# New Linux Plex Server - No Remote Access

**URL:** <https://forums.plex.tv/t/new-linux-plex-server-no-remote-access/864402>\
**Category:** Remote Access\
**Tags:** server-linux\
**Created:** [December 29, 2023, 2:05pm UTC](https://forums.plex.tv/t/new-linux-plex-server-no-remote-access/864402 "2023-12-29T14:05:20Z")\
**Posts on this page:** 1\
**Showing post:** 15

<div class="post-metadata">

**Author:** ![ChuckPa](https://sea1.discourse-cdn.com/plex/user_avatar/forums.plex.tv/chuckpa/32/79710_2.png) [@ChuckPa](https://forums.plex.tv/u/ChuckPa)\
**Post date:** [January 24, 2024, 7:27pm UTC](https://forums.plex.tv/t/new-linux-plex-server-no-remote-access/864402/15 "2024-01-24T19:27:02Z")

</div>

Piece at a time if I may? I’ve got “The 'vid” and struggling.

> [@LordVisigoth](#):
>
> I just wish I could get a protocol exchange session log from within plex. If it goes “green” for 2-3 seconds… that mean UI either is dump and defaults to green… or… every time you try… it links but then something like key exchange is failing.

Parts 1 and 2 of this part are in your debug [server logs.](https://support.plex.tv/articles/200250417-plex-media-server-log-files/)

Part 1 - If you have your own FQDN, you’ve created a P12 file for PMS to use

1. It must be OpenSSL v3.0 compliant now. That happened in April of 2023.

> [@Linux Tips](https://forums.plex.tv/t/linux-tips/276247/25):
>
> OpenSSL v3.0.0 and PMS. For those using their own domains and certificates with PMS , PMS 1.32.0.6865 and above updates OpenSSL from v1.1.1 to v3.0.0 . (changed the numbering scheme in the process) The consequence of this is OpenSSL v3 removed several “less secure” encryption methods. The impact on you, if you’re using an older distributions where openssl v3 is not the default, if not already doing so, you will need pay special attention to how your certificates are generated As example,…

1. How it works

- You turn it ON
- Plex/Web opportunistically turns the indicator green (before anything happens)
- It notifies PMS
- PMS sends out a reachability test to [Plex.tv](http://Plex.tv) with an ID number (Test ID)
- [Plex.tv](http://Plex.tv) attempts direct connection on the given port at your WAN IP.
- Pass or fail, the result message is sent to PMS

1. Every part of this is in your DEBUG [server logs.](https://support.plex.tv/articles/200250417-plex-media-server-log-files/) Search for ‘reachability’  
“:0” = false (not reachable)  
“:1” = true (reachable)

If you think cert/key is failing –

1. Are you giving PMS a URL to contact your server with or are you using the default ?

2. If so, are you also complying with OpenSSLv3 cert creation above?

### Q: Are you using UFW and IPTables concurrently with Pfsense ?

- If so, urge you don’t. Conflict and makes mess
- You don’t trust pfSense ? UFW or IPTables -plus- pfsense  
– double firewall? unnecessarily redundant  
– what are you not using correctly ?
- I’ve turned everything off with only Pfsense enabled.  
– VLAN isolation is performed in the switch (VLAN ID level 2)

---

_[View the full topic](https://forums.plex.tv/t/new-linux-plex-server-no-remote-access/864402)._
