Secure connection not working after moving server to new, and reverted back

Server Version#:plexmediaserver_1.21.1.3830-6c22540d5
Player Version#: 4.49.2
continue from other thread almost same name, others got help there, i dident and was told to make new post

anyway

moved my server to FreeBSD, lost connection to secure every 10 minutes it felt like, had to revert back to VM ubuntu and couldent reuse old name, so had to delete prefrence, but i keep getting this error, both in FreeBSD and now Ubuntu (old one)
[CERT/OCSP] Stapling requests will be made to ‘http://ocsp.digicert.com/’. Dec 26, 2020 10:19:16.083 [0x8035f2000] INFO - [CERT/OCSP] Successfully retrieved response from cache. Dec 26, 2020 10:19:16.083 [0x8035f2000] DEBUG - [CERT] Installed intermediate certificate. Dec 26, 2020 10:19:17.708 [0x80b281e00] WARN - [CERT] TLS connection came in with unrecognized plex.direct SNI name “ip etc” using installed plex.direct cert
this is from both servers,

(File removed)

(File removed)

I asked you to move here because you’ve flipflopped between FreeBSD and Linux.

  1. That’s a complete game-changer.
  2. The SNI name against the Plex cert is another complication in light that your server logs show the cert is accepted.

There’s more going on here than meets the eye therefore this deserves its own thread.

Jan 03, 2021 19:40:00.357 [0x7f048ca4e700] INFO - Plex Media Server v1.21.1.3830-6c22540d5 - Ubuntu PC x86_64 - build: linux-x86_64 debian - GMT 01:00
Jan 03, 2021 19:40:00.357 [0x7f048ca4e700] INFO - Linux version: 20.04.1 LTS (Focal Fossa), language: da-DK
Jan 03, 2021 19:40:00.358 [0x7f048ca4e700] INFO - Processor         Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Jan 03, 2021 19:40:00.358 [0x7f048ca4e700] INFO - /usr/lib/plexmediaserver/Plex Media Server
Jan 03, 2021 19:40:00.358 [0x7f048da8f100] DEBUG - BPQ: [Idle] -> [Starting]
Jan 03, 2021 19:40:00.358 [0x7f048da8f100] DEBUG - FeatureManager: Using cached data for features list
Jan 03, 2021 19:40:00.359 [0x7f048da8f100] DEBUG - Opening 20 database sessions to library (com.plexapp.plugins.library), SQLite 3.26.0, threadsafe=1
Jan 03, 2021 19:40:00.391 [0x7f048da8f100] DEBUG - Running migrations. (EPG 0)
Jan 03, 2021 19:40:00.526 [0x7f048da8f100] DEBUG - ChangestampAllocator: initialized to 144116287594540762
Jan 03, 2021 19:40:00.526 [0x7f048da8f100] DEBUG - Opening 2 database sessions to library (com.plexapp.plugins.library.blobs), SQLite 3.26.0, threadsafe=1
Jan 03, 2021 19:40:00.529 [0x7f048da8f100] DEBUG - Running migrations. (EPG 0)
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - [CERT] Installed certificate with fingerprint ea:75:d8:da:f5:41:86:e7:e8:dd:fb:39:f4:7e:b0:9a:f9:27:40:4d.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - [CERT] Installed new private key.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - [CERT] Subject name is /C=US/ST=California/L=Los Gatos/O=Plex, Inc./CN=*.6a6f96f1f4a445f4b1be1a0acfb38267.plex.direct
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - [CERT/OCSP] Stapling requests will be made to 'http://ocsp.digicert.com/'.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] INFO - [CERT/OCSP] Successfully retrieved response from cache.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - [CERT] Installed intermediate certificate.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - HttpServer: Listening on port 32400.
Jan 03, 2021 19:40:00.542 [0x7f048da8f100] DEBUG - HttpServer: Listening on port 32401.
Jan 03, 2021 19:40:00.546 [0x7f04840e7700] DEBUG - Grabber: Cleaning up orphaned grabs.
Jan 03, 2021 19:40:00.547 [0x7f048da8f100] DEBUG - Media Provider: Registering provider com.plexapp.plugins.library
Jan 03, 2021 19:40:00.547 [0x7f04828e4700] DEBUG - MyPlex: mapping state set to 'Unknown'.
Jan 03, 2021 19:40:00.547 [0x7f048da8f100] DEBUG - Auth: Refreshing tokens inside the token-based authentication filter.
Jan 03, 2021 19:40:00.547 [0x7f04828e4700] DEBUG - Relay: read 68 cached entries from hosts file
Jan 03, 2021 19:40:00.547 [0x7f048da8f100] DEBUG - MyPlex: using cached data for request for https://plex.tv/api/v2/server/access

Is there Domain Rebinding protection enabled in the modem router -or-
has an allowance rule for plex.direct been granted?

i got edgerouter X, it doesnt have that feature of DNS Rebind protection, allrdy checked that, to make sure i could fix it my self :frowning: i do run pihole on network, but the plex server doesnt use local dns but googles 8.8.8.8 8.8.4.4
i dont use dnsmas.q either, just plain firewall with port open 32400 > local machine, worked like this for past 8 years or so, i just decided to move ti during hollidays as i was bored, and now i got this issue :slight_smile:
could it be hostname ? the 2 servers have diffrient hostname, altho there MAC id is the same (both are VM so i can set it to what i want)
i’ve done it before, but never had this problem

This is wrong to do.

Each ethernet adapter needs its own, unique MAC address. Without that, routers and switches won’t work right.

MAC addresses are what control Layer 2 switching/routing.
IP addresses are Layer 3.
Layer 3 won’t get the right packets if Layer 2 is sending then to the wrong adapter.

Knowing this makes the error message of SNI name much more understandable.

It’s expecting the entire set to match: Hostname, IP, and MAC address form the set.
Two different servers form two distinct IDs.

You can’t willy-nilly move them around and expect it to work.

it same IP same Mac, just hostname diffreint :slight_smile: but i understand plex doesnt like it for SNI
i tried changing it to diffrient random generated, as its a VM both of them, and dont have a physical MAC id :slight_smile:
but if you could say i should change it, and it will work, i’ll change it, and IP so hopefully it will work?
but i guess i’lve would have re-register as new server? just dont wanner loose lib etc.

Is it the same computer?

yup, same server

running around 8 jails, 3 VM :slight_smile: truenas server (old freenas) for 10+ years going strong

That’s WAY above my knowledge level .

well, tbh i think it’s hostname, macid and ip that causes this SNI, but the loss of cert or error of certs i would have hoped you knew :slight_smile:
in 10 years i moved the server on same installment and same hardware multiple times, this time it just have errors sadly, hence why i reach out.

i just dont know about the Cert error and well MyPlex as you showed me…
shouldent be a issue with me having it in a VM like envirorment :slight_smile:
aint there a way to get a aprovel if i reset prefrense logout and then claim it agian ?

That can’t work, every now and then your router will have a different arp. You have to stop your ubuntu machine.

the FreeBSD is stopped, i gave up and well wrote on forums for help, meanwhile i booted the ubuntu back up, just with issues now, so want me to stop the ubuntu aswell and wait for arp refresh? hmm

Just saying you can’t have duplicated mac Id on the same lan. Shutdown your old machine, leave the new one on, and just a ping to your router will be enough for it to update it’s arp table. From there you start troubleshooting the certificate problem.

ahh like that, well ofc not, my network wouldent allow it either

after 24/12 i moved server to freebsd, logget out of ubuntu, shut it down
installed freebsd, moved application support, booted it up, and claimed it,
they were never online the same time
then the issues began, and i around 27/12 closed the freebsd one, and just booted the ubuntu one up, only to find out, same issues there with the CERT and sequre connection etc.

so since 27-28 ish only the ubuntu have been runing, and still rigth now

@ChuckPa isn’t it solved deleting the .cert file?

and in order to try be smart, i changed mac id on the freebsd way before turning it on, and then the network would give it same IP etc.

tried that allrdy :slight_smile: then it just wont do anything, doesnt download new or anything

Did you do this?