Jump to content

All Activity

This stream auto-updates

  1. Past hour
  2. dhenzler

    https:// access on public Internet

    I guess I'm on my way then... I have control of my DNS through my ISP service and things are pretty much configurable in an instant. Thanks for the assist ! ;o) D
  3. bandit8623

    Audio out of sync

    have you tried enabling this?
  4. metsuke

    https:// access on public Internet

    If you have domains then that should work fine. "media" is the sub-domain that whomever you got that from is using. The port will be whatever the port is configured in the Network section of Emby. In my case, it is 8920. My "server" stanza is very stripped down and works fine, but whatever works.
  5. dhenzler

    https:// access on public Internet

    I have several registered domains. I use sub-domains off these for playing with these toys... confused by some of the identities. The example used media.blablabla.. & media.int.blablabla is media important? I see some $server_name$request_uri I assume those are memory variables I assume that the proxy_pass http://127.0.0.1:5200 stays...
  6. metsuke

    https:// access on public Internet

    Also keep in mind that if you don't have internally resolvable DNS and thus cannot provide nginx with a server_name then you can just set it as default according to this post: https://stackoverflow.com/questions/69701574/nginx-reverse-proxy-without-defining-server-name
  7. all that needs to be carried over is quick view tv guide when pressing the up button fit more channels in the tv guide quick view (use compact layout)
  8. metsuke

    https:// access on public Internet

    Here is an abbreviated version of my nginx reverse proxy in a jail. You may not need all those config options, but I use them and more with success. user www; worker_processes 2; http { add_header Strict-Transport-Security "max-age=15552000; includeSubdomains" always; add_header X-Content-Type-Options "nosniff" always; add_header X-Download-Options noopen; add_header X-Frame-Options "SAMEORIGIN"; add_header X-Permitted-Cross-Domain-Policies none; add_header X-Robots-Tag none; add_header X-Xss-Protection "1; mode=block" always; add_header Referrer-Policy 'no-referrer'; client_body_buffer_size 128k; client_header_buffer_size 1m; client_max_body_size 0; default_type application/octet-stream; fastcgi_buffers 512 16k; fastcgi_max_temp_file_size 0; gzip on; gzip_min_length 1100; gzip_buffers 4 32k; gzip_types text/plain application/x-javascript text/xml text/css; include mime.types; keepalive_timeout 3600; large_client_header_buffers 4 64k; proxy_hide_header X-Powered-By; proxy_set_header Host $host; proxy_set_header If-Range $http_if_range; proxy_set_header Range $http_range; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_ssl_session_reuse on; real_ip_header X-Forwarded-For; real_ip_recursive on; sendfile on; server_names_hash_bucket_size 64; set_real_ip_from 127.0.0.1; set_real_ip_from <THE IP OF YOUR REVERSE PROXY JAIL GOES HERE>; ssl_certificate /<PATH TO YOUR CERT>/fullchain.pem; ssl_certificate_key /<PATH TO YOUR CERT>/privkey.pem; ssl_ciphers 'EECDH+AESGCM:EDH+AESGCM:AES256+EECDH:AES256+EDH'; ssl_prefer_server_ciphers on; ssl_protocols TLSv1.3 TLSv1.2; ssl_session_cache shared:SSL:10m; ssl_session_timeout 60m; tcp_nodelay on; tcp_nopush on; server { listen 443 ssl; add_header Referrer-Policy 'no-referrer'; add_header X-Frame-Options "SAMEORIGIN" always; server_name <SOME RESOLVABLE DOMAIN NAME>; location / { proxy_pass https://<IP TO YOUR EMBY JAIL>:8920; proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "upgrade"; } } }
  9. dhenzler

    https:// access on public Internet

    Is there a particular Nginx download I should use? I can use sub-domains of existing registered domains yes? I wish to use openssl to create my self signed certificate & key If I don't want to use a sub-domain, can I use the public IP for my Internet and port number?
  10. dhenzler

    https:// access on public Internet

    will this work ? server { listen 80; server_name media.yourdomain.com media.int.yourdomain.com ; root /var/www/html; return 301 https://$server_name$request_uri; } server { listen 443 ssl; server_name media.yourdomain.com media.int.yourdomain.com ; if ($host !~ ^media(\.int)?\.yourdomain\.com$) { return 444; } root /var/www/html/emby; ssl_certificate /etc/letsencrypt/live/media.yourdomain.com/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/media.yourdomain.com/privkey.pem; error_page 502 @502; error_page 503 @503; location = / { return 301 https://$server_name/web/index.html; } location / { try_files $uri $uri/ @backend; } location @backend { proxy_pass http://127.0.0.1:5200; # Allow WebSocket connections via HTTP 201 proxy_http_version 1.1; proxy_set_header Upgrade $http_upgrade; proxy_set_header Connection "upgrade"; proxy_set_header X-Forwarded-Host $host; proxy_set_header X-Forwarded-Server $host; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Real-IP $remote_addr; proxy_redirect off; } location @502 { try_files /unavailable.html =502; } location @503 { try_files /unavailable.html =503; } }
  11. bdoserror

    Latest build for obsolete hardware?

    Answered my own question. Downloaded the Intel/AMD 64-bit build and installed it. I guess I should've checked my specs properly first.
  12. bdoserror

    Latest build for obsolete hardware?

    Sorry, my mistake, apparently it uses 64 bit instructions, according to this Intel page, as it says it has a D2701 processor. Does that mean I can use the generic Intel/AMD 64-bit build from here?
  13. Today
  14. dhenzler

    https:// access on public Internet

    Thank you for the ideas. I try to steer clear of services that cost money or that are provided by others. They seem to come and go. As well as change... requiring me to change as well. I don't know how to configure reverse proxy. And I have ZERO knowledge of Emby's server system. Seems to be a Windows IIS server of some sort. I see lots of dll's My confort zone is Linux & Unix. My system is built in a BSD 12.2 jail on TrueNAS-12.0-U6.1 I'd need some hand holding to get through a configuration to use Nginx reverse proxy... are you willing to provide some assist ? Obviously the Emby server runs on port 80. How to get openssl to configure with it is a question I've had. I like to use self-signed certs because I build and destroy stuff on whim. Know how that works with FAMP server Thanks again for the suggestions... Any GitHub scripts that will do what I need? Dave
  15. bacardi8

    Change owner of server, start new server on new system

    Hi Cayars, Since that I'm still waiting on some parts for my server, I spend some more time to read about all different suggestions from you. I have decided to go for the Garuda Linux OS on my new server. After this decision I have been reading all that I can find around the internet about that, and since im new to linux and to btrfs file system this of course brings up a lot of new questions. Specially about the BTRFS system and the setup of this. So I would like to ask you, as specialist, some of my questions and some of my own thinking. I'm a little confused about how to start the BTRFS setup, so my questions is related to that and to how I actually would like the server to act if finished. Should the btrfs system be installed on the system disc only at the first setup, or should it include all available disc's on the server from the start..??, and then later setup different raids..?? What I have in mind and what I have available of hard drives is as following : 1 X Samsung 970 EVO Plus M.2 NVME 250GB (System disc for operating system) 3 X WD Red Plus 14TB (Storage for all Media) - These 3 drives will be the main tank/pool and will hold all media for Emby and Plex, could run in Raid 5, and must be visible and available on my Windows machine. 1 X WD Red 4TB (Temporarily Working Disc). - This drive will act as temporarily location for files that myself and others can download from. We are not talking about creating additional users, but file-station alike. Means if a friend is asking for a movie or a music album, I will put these here and send them a download link or give permission to let others download these files. This drive don't need any safety or backup. 3 X WD Blue SSD's 1TB (Backup and Metadata location). - Disc 1 could be for full system backup and snapshots (if that is possible and give any advantage). - Disc 2 & 3 could hold all metadata from Emby and Plex and run in Raid 1 (if that is possible and give any advantage). must be visible and available on my Windows machine. All this is just my thinking, I don't know if and how it would be possible, and I also don't know if this is a good way to go. I would like to hear what and how you think about it all.
  16. chef

    HELP I HAVE BEEN HACKED

    After I was hacked I purchased some okay networking equipment. Especially since I had forward facing services running. I decided on Ubiquity. It isn't top of the line but it allows me to see what kind of attacks on my domain/network are. They are stopped by either the Firewall router, or Sophos if the attack gets through to my server. But I get attacked everyday. Sometimes a lot, and sometimes a little... but everyday.
  17. 1tonsilla

    Home assistant & Emby integration

    I was confused before and I thought Emby( https://www.home-assistant.io/integrations/emby/) needed to be installed manually. Now I know that as long as the ‘configuration.yaml’ is configured, the emby entity can be found in the Developer Tools. Thank you so much!
  18. AndrewDub2044

    Access Synology with VPN enabled

    Sweet man! Definitely gonna need a lesson on that. I'm a rookie here lol. But got my massive movies and tv collection building.
  19. Without looking at the log, this sounds like a cert issue. Are you using a LetsEncrypt certificate by any chance on the server? If so, search the LG forum for ZeroSSL as that has been the solution for most users with this issue.
  20. AlsoBrian

    H.265 Playback Issue

    Here's me getting playback errors on the same device that acts as the server embyserver.txt
  21. RanmaCanada

    HELP I HAVE BEEN HACKED

    The other potential vector could also have been a compromised router. I recently had to replace a few friends' routers on their businesses as they were being DDOS'd with attempts to log into them, all were older DLINK routers. It was so bad that their internet refused to work, and ISP support said "not our problem, internet is working". I ended up replacing their routers with high end ASUS routers, and the problem vanished instantly. List most knowledgeable people I do any "sketchy" stuff off my main network, or isolate in a sandbox. I have a router setup specifically out of subnet range so it can not see anything on my main network, just in case. Crytpo locker sucks, and sadly I've seen this hundreds of times, and really, if they want in, there ain't much you can do to stop them. We had an entire province's hospitals in Canada taken down by it just recently. As others have said, replace/wipe/reload. It's horrible that this has happened and it is my biggest nightmare.
  22. nyplayer

    Parse XML from Channels DVR ....

    This appears to have been added to XML ... Also Silicondust added it to their XML <episode-num system="xmltv_ns">24.55.</episode-num>
  23. Thanks for posting this, I'm in the process of migrating from PleX and couldn't figure out what was going on. Using &amp; fixes it.
  24. The Android 3.2.24 version that @ebr asked me to side load to test. I checked afterwards and saw where Google says that version isn't compatible with Google TV, so I figured that was why it wasn't working correctly. I went back to the Android TV version and music plays fine, it's just that the integration system settings and ambient mode isn't working, as I mentioned previously. Apparently going forward all new devices from Google will be using the Google TV interface: https://www.tomsguide.com/face-off/google-tv-vs-android-tv
  25. AlsoBrian

    H.265 Playback Issue

    Thanks for the quick reply. Took me a second to recreate it. Seemed to be working better this morning. This time it's doing it on the newer TV, too.embyserver.txtembyserver.txt Last time I was able to see that the video pre-loaded via a little red bar on the ios app (I imagine that's what that is), but this time I cannot tell. It's being properly read as HEVC this time.
  26. cayars

    HELP I HAVE BEEN HACKED

    The remote control program I'm using now is custom and uses public/private keys and if the keys don't match you won't even get a chance to login over SSH. It's "not installed" either but runs "in session". What is this a backup off? Is it your NAS as well as your PC? If so I'd do a restore and immediately disconnect your computers from each other and let each scan itself. BTW, did you check to see if the Synology renamed files were intact just renamed? In other words were the text files still there and your movies as well just with a messed up name? If so and if you are using btrfs file system you should be able to undue that. I'll write a bit more in a few minutes on proactive things to do once you get things restored and operational. BTW, how much were they asking for via bitcoins?
  1. Load more activity
×
×
  • Create New...