Problem with ATV3 + PlexConnect over VPN

There is a VPN configured between two locations using a site-to-site VPN on Sophos UTM firewalls. 

 

Location 1:

192.168.2.1/24

Unraid PMS Docker (192.168.2.20)

Unraid PlexConnect docker running on ports 80/443

 

Location 2: 
192.168.1.1/24

ATV 3 

 

 

 

Webclients, and Plex iOS clients work perfectly over the vpn from location 2. (I have configured Plex Media Server to allow the remote network). 

 

 

PROBLEM:

I configured and tested an ATV3 at location 1, by creating a profile with the correct cert, and configuring the DNS manually on the ATV3 to the ip for UNRAID PlexConnect (192.168.2.20), I tested at location 1 and everything worked great, the ATV3 could play plex videos. 

 

I took the ATV3 to Location 2 (No settings change), connected it to the TV and instead of loading Plex when I clicked on Trailers, it loaded the real apple trailers menu. However I tried playing video through the PBS app and the video played just fine, so it looks like DNS is working. 

 

Does anyone have any suggestions on what I could try to resolve this issue, so that the ATV3 sees the Plex menu, when I click on trailers. 

 

Could my firewalls be blocking some communication necessary for PlexConnect to work with the ATV3? If so is there a list of ports/protocols PlexConnect uses?

 

Thanks

You connected via the same network interface?

Logs?  Do these show the traffic (If not then its not using plexconnect at the second site)

I have resolved the issue:

I actually had two issues and the 2nd problem is what led me to the fix. 

Problem #1:

As listed above, my ATV3 on the Remote side of the VPN would not see PlexConnect, and instead would show the real Apple Trailers. 

Problem #2:

Netflix would work just fine (Menus), all the way up to the point of actually playing a video, then would fail at playing content. 

Resolution:

As mentioned above I am using Sophos UTM firewalls (home license), they have a protection feature called "Advanced Threat Protection" Which is really great at protecting normal web browsing, and keeping malware off your network, but not so great at allowing stand alone appliances to work, such as ATV, Sony PS, Microsoft Xbox. Once I added the IP of the ATV3 to the skip list for ATP, everything started working!

Thanks!