Server has OIDC active via Authelia. I am able to successfully log in with different users but when a book is requested to play, book does not play. have tested on both Android and iOS.
Android: Error displayed is "Playback Failed: Source error" v.10.1
iOS: no error displayed but play button keeps spinning as if buffering/loading book v.10.1
Steps to Reproduce the Issue
attempt to play any file via app on OIDC enabled server with authelia acting as SSO.
What was Expected?
Book should stream to phone with no errors.
Phone Model
iPhone 13 mini, iPhone 16 Pro, Samsun S6 Lite Tablet
Phone OS
iOS 18.x, iOS26, Andriod 15
Audiobookshelf App Version
Android App - 0.10.1, iOS App - 0.10.1
Installation Source
Testflight
Additional Notes
checking authelia logs, it seems that after initial OIDC login, the app does not pass any OIDC authentication back and gets blocked from streaming content.
Can confirm app works when bypassing authelia on local IP address and can confirm web playback and 3rd party app 'plappa' works as expected.
Originally created by @Jon0032 on GitHub (Oct 23, 2025).
### I have verified that the [bug is not already awaiting release](https://github.com/advplyr/audiobookshelf-app/issues?q=is%3Aissue%20label%3A%22awaiting%20release%22)
Yes
### What was the Problem?
Server has OIDC active via Authelia. I am able to successfully log in with different users but when a book is requested to play, book does not play. have tested on both Android and iOS.
Android: Error displayed is "Playback Failed: Source error" v.10.1
iOS: no error displayed but play button keeps spinning as if buffering/loading book v.10.1
### Steps to Reproduce the Issue
1. attempt to play any file via app on OIDC enabled server with authelia acting as SSO.
### What was Expected?
Book should stream to phone with no errors.
### Phone Model
iPhone 13 mini, iPhone 16 Pro, Samsun S6 Lite Tablet
### Phone OS
iOS 18.x, iOS26, Andriod 15
### Audiobookshelf App Version
Android App - 0.10.1, iOS App - 0.10.1
### Installation Source
Testflight
### Additional Notes
checking authelia logs, it seems that after initial OIDC login, the app does not pass any OIDC authentication back and gets blocked from streaming content.
Can confirm app works when bypassing authelia on local IP address and can confirm web playback and 3rd party app 'plappa' works as expected.
Logs from authelia as follows:
time="2025-10-23T12:54:41Z" level=debug msg="Check authorization of subject username=Jon0032 groups=admin,audiobookshelf ip=170.64.132.24 and object https://abs.example.com/auth/openid/mobile-redirect?code=authelia_ac_41hmqKOLchtrQgUA0Rr5pL0K4d2feUZL6I7-QTAZn7I.lBEM9t6b-ezKFoettWxZzA0KzmJCOkACd0MTg9L8UHo&iss=https%3A%2F%2Fauth.example.com&scope=openid+profile+email&state=FhmAM1D6YL1dDOrRmvrvagVHe4nqlvhrvf-QE-57dxo (method GET)."
time="2025-10-23T12:54:42Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/auth/openid/callback?state=FhmAM1D6YL1dDOrRmvrvagVHe4nqlvhrvf-QE-57dxo&code=authelia_ac_41hmqKOLchtrQgUA0Rr5pL0K4d2feUZL6I7-QTAZn7I.lBEM9t6b-ezKFoettWxZzA0KzmJCOkACd0MTg9L8UHo&code_verifier=cd183ac1ab5dac2aa17125d2df840bfd45a04ed45fed9f92e2e7308c065b0df24bd23c51a51d76569ea8 (method GET)."
time="2025-10-23T12:54:42Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/authorize (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries/2ba089ee-00f9-4d83-b89f-5a9369261325/personalized?minified=1&include=rssfeed,numEpisodesIncomplete (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/socket.io/?EIO=4&transport=websocket (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries/2ba089ee-00f9-4d83-b89f-5a9369261325?include=filterdata (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/me (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/825f9c0f-a99c-447c-9eba-1c30ce911267/cover?ts=1751862535624 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/31780529-6c9f-4abf-bf9d-b29e234f5ac6/cover?ts=1751862615535 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/a7c0d085-e831-4ab5-8219-a1b77331b419/cover?ts=1751862569444 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/a54fa36a-3217-45cb-bd87-3c75b913d0ad/cover?ts=1751863509477 (method GET)."c47f16aafa62/cover (method GET)."
time="2025-10-23T12:54:47Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/public/session/0e17fba3-7cf1-4971-a9ef-051108cdc464/track/1 (method GET)."
time="2025-10-23T12:54:47Z" level=info msg="Access to https://abs.example.com/public/session/0e17fba3-7cf1-4971-a9ef-051108cdc464/track/1 (method GET) is not authorized to user <anonymous>, responding with status code 401" method=GET path=/api/verify remote_ip=170.64.132.24
time="2025-10-23T12:54:47Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/14c28300-7085-4698-8766-c47f16aafa62/play (method GET)."
time="2025-10-23T12:54:48Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/14c28300-7085-4698-8766-c47f16aafa62/cover (method GET)."
adam
added the bug label 2026-04-24 23:56:39 +02:00
Also I am not sure, but why do all requests are showing up in authelia? Authelia should have nothing to do with any of the reuqests
@Vito0912 commented on GitHub (Oct 23, 2025):
Please share the logs of ABS and the app itself.
Also I am not sure, but why do all requests are showing up in authelia? Authelia should have nothing to do with any of the reuqests
The ABS logs look fine. The transcoding should only happen for incompatible files, so you could check the files.
I don't know Authelia, but it looks like it acts as a RP here, so as long as Authelia is not blocking any requests it seems indeed something wrong with ABS serving the files or apps requesting the files. Is the web also impacted? It often is way easier to debug
@Vito0912 commented on GitHub (Oct 23, 2025):
The ABS logs look fine. The transcoding should only happen for incompatible files, so you could check the files.
I don't know Authelia, but it looks like it acts as a RP here, so as long as Authelia is not blocking any requests it seems indeed something wrong with ABS serving the files or apps requesting the files. Is the web also impacted? It often is way easier to debug
As mentioned in opening notes, web player and 3rd party plappa works. Server is does not seem like the issue as I am able to use server in multiple different methods and can even use the audiobook shelf app when I bypass authelia on a local address.
The reason I shared the authelia logs is that when commencing streaming playback from the app it is clear that app does not continue to provide the authentication data to validate itself against authelia unlike web player or plappa. First line of authelia logs shows me logging in which proves that app is able to authenticate via oidc but when further requests are made all information seems to be blank such as username and group which results in authelia blocking the app connection.
@Jon0032 commented on GitHub (Oct 23, 2025):
As mentioned in opening notes, web player and 3rd party plappa works. Server is does not seem like the issue as I am able to use server in multiple different methods and can even use the audiobook shelf app when I bypass authelia on a local address.
The reason I shared the authelia logs is that when commencing streaming playback from the app it is clear that app does not continue to provide the authentication data to validate itself against authelia unlike web player or plappa. First line of authelia logs shows me logging in which proves that app is able to authenticate via oidc but when further requests are made all information seems to be blank such as username and group which results in authelia blocking the app connection.
@Vito0912 commented on GitHub (Oct 23, 2025):
What do you mean by "does not continue to provide the authentication data"
The apps do not support any forward auth. So if you only allow traffic with an cookie or header set that won't work. If it's about forward auth I think you can close this issue se: https://github.com/advplyr/audiobookshelf-app/issues/1155#issuecomment-2031674669
yes this does seem to be a forward auth issue. for future reference for anyone who runs into this the authelia resources required to allow playback seem to be the below:
i seem to have been missing the hls resource specifically in my instance
@Jon0032 commented on GitHub (Oct 24, 2025):
yes this does seem to be a forward auth issue. for future reference for anyone who runs into this the authelia resources required to allow playback seem to be the below:
- "^/auth([/?].*)?$"
- "^/status([/?].*)?$"
- "^/socket.io([/?].*)?$"
- "^/ping.*$"
- "^/api([/?].*)?$"
- "^/public([/?].*)?$"
- "^/hls([/?].*)?$"
i seem to have been missing the hls resource specifically in my instance
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Originally created by @Jon0032 on GitHub (Oct 23, 2025).
I have verified that the bug is not already awaiting release
Yes
What was the Problem?
Server has OIDC active via Authelia. I am able to successfully log in with different users but when a book is requested to play, book does not play. have tested on both Android and iOS.
Android: Error displayed is "Playback Failed: Source error" v.10.1
iOS: no error displayed but play button keeps spinning as if buffering/loading book v.10.1
Steps to Reproduce the Issue
What was Expected?
Book should stream to phone with no errors.
Phone Model
iPhone 13 mini, iPhone 16 Pro, Samsun S6 Lite Tablet
Phone OS
iOS 18.x, iOS26, Andriod 15
Audiobookshelf App Version
Android App - 0.10.1, iOS App - 0.10.1
Installation Source
Testflight
Additional Notes
checking authelia logs, it seems that after initial OIDC login, the app does not pass any OIDC authentication back and gets blocked from streaming content.
Can confirm app works when bypassing authelia on local IP address and can confirm web playback and 3rd party app 'plappa' works as expected.
Logs from authelia as follows:
time="2025-10-23T12:54:41Z" level=debug msg="Check authorization of subject username=Jon0032 groups=admin,audiobookshelf ip=170.64.132.24 and object https://abs.example.com/auth/openid/mobile-redirect?code=authelia_ac_41hmqKOLchtrQgUA0Rr5pL0K4d2feUZL6I7-QTAZn7I.lBEM9t6b-ezKFoettWxZzA0KzmJCOkACd0MTg9L8UHo&iss=https%3A%2F%2Fauth.example.com&scope=openid+profile+email&state=FhmAM1D6YL1dDOrRmvrvagVHe4nqlvhrvf-QE-57dxo (method GET)."
time="2025-10-23T12:54:42Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/auth/openid/callback?state=FhmAM1D6YL1dDOrRmvrvagVHe4nqlvhrvf-QE-57dxo&code=authelia_ac_41hmqKOLchtrQgUA0Rr5pL0K4d2feUZL6I7-QTAZn7I.lBEM9t6b-ezKFoettWxZzA0KzmJCOkACd0MTg9L8UHo&code_verifier=cd183ac1ab5dac2aa17125d2df840bfd45a04ed45fed9f92e2e7308c065b0df24bd23c51a51d76569ea8 (method GET)."
time="2025-10-23T12:54:42Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/authorize (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries/2ba089ee-00f9-4d83-b89f-5a9369261325/personalized?minified=1&include=rssfeed,numEpisodesIncomplete (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/socket.io/?EIO=4&transport=websocket (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/libraries/2ba089ee-00f9-4d83-b89f-5a9369261325?include=filterdata (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/me (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/825f9c0f-a99c-447c-9eba-1c30ce911267/cover?ts=1751862535624 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/31780529-6c9f-4abf-bf9d-b29e234f5ac6/cover?ts=1751862615535 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/a7c0d085-e831-4ab5-8219-a1b77331b419/cover?ts=1751862569444 (method GET)."
time="2025-10-23T12:54:43Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/a54fa36a-3217-45cb-bd87-3c75b913d0ad/cover?ts=1751863509477 (method GET)."c47f16aafa62/cover (method GET)."
time="2025-10-23T12:54:47Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/public/session/0e17fba3-7cf1-4971-a9ef-051108cdc464/track/1 (method GET)."
time="2025-10-23T12:54:47Z" level=info msg="Access to https://abs.example.com/public/session/0e17fba3-7cf1-4971-a9ef-051108cdc464/track/1 (method GET) is not authorized to user , responding with status code 401" method=GET path=/api/verify remote_ip=170.64.132.24
time="2025-10-23T12:54:47Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/14c28300-7085-4698-8766-c47f16aafa62/play (method GET)."
time="2025-10-23T12:54:48Z" level=debug msg="Check authorization of subject username= groups= ip=170.64.132.24 and object https://abs.example.com/api/items/14c28300-7085-4698-8766-c47f16aafa62/cover (method GET)."
@Vito0912 commented on GitHub (Oct 23, 2025):
Please share the logs of ABS and the app itself.
Also I am not sure, but why do all requests are showing up in authelia? Authelia should have nothing to do with any of the reuqests
@Jon0032 commented on GitHub (Oct 23, 2025):
from what I gather authelia checks all traffic and and certifies if authentication has been established and allows or blocks according authentication.
ABS logs are included below. Note that while transcode is completed (iOS) play button remains in a "buffering" state (aka spinning circle)
essionManager] startSession: Closing open session "The Lies of Locke Lamora" for user "Jon0032" (Device: iPhone17,1 / v0.10.1)
[2025-10-24 00:11:18.493] INFO: [STREAM] START STREAM - Num Segments: 13571
[2025-10-24 00:11:18.500] INFO: [STREAM] Starting Stream at startTime 58:35 (User startTime 59:05) and Segment #585
[2025-10-24 00:11:18.509] INFO: [INFO] FFMPEG transcoding started with command: ffmpeg -seek_timestamp 1 -f concat -safe 0 -ss 3515.5s -noaccurate_seek -i /metadata/streams/e941f75c-0e50-42c7-ab9e-0eec06b18472/files.txt -y -loglevel error -map 0:a -c:a copy -f hls -copyts -avoid_negative_ts make_non_negative -max_delay 5000000 -max_muxing_queue_size 2048 -hls_time 6 -hls_segment_type mpegts -start_number 585 -hls_playlist_type vod -hls_list_size 0 -hls_allow_cache 0 -hls_segment_filename /metadata/streams/e941f75c-0e50-42c7-ab9e-0eec06b18472/output-%d.ts /metadata/streams/e941f75c-0e50-42c7-ab9e-0eec06b18472/final-output.m3u8
[2025-10-24 00:11:18.509] INFO:
[2025-10-24 00:11:20.512] INFO: [STREAM] e941f75c-0e50-42c7-ab9e-0eec06b18472 notifying client that stream is ready
[2025-10-24 00:11:20.515] INFO: [STREAM-CHECK] Check Files 40 of 13571 0.29% Furthest Segment: 624
[2025-10-24 00:11:22.526] INFO: [STREAM-CHECK] Check Files 216 of 13571 1.59% Furthest Segment: 800
[2025-10-24 00:11:24.534] INFO: [STREAM-CHECK] Check Files 374 of 13571 2.76% Furthest Segment: 958
[2025-10-24 00:11:26.516] INFO: [STREAM-CHECK] Check Files 549 of 13571 4.05% Furthest Segment: 1133
[2025-10-24 00:11:28.517] INFO: [STREAM-CHECK] Check Files 804 of 13571 5.92% Furthest Segment: 1388
[2025-10-24 00:11:30.517] INFO: [STREAM-CHECK] Check Files 1059 of 13571 7.80% Furthest Segment: 1643
[2025-10-24 00:11:32.519] INFO: [STREAM-CHECK] Check Files 1258 of 13571 9.27% Furthest Segment: 1842
[2025-10-24 00:11:34.522] INFO: [STREAM-CHECK] Check Files 1470 of 13571 10.83% Furthest Segment: 2054
[2025-10-24 00:11:36.546] INFO: [STREAM-CHECK] Check Files 1685 of 13571 12.42% Furthest Segment: 2269
[2025-10-24 00:11:38.521] INFO: [STREAM-CHECK] Check Files 1861 of 13571 13.71% Furthest Segment: 2445
[2025-10-24 00:11:40.522] INFO: [STREAM-CHECK] Check Files 2178 of 13571 16.05% Furthest Segment: 2762
[2025-10-24 00:11:42.523] INFO: [STREAM-CHECK] Check Files 2455 of 13571 18.09% Furthest Segment: 3039
[2025-10-24 00:11:44.525] INFO: [STREAM-CHECK] Check Files 2735 of 13571 20.15% Furthest Segment: 3319
[2025-10-24 00:11:46.532] INFO: [STREAM-CHECK] Check Files 3040 of 13571 22.40% Furthest Segment: 3624
[2025-10-24 00:11:48.570] INFO: [STREAM-CHECK] Check Files 3309 of 13571 24.38% Furthest Segment: 3893
[2025-10-24 00:11:50.531] INFO: [STREAM-CHECK] Check Files 3493 of 13571 25.74% Furthest Segment: 4077
[2025-10-24 00:11:52.553] INFO: [STREAM-CHECK] Check Files 3781 of 13571 27.86% Furthest Segment: 4365
[2025-10-24 00:11:54.532] INFO: [STREAM-CHECK] Check Files 4050 of 13571 29.84% Furthest Segment: 4634
[2025-10-24 00:11:56.538] INFO: [STREAM-CHECK] Check Files 4329 of 13571 31.90% Furthest Segment: 4913
[2025-10-24 00:11:58.539] INFO: [STREAM-CHECK] Check Files 4628 of 13571 34.10% Furthest Segment: 5212
[2025-10-24 00:12:00.570] INFO: [STREAM-CHECK] Check Files 4899 of 13571 36.10% Furthest Segment: 5483
[2025-10-24 00:12:02.539] INFO: [STREAM-CHECK] Check Files 5054 of 13571 37.24% Furthest Segment: 5638
[2025-10-24 00:12:04.562] INFO: [STREAM-CHECK] Check Files 5275 of 13571 38.87% Furthest Segment: 5859
[2025-10-24 00:12:06.542] INFO: [STREAM-CHECK] Check Files 5487 of 13571 40.43% Furthest Segment: 6071
[2025-10-24 00:12:08.571] INFO: [STREAM-CHECK] Check Files 5675 of 13571 41.82% Furthest Segment: 6259
[2025-10-24 00:12:10.573] INFO: [STREAM-CHECK] Check Files 5867 of 13571 43.23% Furthest Segment: 6451
[2025-10-24 00:12:12.570] INFO: [STREAM-CHECK] Check Files 6063 of 13571 44.68% Furthest Segment: 6647
[2025-10-24 00:12:14.650] INFO: [STREAM-CHECK] Check Files 6211 of 13571 45.77% Furthest Segment: 6795
[2025-10-24 00:12:16.575] INFO: [STREAM-CHECK] Check Files 6421 of 13571 47.31% Furthest Segment: 7005
[2025-10-24 00:12:18.581] INFO: [STREAM-CHECK] Check Files 6634 of 13571 48.88% Furthest Segment: 7218
[2025-10-24 00:12:20.563] INFO: [STREAM-CHECK] Check Files 6831 of 13571 50.34% Furthest Segment: 7415
[2025-10-24 00:12:22.562] INFO: [STREAM-CHECK] Check Files 7042 of 13571 51.89% Furthest Segment: 7626
[2025-10-24 00:12:24.572] INFO: [STREAM-CHECK] Check Files 7243 of 13571 53.37% Furthest Segment: 7827
[2025-10-24 00:12:26.572] INFO: [STREAM-CHECK] Check Files 7385 of 13571 54.42% Furthest Segment: 7969
[2025-10-24 00:12:28.569] INFO: [STREAM-CHECK] Check Files 7602 of 13571 56.02% Furthest Segment: 8186
[2025-10-24 00:12:30.571] INFO: [STREAM-CHECK] Check Files 7805 of 13571 57.51% Furthest Segment: 8389
[2025-10-24 00:12:32.575] INFO: [STREAM-CHECK] Check Files 7965 of 13571 58.69% Furthest Segment: 8549
[2025-10-24 00:12:34.574] INFO: [STREAM-CHECK] Check Files 8125 of 13571 59.87% Furthest Segment: 8709
[2025-10-24 00:12:36.577] INFO: [STREAM-CHECK] Check Files 8419 of 13571 62.04% Furthest Segment: 9003
[2025-10-24 00:12:38.574] INFO: [STREAM-CHECK] Check Files 8613 of 13571 63.47% Furthest Segment: 9197
[2025-10-24 00:12:40.573] INFO: [STREAM-CHECK] Check Files 8830 of 13571 65.07% Furthest Segment: 9414
[2025-10-24 00:12:42.580] INFO: [STREAM-CHECK] Check Files 9149 of 13571 67.42% Furthest Segment: 9733
[2025-10-24 00:12:44.589] INFO: [STREAM-CHECK] Check Files 9451 of 13571 69.64% Furthest Segment: 10035
[2025-10-24 00:12:46.578] INFO: [STREAM-CHECK] Check Files 9755 of 13571 71.88% Furthest Segment: 10339
[2025-10-24 00:12:48.649] INFO: [STREAM-CHECK] Check Files 9976 of 13571 73.51% Furthest Segment: 10560
[2025-10-24 00:12:50.584] INFO: [STREAM-CHECK] Check Files 10136 of 13571 74.69% Furthest Segment: 10720
[2025-10-24 00:12:52.586] INFO: [STREAM-CHECK] Check Files 10359 of 13571 76.33% Furthest Segment: 10943
[2025-10-24 00:12:54.634] INFO: [STREAM-CHECK] Check Files 10578 of 13571 77.95% Furthest Segment: 11162
[2025-10-24 00:12:56.600] INFO: [STREAM-CHECK] Check Files 10808 of 13571 79.64% Furthest Segment: 11392
[2025-10-24 00:12:58.589] INFO: [STREAM-CHECK] Check Files 11001 of 13571 81.06% Furthest Segment: 11585
[2025-10-24 00:13:00.595] INFO: [STREAM-CHECK] Check Files 11199 of 13571 82.52% Furthest Segment: 11783
[2025-10-24 00:13:02.585] INFO: [STREAM-CHECK] Check Files 11340 of 13571 83.56% Furthest Segment: 11924
[2025-10-24 00:13:04.593] INFO: [STREAM-CHECK] Check Files 11539 of 13571 85.03% Furthest Segment: 12123
[2025-10-24 00:13:06.603] INFO: [STREAM-CHECK] Check Files 11745 of 13571 86.54% Furthest Segment: 12329
[2025-10-24 00:13:08.587] INFO: [STREAM-CHECK] Check Files 11934 of 13571 87.94% Furthest Segment: 12518
[2025-10-24 00:13:10.674] INFO: [STREAM-CHECK] Check Files 12130 of 13571 89.38% Furthest Segment: 12714
[2025-10-24 00:13:12.607] INFO: [STREAM-CHECK] Check Files 12278 of 13571 90.47% Furthest Segment: 12862
[2025-10-24 00:13:14.610] INFO: [STREAM-CHECK] Check Files 12408 of 13571 91.43% Furthest Segment: 12992
[2025-10-24 00:13:16.590] INFO: [STREAM-CHECK] Check Files 12599 of 13571 92.84% Furthest Segment: 13183
[2025-10-24 00:13:18.606] INFO: [STREAM-CHECK] Check Files 12792 of 13571 94.26% Furthest Segment: 13376
[2025-10-24 00:13:20.600] INFO: [STREAM-CHECK] Check Files 12963 of 13571 95.52% Furthest Segment: 13547
@Vito0912 commented on GitHub (Oct 23, 2025):
The ABS logs look fine. The transcoding should only happen for incompatible files, so you could check the files.
I don't know Authelia, but it looks like it acts as a RP here, so as long as Authelia is not blocking any requests it seems indeed something wrong with ABS serving the files or apps requesting the files. Is the web also impacted? It often is way easier to debug
@Jon0032 commented on GitHub (Oct 23, 2025):
As mentioned in opening notes, web player and 3rd party plappa works. Server is does not seem like the issue as I am able to use server in multiple different methods and can even use the audiobook shelf app when I bypass authelia on a local address.
The reason I shared the authelia logs is that when commencing streaming playback from the app it is clear that app does not continue to provide the authentication data to validate itself against authelia unlike web player or plappa. First line of authelia logs shows me logging in which proves that app is able to authenticate via oidc but when further requests are made all information seems to be blank such as username and group which results in authelia blocking the app connection.
@Vito0912 commented on GitHub (Oct 23, 2025):
What do you mean by "does not continue to provide the authentication data"
The apps do not support any forward auth. So if you only allow traffic with an cookie or header set that won't work. If it's about forward auth I think you can close this issue se: https://github.com/advplyr/audiobookshelf-app/issues/1155#issuecomment-2031674669
@Jon0032 commented on GitHub (Oct 24, 2025):
yes this does seem to be a forward auth issue. for future reference for anyone who runs into this the authelia resources required to allow playback seem to be the below:
i seem to have been missing the hls resource specifically in my instance