I looked at your account.
there was both an old, expired, cert and a current one.
To be certain it’s clear, I reset it all.
Please restart the server.
I looked at your account.
there was both an old, expired, cert and a current one.
To be certain it’s clear, I reset it all.
Please restart the server.
Have not been able to remotely access my Plex server from outside the network since it suddenly stopped working about a week ago. Plex itself never stopped saying its fully accessible through the manually specified port though. Tried a lot of the suggestions found in these forums to no avail. Could this also be certificate related? Logs attached.
Remote Access is not receiving a reply.
Nov 21, 2021 07:22:04.719 [0x7fcc02ea9b38] DEBUG - Completed: [192.168.198.100:50337] 200 GET /system/:/prefs (9 live) TLS GZIP 10ms 868 bytes (pipelined: 1)
Nov 21, 2021 07:22:04.736 [0x7fcc02af4b38] DEBUG - Request: [192.168.198.100:50337 (Subnet)] PUT /myplex/refreshReachability (9 live) TLS GZIP Signed-in Token (Slappo77)
Nov 21, 2021 07:22:04.736 [0x7fcc02af4b38] DEBUG - MyPlex: async reachability check - current mapped state: 'Mapped - Publishing'.
Nov 21, 2021 07:22:04.736 [0x7fcc02af4b38] WARN - MyPlex: we have an existing connectivity refresh request for async identifier ff22693b-c259-40f8-950e-32b1c75dea3d, but it has expired so we will try again.
Nov 21, 2021 07:22:04.736 [0x7fcc02af4b38] DEBUG - MyPlex: Requesting reachability check.
Nov 21, 2021 07:22:04.737 [0x7fcc02af4b38] DEBUG - HTTP requesting PUT https://plex.tv/api/servers/2a563847bf735f52544f344b98d7436c2cf8e203/connectivity?X-Plex-Token=xxxxxxxxxxxxxxxxxxxx&asyncIdentifier=0efbd012-25bb-4b05-b8fd-f94e3aa6f02d
Nov 21, 2021 07:22:04.742 [0x7fcc03c10b38] DEBUG - Request: [192.168.198.100:50336 (Subnet)] GET /updater/status (9 live) TLS GZIP Signed-in Token (Slappo77)
Nov 21, 2021 07:22:04.742 [0x7fcc02eccb38] DEBUG - Completed: [192.168.198.100:50336] 200 GET /updater/status (9 live) TLS GZIP 0ms 574 bytes (pipelined: 2)
Nov 21, 2021 07:22:04.771 [0x7fcc03aefb38] DEBUG - Request: [192.168.198.100:50339 (Subnet)] GET /web/static/95fcf17ada3b47345649.woff (10 live) GZIP Signed-in
Nov 21, 2021 07:22:04.771 [0x7fcc03aefb38] DEBUG - Final path: "/volume1/@appstore/PlexMediaServer/Resources/Plug-ins-cb2507e4d/WebClient.bundle/Contents/Resources/static/95fcf17ada3b47345649.woff"
Nov 21, 2021 07:22:04.771 [0x7fcc03aefb38] DEBUG - Content-Length of /volume1/@appstore/PlexMediaServer/Resources/Plug-ins-cb2507e4d/WebClient.bundle/Contents/Resources/static/95fcf17ada3b47345649.woff is 96044 (of total: 96044).
Nov 21, 2021 07:22:04.772 [0x7fcc02ea9b38] DEBUG - Completed: [192.168.198.100:50339] 200 GET /web/static/95fcf17ada3b47345649.woff (10 live) GZIP 1ms 96044 bytes (pipelined: 1)
Nov 21, 2021 07:22:04.776 [0x7fcc03c10b38] DEBUG - Request: [192.168.198.100:50336 (Subnet)] PUT /updater/check?download=0 (10 live) TLS GZIP Signed-in Token (Slappo77)
Nov 21, 2021 07:22:04.776 [0x7fcc03c10b38] DEBUG - AutoUpdate: requesting check endpoint: /updater/products/5/check.xml?build=linux-x86_64&channel=0&distribution=synology-dsm7&version=1.25.0.5246-cb2507e4d, download: NO
Nov 21, 2021 07:22:04.776 [0x7fcc03c10b38] DEBUG - Downloading document https://plex.tv/updater/products/5/check.xml?build=linux-x86_64&channel=0&distribution=synology-dsm7&version=1.25.0.5246-cb2507e4d
Nov 21, 2021 07:22:04.776 [0x7fcc03c10b38] DEBUG - HTTP requesting GET https://plex.tv/updater/products/5/check.xml?build=linux-x86_64&channel=0&distribution=synology-dsm7&version=1.25.0.5246-cb2507e4d
Nov 21, 2021 07:22:04.877 [0x7fcc02af4b38] DEBUG - HTTP/1.1 (0.1s) 200 response from PUT https://plex.tv/api/servers/2a563847bf735f52544f344b98d7436c2cf8e203/connectivity?X-Plex-Token=xxxxxxxxxxxxxxxxxxxx&asyncIdentifier=0efbd012-25bb-4b05-b8fd-f94e3aa6f02d
Nov 21, 2021 07:22:04.878 [0x7fcc02eccb38] DEBUG - Completed: [192.168.198.100:50337] 200 PUT /myplex/refreshReachability (10 live) TLS GZIP 141ms 329 bytes (pipelined: 2)
Nov 21, 2021 07:22:04.889 [0x7fcc03c10b38] DEBUG - HTTP/1.1 (0.1s) 200 response from GET https://plex.tv/updater/products/5/check.xml?build=linux-x86_64&channel=0&distribution=synology-dsm7&version=1.25.0.5246-cb2507e4d
Nov 21, 2021 07:22:04.889 [0x7fcc03c10b38] INFO - AutoUpdate: no updates available
The port forward is not working.
Certificate is fine,.
Nov 21, 2021 07:17:56.194 [0x7fcc07c766e8] DEBUG - Running migrations. (EPG 0)
Nov 21, 2021 07:17:56.251 [0x7fcc07c766e8] DEBUG - [CERT] Subject name is /CN=*.9681fef5d5e84edabc6c55cc502e22a0.plex.direct
Nov 21, 2021 07:17:56.251 [0x7fcc07c766e8] DEBUG - [CERT] Installed certificate with fingerprint 58:48:cb:9c:30:65:3a:8d:36:c9:f6:f8:db:7e:1c:db:bf:c4:e3:95.
Nov 21, 2021 07:17:56.251 [0x7fcc07c766e8] DEBUG - [CERT/OCSP] Stapling requests will be made to 'http://r3.o.lencr.org/'.
Nov 21, 2021 07:17:56.251 [0x7fcc07c766e8] INFO - [CERT/OCSP] Successfully retrieved response from cache.
Nov 21, 2021 07:17:56.251 [0x7fcc07c766e8] DEBUG - HttpServer: Listening on IPv6 as well as IPv4.
Could you please reset my certificate too? Why can’t we do this by ourselves?
Your certificate is newly created today. It does not need resetting.
DEBUG log files please ?
Valid Sun, 21 Nov 2021 14:36:47 +0000 Sun, 21 Nov 2021 14:36:59 +00001
Thank you for the quick answer. Not sure if i got the same problem. I use a self-signed certificate from a Qnap with Let’s Encrypt. In Firefox everything is fine but with Edge and Chrome Plex Server does’nt seem to show up a certificate. (this site does not have a certificate)I’ve already recreate a new certificate and replace it in plex but still got this annoying error…
Be careful how you word this.
A self-signed certificate means you created it without being verified and countersigned by any other agent.
Let’s Encrypt certificates are verified by Let’s Encrypt as they create them.
On the QNAP, you add your certificate to QTS itself. ( Control Panel - Security - SSL Certificate ). For QNAP, the Certificate Authority (Let’s Encrypt signature) is optional.

For Linux, I create my certificate using the following openssl command.
openssl pkcs12 -export -out my-domain.p12 -inkey my-domain.key -in my-domain.crt -certfile "Acmecert_+O=Let's+Encrypt,+CN=R3,+C=US.crt"
Notice I include the Intermediate Certificate Let’s Encrypt provides.
You are describing errors but have not yet shown me what those errors are.
May I see your logs which have these errors? They might not be the server at all.
Most of the time, they are CLIENT certificate errors
I really appreciate your help. Excuse for bad using self-signed certificate term. I make my certificate like you show it in your reply. I convert it in PFX format.Here is my log for better analyse.
Thank you.
I see it.
Nov 21, 2021 15:36:33.534 [0x7fb783c126e8] DEBUG - [CERT] Loaded a user-provided certificate for /CN=fezzoli.fr.
Nov 21, 2021 15:36:33.535 [0x7fb783c126e8] WARN - [CERT/OCSP] Missing cert or issuer; skipping stapling
This error -
Missing cert or issuer; skipping stapling
means it is not recognizing this part of your certificate creation. (The CA)
-certfile “Acmecert_+O=Let’s+Encrypt,+CN=R3,+C=US.crt”
Ok thank you but what can i do to correct this? I was doing like this since one year and all of sudden i got this problem.
Did your CA expire on Sept 30 with the rest of the Let’s Encrypt certificates ?
I had to renew all my certificates.
Not sure about this, where can i found my CA on the Qnap?
Ok thank you all is fine in Chrome Edge and Firefox. Unfortunately i use HD Station with Plex Home Theater and this application doesn’t see my library… (It’s on the same Nas The Server and the application so it’s local) I read the log and here’s again this certificate error :
CERT: incomplete TLS handshake from 192.168.1.240:38744: sslv3 alert certificate expired
HD Station with Plex Home Theater
They both lost their access as of Sept 30th, 2021 when their certificates expired (within the app).
The best you can do is add the LAN IP of that player to ‘Allowed without auth’ -AND- set Secure Connections to “Preferred”
Maybe, whoever is maintaining PHT now (Plex released it to Public Domain several years ago) will consider updating the internal certificate like was done for the Rasplex players
@ChuckPa Could you please have a look at mine?
Thanks!
your certificate is fine.
Valid Tue, 19 Oct 2021 12:05:20 +0000 Tue, 19 Oct 2021 12:05:35 +0000
I did find 2 other (4 year old - dead) servers listed for the same name.
I took the liberty of removing them to clean up the account for you.
Which device(s) is/are having trouble?
Anything possibly related to:
Thanks @ChuckPa ,
I get a “app.plex.tv is unable to connect to “flyveleder” securely” when trying to view remotely - from a Mac using Google Chrome.
Thanks,
Martin
May I see the logs ZIP file please ?