Jump to content

I moved and now I can't access my WAN emby server


Recommended Posts

drpickles
Posted

First off, I'm sorry if this has been answered 15,000 times but I am at a loss. I moved recently and before I moved I could sign into my emby server outside of my LAN. After moving, my LAN server still works but I can no longer access my server via WAN. My server is on a Windows computer with the LAN IP reserved on the DHCP list on my router and is port forwarded . I know that my WAN IP has changed but I didn't think that would affect anything. Any help is greatly appreciated!!!

drpickles
Posted
10 minutes ago, darkassassin07 said:

I don't think that is the case. The only thing that has changed is my WAN IP address which is not in any private address ranges and correlates with the area I now live in.

darkassassin07
Posted

https://whatismyipaddress.com/

Does the IP displayed here, match the WAN IP shown in your routers management page? If not, there's something in between, typically cgnat.

https://portchecker.co/check-v0

If the IPs do match, does this show the port you want as open? (8096, 443, or whichever you've chosen)

If not; there's likely a misconfigured port forward (Could be the LAN IP isn't actually static like you expect; some devices spoof their MAC by default, and this can annoyingly change with updates.) or potentially your ISP is blocking the port you want. (I can't host on port 80 for example, doesn't get past the ISP)

  • Agree 1
drpickles
Posted
12 hours ago, darkassassin07 said:

https://whatismyipaddress.com/

Does the IP displayed here, match the WAN IP shown in your routers management page? If not, there's something in between, typically cgnat.

https://portchecker.co/check-v0

If the IPs do match, does this show the port you want as open? (8096, 443, or whichever you've chosen)

If not; there's likely a misconfigured port forward (Could be the LAN IP isn't actually static like you expect; some devices spoof their MAC by default, and this can annoyingly change with updates.) or potentially your ISP is blocking the port you want. (I can't host on port 80 for example, doesn't get past the ISP)

The IP matches the WAN IP for my emby server so I don't think it's a CGNAT. The Port checker says my WAN IP port is closed though so there's something wrong with that. I tried assigning a different port to the WAN IP server and forwarded that in my Router but that didn't work either. I tried assigning and forwarding 3 different ports but they all say it's closed. I don't know how to proceed.

Q-Droid
Posted

Make sure it matches the WAN IP of your router, not your server. This is because the server is getting the same information you did from the site. You want to make sure the WAN interface on your router also has the same IP. Otherwise it's double-NAT or CGNAT.

 

 

  • Agree 1
drpickles
Posted (edited)
18 minutes ago, Q-Droid said:

Make sure it matches the WAN IP of your router, not your server. This is because the server is getting the same information you did from the site. You want to make sure the WAN interface on your router also has the same IP. Otherwise it's double-NAT or CGNAT.

 

 

I'm not sure if this is what you mean but when I look at my router management page and locate my device hosting my emby server, it has the same WAN IP as the IP checker whether it is checked from my computer or from the device itself.

Edit: it does not have the WAN IP but the LAN IP on my router management page. Hang on I'm trying to figure things out.

Edited by drpickles
drpickles
Posted

I'm not sure if any of this will help indicate my issue.

Screenshot 2026-02-25 104007.png

Screenshot 2026-02-25 104039.png

Screenshot 2026-02-25 104112.PNG

darkassassin07
Posted
16 minutes ago, drpickles said:

I'm not sure if any of this will help indicate my issue.

Screenshot 2026-02-25 104007.png

Screenshot 2026-02-25 104039.png

Screenshot 2026-02-25 104112.PNG

In the first image, it appears you are forwarding port 49494 to your WAN IP, this should be the servers LAN IP. You are also forwarding 8096 to your servers LAN IP, which directly exposes the HTTP port to the internet. Not a good idea generally, though this should at least show port 8096 as open in the port checking tool I provided earlier. (check if that's true. If not, again I suspect either cgnat or isp blocking)

 

The second image looks like a filter list; defined by name. But the forwards above them are set to 'allow all', not referencing those filter names. (you shouldn't need filters unless you're trying to restrict connectionw to a specific remote IP, just ignore the filters for now)

 

Based on the port 49494 in the third image, I assume you have a reverse proxy on that port, handling HTTPS and proxying to 8096? Is the proxy running and correctly accepting connections on its lan ip+port?

 

 

You still have not shown/said you found your WAN IP as your router sees it. Look for connection details for the WAN interface of your routers management page. Should be somewhere under 'status' or similar. An example from mine: status > wan

(you want the blue circle)

SmartSelect_20260225_091628_Samsungcapture.jpg.fa2ef4a64763a0d724b7f730454e134c.jpg

darkassassin07
Posted (edited)

That's the configuration for the WAN interface, but doesn't seem show the current connection status. Perhaps it's on the dashboard somewhere?

 

I hate ISP provided routers/gateways; they make things so difficult to find/configure sometimes. It's not just you, these things suck.

 

 

 

Did 8096 show up as open in the port check?

Edited by darkassassin07
drpickles
Posted
1 minute ago, darkassassin07 said:

That's the configuration for the WAN interface, but doesn't seem show the current connection status. Perhaps it's on the dashboard somewhere?

 

I hate ISP provided routers/gateways; they make things so difficult to find/configure sometimes. It's not just you, these things suck.

this?

Screenshot 2026-02-25 114753.png

darkassassin07
Posted

Screenshot2026-02-25114753.png.88927b31ae0d1ee627f40b86fdc3a18a.thumb.png.e4f5c3f8a899b8772d1d0bc0cd70be09.png

Yup, your router is seeing this as your WAN ip. You are behind CGNAT and will have to look for a solution around that. You cannot forward ports.

 

I don't have a whole lot of advice for that as I've not had to deal with it myself.

 

I know cloudflare tunnels is a popular method, but hopefully someone else with experience there can chime in too.

 

@GrimReapermaybe?

  • Like 2
Neminem
Posted
8 minutes ago, darkassassin07 said:

Yup, your router is seeing this as your WAN ip. You are behind CGNAT and will have to look for a solution around that. You cannot forward ports.

 

I don't have a whole lot of advice for that as I've not had to deal with it myself.

@drpicklesI would call the ISP and ask for a Static IP ( It might cost you a few extra $ ) but well worth it.

  • Like 2
Neminem
Posted
44 minutes ago, darkassassin07 said:

SmartSelect_20260225_091628_Samsungcapture.jpg.fa2ef4a64763a0d724b7f730454e134c.jpg

Your router is do for a restart 😂🤣 been running for almost a year. 

  • Like 1
darkassassin07
Posted
1 minute ago, Neminem said:

Your router is do for a restart 😂🤣 been running for almost a year. 

Lol, I'm also running 6 year old firmware. I should probably get off my butt and do something about that... I just really don't like touching core infrastructure if it's working fine.

  • Haha 1
Neminem
Posted (edited)

🤣😂 I see your point 🤣😂

But there might be some security updates to the FW too.

Edit.

And as always with new FW, something breaks 🤷‍♂️

Edited by Neminem
  • Agree 1
GrimReaper
Posted
1 hour ago, darkassassin07 said:

Screenshot2026-02-25114753.png.88927b31ae0d1ee627f40b86fdc3a18a.thumb.png.e4f5c3f8a899b8772d1d0bc0cd70be09.png

Yup, your router is seeing this as your WAN ip. You are behind CGNAT and will have to look for a solution around that. You cannot forward ports.

 

I don't have a whole lot of advice for that as I've not had to deal with it myself.

 

I know cloudflare tunnels is a popular method, but hopefully someone else with experience there can chime in too.

 

@GrimReapermaybe?

 

51 minutes ago, Neminem said:

@drpicklesI would call the ISP and ask for a Static IP ( It might cost you a few extra $ ) but well worth it.

That would be most hassle-free/streamlined solution.

Otherwise, something like Tailscale, ZeroTier or some other solution of OP's preference.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...