kasken wellborn rainey

0 views
Skip to first unread message

Nichele Seibel

unread,
Aug 2, 2024, 5:55:34 AM8/2/24
to tidecalmors

On chromium, I suddenly started to get a "DNS_PROBE_FINISHED_NXDOMAIN" error. It worked fine yesterday
I also can't download things from One Drive and access live.com. live.com gives the same error as netflix.com.

I'd like to start by saying that I know that this question has been asked time, and time again. I have searched the forum at length and attempted many of the suggested solutions to the problem. The problem being:

Thank you for your response. I have seen that potential solution and have attempted to implement it. However, when I add my Rokus to the Skiplist it still will not allow netflix, slacker, and other online streaming services. Youtube works fine...

I am at a loss and have put in a separate router for the Roku network. My problem now, I cannot grant the router network access to the internet through the Sophos. My Lan is on 10.10.1.0. I added an IF for the router on 192.168.1.0 which in turn issues DHCP on its WiFi on 10.10.2.0

I started from scratch and reconfigured sophos with defaults as much as possible. One thing I noticed is tat I was not able to setup the WAN configuration in the setup wizard. No interfaces displayed for me (I have 5) so I had to manually do this after. Not sure if there any any automatic rules created in the wizard that I might be missing in the manual config.

I followed the Rulz #2... which in essence is not an issue right now as I am having a different problem altogether. I would like to describe it but feel I need to post this in a different category? It's a networking issue between ports on my firewall, and a router I am using as a WiFi AP. On my WiFi network I have no access to the LAN and Internet...

I'm up and running, and working just fine now. Not entirely certain as to what the issue was that prevented me from using the skiplist, however after a fresh UTM install and slight modification to my network config, Netflix and Slacker amongst others are running smoothly.

By any chance could you provide in generic formatting that you have set for the rules, and NAT, so that I and maybe other future people can look at them and be able to set them up for their devices on their UTM?

Also on a side note, I have a Samsung bluray player that will stream Netflix and a few others, But it fails to stream because it can't update the time. You can not set the Samsung as to what time server it uses, Why the player has to sync with network time to begin with is a little odd to me, but assume the streaming service wants your time close it theirs. Anyway, my older DVD player streams Netflix just fine. So if you have a Samsung BluRay player and it fails to stream any video content and the player gives you a message updating time, not sure what to do for it. Try streaming from the computer and see if through the web page of Netflix you can stream and watch movies. I run Ubuntu Linux and have no issues streaming Netflix. So if you are using some device other than a computer with web page access to the streaming service, try to see if it works from a computer via the web page, and then try trouble shooting from there.

Netflix doesn't work - error "NW-2-5" (network issues) - started about four or five days ago.
When the TV's DNS is manually set to 8.8.8.8 Netflix works, set back to 192.168.20.254 (pihole) it stops.
BUT Netflix works on ALL other devices that go through the Pihole...?? PC, phones, Xbox... they all work, except the TV.

OK here's something weird. To try and narrow down the issue a little I went to the blocklists page in the console and unchecked ALL the lists, planning to enable them one-by-one to see which one is doing it.

I am having the same exact issue but not only with Netflix but Disney Plus and Hulu. Main difference is every Netflix app on my network will not launch unless pointed to a outside DNS server. 4 Rokus, PS4, TVs and Bluray players. Doesn't matter if Pihole is enabled or not. I have also disabled all block lists just like you but still won't launch. Only way around it for me so far is with Cascading Routers. Have the pihole on the forward facing router and all devices on the back router. Set the back router DNS server to the IP of the forward router.

I have the same error code as you and just like you I have disabled pihole, and removed all blocklists. Netflix still wont launch but like I said the main difference is all of my devices are having issues.

Hm, interesting. I have an Asus RT-86U with Merlin, there was a Merlin update recently too. The Asus provides ethernet/wifi to the house, and gets its WAN from the router that was supplied by my telco.

But somehow, Netflix doesn't like talking to a DNS server that is not public, with the router being the only exception (as demonstrated by @JonnyB's router cascade). This is probably due to Netflix seeming to be excruciatingly rigorous at shutting out access via VPN or through a proxy.

Now, I don't have a Netflix account, an Asus Router or an LG TV, so the following paragraphs are kind of a blind shot attempt to apply a mildly related solution to a different problem. You have to decide whether it's worth a try.

When trying to fence my TV from leaving my home network in ways I didn't approve of, I ultimately resorted to putting it into a separate WLAN raised by a separate Zero W where all DNS traffic was forced to Pi-hole, regardless which DNS server my TV was using. To that end, I had to alter the Zero's prerouting table.

As far as I am aware of, Asus routers allow ssh login, so you could give that approach a try by extending your router's iptables. I won't post them, as there is an easier way in your case: You happen to run your router with Merlin, so you can set up DNS Filters.
From the UI, find LAN DNS Filter, switch "Enable DNS-based Filtering" to ON, and select "Router" from Global Filter Mode. Assuming you have defined Pi-hole as local DNS server via the DHCP settings, leave the custom entries blank.
(I am assuming Merlin's documentation as well as a corresponding screenshot are up to date)

Both approaches - iptables via ssh or DNS filters via UI - should produce the same result:
They force any(*) DNS traffic on your network to reroute through Pi-hole.
So when your TV requests to resolve api-global.netflix.com through Google's 8.8.8.8, your router will show that request friendly but firmly to your Pi-hole instead, while your TV thinks it is still talking to Google.

When I power on my PPM without a network connection, the date is set to 2006. This means that trying to play downloaded movies in Netflix gives an error. If I then connect to a network, the time is set correctly and the movies can be played.

I think maybe the Netflix app always tries to check some DRM related stuff to be able to play a file, and yes, it could be as simple as a date/time check online. But having a solution for the timekeeping would indeed be great.

Guys, there is no clock in our projector so there is no way to keep the time after reboot. We tried to implement something different with our engineer but failed.
The only way is to make the put the time in manual mode after reset

The role of Netflix Branded Content QC is to ensure the highest quality content is provided on service to our subscribers. We examine all delivered content and report back on any objective, technical issues that exist for correction and redelivery. It is our mission to continue to drive our brand as a source of premium level content that creates an experience that both encourages and retains customer subscription.

Audio Hiss impacts both the Content and Technical Quality of the asset. At best, audio hiss is distracting to the customer experience. At worst, it can make it difficult to hear or completely obscure the creatively intended dialogue/ music/ effects.

Audio Static impacts both the Content and Technical quality of the asset. Can either partially or completely obscure creatively intended dialogue/ music/ effects, impacting customer experience. Unintended signal noise or file corruption compromises the asset.

If dialogue is affected, replace with either alternate production audio or ADR. If music/ effects are affected, replace with foley effects, room tone or clean music tracks. Check the M&E for the same issue, and redeliver M&E as well if necessary.

If dialogue is affected, replace with either alternate production audio or ADR. If effects tracks are affected, audio tick should be masked with foley effects or room tone. If music is affected, should consider replacing with clean music tracks.

Isolate audio tick, and perform a decrackle/ depop to remove. Keep in mind, this should not significantly alter the final mix. Check the M&E for the same issue, and redeliver M&E as well if necessary.

Make sure file is to Netflix spec with 1 second of black and silence at head and tail. Ensure that video and audio are matching lengths to verify that no extraneous edits were introduced into the audio.

Hum impacts the Content Quality of the asset. Can either partially or completely obscure creatively intended dialogue/ music/ effects, impacting customer experience. Unintended signal noise also compromises the asset.

Isolate and eliminate noise caused by a ground loop in an audio circuit with ground loop isolators. This ensures that the shield ground on each audio cable is isolated from any equipment ground, which could cause extraneous noise when amplified.

Isolate pop and add a 3-4 frame constant power fade to smooth out the anomaly. Keep in mind, this should not significantly alter the final mix. Check the M&E for the same issue, and redeliver M&E as well if necessary.

Audio edits must be reconfigured to make them more seamless, minimizing any abrupt changes in level/ sound quality compared to the rest of the scene. Check the M&E for the same issue, and redeliver M&E as well if necessary.

Missing audio treatment impacts the content quality of an asset. Audio does not match on-screen visual cues or primary audio source. Secondary language dubs sourced from M&E with missing audio treatments will also be missing the required audio treatments and thus, will not match the primary audio source.

90f70e40cf
Reply all
Reply to author
Forward
0 new messages