this post was submitted on 20 Aug 2024
45 points (94.1% liked)

Selfhosted

60887 readers
816 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

192.168.x.x:1500

So I have a small local server running a website. It's not public facing at all, has a static IP address on my WiFi LAN and can be accessed by any Linux machine. I can't see it on any iPhone or Android device though

I've looked up tutorials on line, ensured my firewalls allow local sharing on the WiFi, double checked I can even ping the server successfully with nmap on Android

Any tips?

::edit:: typo in post, not when searching for IP on LAN

all 45 comments
sorted by: hot top controversial new old
[–] hungover_pilot@lemmy.world 23 points 2 years ago

Are you sure you are typing the address in correctly on android/ios? 198.162.x.x isnt part of private IP space.

[–] bjoern_tantau@swg-empire.de 17 points 2 years ago

Have you tried different browsers? You should also enter the full URL sometimes they're a bit stupid nowadays. So http://192.168.x.x:1500/

Maybe the browsers bring their own VPN. Some process all traffic to make it more "mobile friendly". Or they have some other kind of proxy.

[–] Finadil@lemmy.world 14 points 2 years ago (1 children)

Also check to make sure the mobile browsers aren't set to HTTPS only, or at least have an exception for that ip. I've seen that before several times.

[–] undefined@links.hackliberty.org 5 points 2 years ago

I’d curl from a machine on the same WiFi network as the phones just to confirm that HTTP is working. That way you’re not dependent on browsers that can be more finicky for debugging.

[–] SergeantSushi@lemmy.world 12 points 2 years ago (1 children)

Some possibilities:

  1. WiFi has host isolation is enabled
  2. The network you're connecting from is a guest wifi network
  3. You configured a firewall rule to isolate WiFi from LAN
  4. VLAN is enabled
[–] jet@hackertalks.com 9 points 2 years ago (3 children)

Are your phones on the same network? Same vlan? Firewall rules? VPN?

Does tcpdump on the server see the request?

[–] jet@hackertalks.com 7 points 2 years ago* (last edited 2 years ago) (1 children)

I get a lot of downvotes. I realize I say things that can be divisive. Why are people downvoting debugging steps? What's divisive about that....

[–] catloaf@lemm.ee 11 points 2 years ago (1 children)

Don't worry about downvotes.

[–] jet@hackertalks.com 4 points 2 years ago (4 children)

I'm just trying to understand the rational. To me I downvote when the comment is against the community, or unproductive.

If I'm being a net negative I should know why! Usually I have a guess as to why, but when I don't, I reach out so I can understand better. I do want lemmy to be a better place, so feedback is useful.

[–] catloaf@lemm.ee 11 points 2 years ago

When there's only a few, it's basically just statistical noise. Some people downvote anything. Some people just have fat fingers and missed the upvote button.

[–] qjkxbmwvz@startrek.website 2 points 2 years ago

Some mobile clients make it easy to accidentally downvote. I sometimes see that I accidentally downvoted a comment from time to time.

[–] sunzu2@thebrainbin.org -4 points 2 years ago

If you say controversial shit outside of tech, mentally I'll will follow you around downvoting.

So you will see all of your post have a few downvotes.

If it is just this one time, it is likely an anaomaly.

Edit: BTW tcp dump is a nice trick, so you deff added to the discourse here IMHO

Many people learn Linux and networking from these threads where idea are flying around. So deff don't stop lol

[–] RootBeerGuy@discuss.tchncs.de 3 points 2 years ago (1 children)

Yeah, if phones go via WiFi and the computer is on a cable the IP ranges may differ and that would explain you can access only via one of the two.

[–] Deckweiss@lemmy.world 7 points 2 years ago

I had some similar symptoms on a Fritzbox router, because by default the devices connected over wifi were unable to communicate with those connected by cable. Some routers also had this setting for the different wifi bands, 2.4G & 5G.

But I don't think you'd be able to ping it if this were the case.

Check yoyr router settings anyway, maybe you'll find something there.

[–] manuel2258@lemy.lol 6 points 2 years ago (1 children)

Disable your mobile network and try again. I had the very similar issue where it would always fallback to the mobile network for local IPs although WiFi was connected and in the same subnet

[–] bizdelnick@lemmy.ml 6 points 2 years ago (1 children)

What error you get exactly?

[–] possiblylinux127@lemmy.zip 6 points 2 years ago

My guess is that you are making a typo. Like others have said 192.162.x.x is a public IP. You probably want something like 192.168.x.x which probably is more like 192.168.1.1/24 with the last 1 being its own number

[–] Agility0971@lemmy.world 5 points 2 years ago* (last edited 2 years ago) (1 children)
  1. network interface - check
  2. dns - not applicable
  3. firewall - check
  4. ping - check
  5. navigating to the web site - fail

There are two causes here. Either server fucks it self over or the client fucks itself over. For server check logs, for client: check spelling, specify full protocol and try different browser to pinpoint the problem. It would be great to see the full ip address output from 'ip -c a' on both client and server.

[–] atzanteol@sh.itjust.works 3 points 2 years ago (1 children)

Dunnon about iOS but some Android phones have a "network protection" config which uses a Google VPN, so it tends to block viewing the local network.

[–] qjkxbmwvz@startrek.website 3 points 2 years ago

Any chance you have a DMZ set up on your router?

On your router, are there any settings specific to any host (other than the server maybe)? For example, a static IP or a port forwarded rule.

Do you have a VPN on the phones? Can you traceroute from your phone to the server and post that? (I like PingTools for Android.) You should have 1 hop (you -> server, nothing in between).

Can you verify that you are on the same wifi including same wifi channel? Phone on 5GHz but Linux box on 2.4GHz, for example.

[–] Shimitar@feddit.it 2 points 2 years ago (1 children)

I have a very similar issue. Seems like Android will bypass your DNS resolver and thus cannot resolve your local names.

I have my home services on "home.my domain.com" accessible from outside and re-mapped to "192.168.0.1" (my internal server IP) at home, and all PCs can access it while all android phones can only resolve to the public IP.

I feel it's something related to DoT or similar but haven't yet dig in that.

[–] shrugs@lemmy.world 1 points 2 years ago

might be your smartphone browser/system is using some kind of proxy. this could explain that you are able to ping, but the browser shows access denied. if no log entries are generated on the server when trying to access it via browser, it has to be something on client side or inbetween. on grapheneOS check: Settings - Network and Internet - Internet - Wifi-Settings - choose edit at top right - then advanced. If proxy is not set to none, change it and test again.

If this still doesn't help, my last bet is some kind of duplicate IP

[–] theduce@lemmy.world 1 points 2 years ago (1 children)

Did you ever figure this out???

[–] Decronym@lemmy.decronym.xyz 1 points 2 years ago* (last edited 2 years ago)

Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I've seen in this thread:

Fewer Letters More Letters
DNS Domain Name Service/System
HTTP Hypertext Transfer Protocol, the Web
HTTPS HTTP over SSL
IP Internet Protocol
SSL Secure Sockets Layer, for transparent encryption
VPN Virtual Private Network

5 acronyms in this thread; the most compressed thread commented on today has 13 acronyms.

[Thread #928 for this sub, first seen 20th Aug 2024, 15:45] [FAQ] [Full list] [Contact] [Source code]