hide Administrator, so Admin, only could be accessible from website or other weblink.

This mean that if you have a bunch of devices, you dont need to login, making sense for your IP brand, normal open function, that you refer to me.

That have other nice option too, here goes:

If a friend using Plex on his device came to visit me/you, and have his own Plex working (with his server/s), as got inside your “normal open” network, your Server or Servers, automaticly appear as a new server on his device (going from one to two Plex Servers, or something like that), when he gets inside my network (cable or Wifi).

This could be interesting as a product for Special Plex accout, like a Hotel, with 100 TV sets.

Everyone would have a local user (Room User:23.hotel/pass:23.adminpass), or even not need any login information, just pressing on first page, login to local Plex Server (beeing controled by IP adresses as users or MacAdresses, or even better let a IP User, have a name on Plex Server, for automaticlly users (define a name on a IP user: 192.168.5.13 → Room 73.

IP users could have a pin, define inside Plex Server, or not, for childs.

This way for exemple in a hotel room, you could open a library to a special room or user inside Hotel (payd or not).

Also a front home page could be Added to this special Hotel Service or to my Home Media Center… looks cool.

As beeing a GUI, Plex App could have option to start when “On” on device, and option to block to exit App, and with multi Library, could also have television working inside Plex to Hotel Rooms. Other option could go for: "Start Plex on specific Library and even option to go to special media: a “Movie” (Presenting Hotel, Food, etc), or a Media Content Channel for go staignt to a special TV channel (good for homes). Changing language from Server or directly from Device App. Also option to hidden Plex logo and Change for Hotel/Company one.

A though,
As special as a software can be (Plane ones Hotel ones, etc), there is nothing better as a huge company, and even better, a company like Plex, with a huge comunity, like us helping developers to go as far as Plex is right now and can go even more. Nothing beats it. I know a huge exemple where a OS still 90% of today computers, because was free to copy… and got a lot of help, beeing free. Windows from Microsoft.

That way Local Plex Server open over IP, would have 8 or 9 more option how to normally start on devices on same network, even “Change Language” option, on device.

And as a new user get in Hotel/Home would get access to Plex on there Pad, Laptops, Phones, Etc or other devices with Plex.

The only difference from Residencial to Compay (hotel, etc), would be number of users permited. I think we deserve all funciton as we help to develope it. Just not so much users.

How about that ?

I think it awsers to every question and even can go further.

Easy to deploy in a bunch of devices at just one click in each one.

On a simply way, Im proposing a OS Media for devices, like TV´s or a Central Media Center for Mobiles as Phones and Tablets.

Hope it helps and came to live.

Regards,

Miguel

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.