Managed user progress showing in main account

I have a plex server with a main account for me and 3 managed users for my family. This has been working fine for months.

Within the last week my son’s viewing progress and continue watching has started showing up in my account on our shield.

I’ve cleared the browser on his laptop of cookies and re-logged in, then switched to his managed account but it’s still happening.

The server is running the latest plex pass version in docker.

Is this a bug? How do I get his browser to associate with his managed account and not the main account?

Did you do one (or both) of the following:

  • enable DLNA in Plex
  • put something into “List of IP addresses and networks that are allowed without auth”

?

If you did, revert that
Either of the above effectively disables user authentication, so that anyone’s activity within your local network can get attributed to the server owner’s account (i.e. you).

OK, I have the latter enabled covering my LAN but don’t have DNLA enabled so I’ll give that a try.

I have to say though that I’ve had that set for years and this cross-account progress issue has only become a problem in the last week.

Enabling DLNA will make it worse, so don’t.

Change that to cover only a few select IP adresses, which should of course be fixed IPs of your own devices which are not (regularly) used by your family members.

I’ve left DLNA unchecked and cleared the field concerning auth devices for now.

However neither of these things relate to why this issue has only just started recently. I’ve never had DLNA on and always had 192.168.1.0/24 in the network auth field.

Authentication of a client device will automatically be made invalid every few months for security reasons.
Maybe this happened on the device which is used by your son. Or maybe it was removed manually from your account: https://app.plex.tv/desktop/#!/settings/devices/all

Without the above setting in “List of IP addresses …”, the device would have simply lost access. But with the list being present, it will silently gain access to your server, since authentication is not enforced.

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.