Skip to main content

I’ve got a new Synology NAS and trying to connect Sonos to the music folder on it. I’ve enabled SMBv1 and tried everything else that I’ve read in the Sonos community and Synology knowledge base. (I used a WD NAS for years with Sonos, BTW)

I’m using a Mac and the path to the music folder is:

//NASsynology/Volume 1/for sonos

(I’ve tried creating a separate folder just called “sonos” thinking maybe it doesn’t like the space in the name; also tried removing the “Volume 1” from the path and/or taking the space out and just calling it “volume1” which is how the name appears sometimes in Synology; also tried the IP address in place of the “NASsynology”...all with no luck)

 

I’m getting an access denied error (telling me to check the ID/password) when using the Synology user-ID/password, as well as when I just skip the ID/password step and just leave it blank.

 

Thanks for any help!

 

 

 

 

Ha ha ha… you’re “sure”… Just how sure are you?

 

I'm pretty sure that for some it's hard to accept reality.


 

Sonos has at least two options to correct this misbehavior. One of them is without expense - the “No cost to Sonos option”. The other one is to update their software and firmware like an honest and responsible business should do.

  1. Release the firmware - post it on GitHub (etc), under the same license terms as they got for the Linux kernel they used. (That they haven’t done this years ago may be a violation of their license for the kernel code).
  2. Fix this insecure software. Sonos could yet salvage some of their reputation as a fair and honest company.

Sonos has released a lot of their software as is required by the GPL License it carries. You can download it from their open source pages.

If you can get the kernel to compile, with SMB 3 support active, and fit the memory footprint of the S1 devices, I’m sure they would be willing to pay you well for a copy of your code.

Ha ha ha… you’re “sure”… Just how sure are you?

 


 

Sonos has at least two options to correct this misbehavior. One of them is without expense - the “No cost to Sonos option”. The other one is to update their software and firmware like an honest and responsible business should do.

  1. Release the firmware - post it on GitHub (etc), under the same license terms as they got for the Linux kernel they used. (That they haven’t done this years ago may be a violation of their license for the kernel code).
  2. Fix this insecure software. Sonos could yet salvage some of their reputation as a fair and honest company.

Sonos has released a lot of their software as is required by the GPL License it carries. You can download it from their open source pages.

If you can get the kernel to compile, with SMB 3 support active, and fit the memory footprint of the S1 devices, I’m sure they would be willing to pay you well for a copy of your code.


It simply isn’t gonna happen, it’s S1, it’s “dead”.

You’re probably correct… “liars gonna’ lie” as they say.  The voting patterns here suggest this forum has a majority population of Sonos supporters, and I’ll guess you’re one. That’s fine - I used to be one. I think the biggest difference between us on this subject is that I won’t continue to pay Sonos for abuse. I can’t control Sonos, but I do control who I spend $ with, and what I tell others about “the Sonos experience”  :)

I’m not a supporter, I’m simply realistic. It happens all the time that tech gets dropped and for these old devices I can’t even blame anyone. I mean the players still work as they did on day one (with loads of added features over time) so I don’t see any abuse or whatever here. You just don’t get new features which I think is ok as long as the players continue to work. 


Just another Sonos fanboy here, but out of curiosity... 

I have never seen anyone report on here, or on reddit, or anywhere else, that they have actually had a security breach as a result of this.  Anybody else seen anything?  I am not saying that means it cannot happen, I’m just curious.

This is never going to change, IMO, whether that’s right or wrong, or can’t or won’t.  I suspect it is can’t not won’t, but I don’t have the technical expertise to form an opinion.  I just don’t know why Sonos would not have done this if they could, and if they really believed it was critical.  Out of their own selfish interest, if for no other reason.


It simply isn’t gonna happen, it’s S1, it’s “dead”.

You’re probably correct… “liars gonna’ lie” as they say.  The voting patterns here suggest this forum has a majority population of Sonos supporters, and I’ll guess you’re one. That’s fine - I used to be one. I think the biggest difference between us on this subject is that I won’t continue to pay Sonos for abuse. I can’t control Sonos, but I do control who I spend $ with, and what I tell others about “the Sonos experience”  :)


It simply isn’t gonna happen, it’s S1, it’s “dead”.


It’s great to have a solution for the “Synology Problem”. But here’s the sad truth: It’s actually a “Sonos Problem”, and “Our Problem”! Why? The SMB v1 & NTLM v1 protocols are horribly weak, and increase our risks of being hacked. Synology’s DSM software gives you dire warnings, and advises against making the changes required to connect with Sonos. And the risk is not limited to “someone gets to listen to your music without permission”; the risk is that someone gets your credentials & exploits that to attack something important… keep anything important on your NAS? It’s now at greater risk!  Sonos has let us down in a huge way here because they will not upgrade the Sonos Controller!  We shouldn’t be at greater risk because I don’t want or need to replace 8 or 10 older Sonos speakers.

My understanding has been that the Linux Kernel used on the older S1 devices does not support a higher version of SMB and it’s not viable to change the kernel on the old hardware.. hence the need for the split to S2 System, plus the older devices we’re running out of memory/storage space.

The S2 products are the only way to achieve having the higher (more secure) version of SMB - what you’re asking for is not viable for Sonos to do due to the hardware limitation, much in the same way an old monochrome TV will not display colour via its screen .. its perhaps time to upgrade your devices if you want/need this feature, otherwise I would rely on your local network security/software to keep your NAS share safe and you can always opt to use the Plex service instead.

Ken: You have been mis-informed. Let’s have no more weak excuses or cover-ups, please. If you got this information from someone at Sonos, and no other supporting details were furnished, I think they are being disingenuous. The kernel may need to be patched, but that does not mean it must increase in size - it may even decrease! The Linux kernel contains tons of code that’s not required in the Sonos application. Most embedded applications (like Sonos) strip this code out. Why would someone want printer drivers in the SONOS-version of the Linux kernel?? Tailoring the Linux kernel to a specific application is a well-worn procedure. No doubt this was done as part of the original Sonos design. 

Wrt the security aspect of this, you may read along in this Wikipedia article if you want corroboration. The timeline for SMB versions is approximately as follows:

SMB v1: Microsoft marked SMB1 as deprecated in June 2013

SMB v2: The Linux kernel's CIFS client file system has SMB2 support since version 3.7. Linux 3.7 was  released on 10 Dec 2012.

SMB v3: On April 19, 2012, SMB v 2.2 was re-named as SMB 3

So this is not a new problem at all - is it? November 2009 is the date Sonos introduced the Play5, and it was discontinued on November 20, 2015. Halfway through their production cycle, Sonos knew that SMB 1 had been deprecated, and they knew SMB 2 was available for their Linux kernel. Yet, Sonos continued manufacturing these units for another 3 years. 

These facts, when combined with other recent decisions by Sonos, portrays a rather disturbing pattern. If all the facts are laid on the table, I’m sure that the Sonos firmware (incl. the Linux kernel) could be upgraded without breaching the physical limits on device memory. But Sonos will never do that: They are not interested in supporting their old customers unless they want to buy the new Sonos hardware. But here’s Sonos’ problem: Does anyone believe that if they buy new hardware today, they will be treated any differently in the future than the “Version 1” customers are being treated today?

Sonos has at least two options to correct this misbehavior. One of them is without expense - the “No cost to Sonos option”. The other one is to update their software and firmware like an honest and responsible business should do.

  1. Release the firmware - post it on GitHub (etc), under the same license terms as they got for the Linux kernel they used. (That they haven’t done this years ago may be a violation of their license for the kernel code).
  2. Fix this insecure software. Sonos could yet salvage some of their reputation as a fair and honest company.

I went with a cheap SMBv1 server on a Raspberry Pi, you can also use a Pi as a SMBv1 gateway to your real NAS so you don’t need two copies of your music.

The SMB situation on S1 is not going to change, you can read through the many, many past posts on just why it can’t.  Can’t not won’t.


Can you expand on using the Plex service instead? 

I have just lowered the security on a Synology NAS used for work projects, and I would prefer not to do that just to have the music folder be accessible to our Sonos Connect:amp — which is great hardware for our needs and in no need of replacement. 

Re: Plex Service on Sonos, see this link:

https://support.sonos.com/s/article/3405


I have just lowered the security on a Synology NAS used for work projects, and I would prefer not to do that just to have the music folder be accessible to our Sonos Connect:amp — which is great hardware for our needs and in no need of replacement. 

I’d just buy a cheap NAS that runs SMBv1 and has enough storage for your needs. Use that purely for Sonos, and you can up the security on your Synology NAS. If your music library is small enough, it might even fit on a USB stick to plug into your router.

No, it shouldn’t be necessary to do this, but it’s a lot cheaper than changing the Sonos kit.


My understanding has been that the Linux Kernel used on the older S1 devices does not support a higher version of SMB and it’s not viable to change the kernel on the old hardware.. hence the need for the split to S2 System, plus the older devices we’re running out of memory/storage space.

The S2 products are the only way to achieve having the higher (more secure) version of SMB - what you’re asking for is not viable for Sonos to do due to the hardware limitation, much in the same way an old monochrome TV will not display colour via its screen .. its perhaps time to upgrade your devices if you want/need this feature, otherwise I would rely on your local network security/software to keep your NAS share safe and you can always opt to use the Plex service instead.

Can you expand on using the Plex service instead? 

I have just lowered the security on a Synology NAS used for work projects, and I would prefer not to do that just to have the music folder be accessible to our Sonos Connect:amp — which is great hardware for our needs and in no need of replacement. 


It’s great to have a solution for the “Synology Problem”. But here’s the sad truth: It’s actually a “Sonos Problem”, and “Our Problem”! Why? The SMB v1 & NTLM v1 protocols are horribly weak, and increase our risks of being hacked. Synology’s DSM software gives you dire warnings, and advises against making the changes required to connect with Sonos. And the risk is not limited to “someone gets to listen to your music without permission”; the risk is that someone gets your credentials & exploits that to attack something important… keep anything important on your NAS? It’s now at greater risk!  Sonos has let us down in a huge way here because they will not upgrade the Sonos Controller!  We shouldn’t be at greater risk because I don’t want or need to replace 8 or 10 older Sonos speakers.

My understanding has been that the Linux Kernel used on the older S1 devices does not support a higher version of SMB and it’s not viable to change the kernel on the old hardware.. hence the need for the split to S2 System, plus the older devices we’re running out of memory/storage space.

The S2 products are the only way to achieve having the higher (more secure) version of SMB - what you’re asking for is not viable for Sonos to do due to the hardware limitation, much in the same way an old monochrome TV will not display colour via its screen .. its perhaps time to upgrade your devices if you want/need this feature, otherwise I would rely on your local network security/software to keep your NAS share safe and you can always opt to use the Plex service instead.


It’s great to have a solution for the “Synology Problem”. But here’s the sad truth: It’s actually a “Sonos Problem”, and “Our Problem”! Why? The SMB v1 & NTLM v1 protocols are horribly weak, and increase our risks of being hacked. Synology’s DSM software gives you dire warnings, and advises against making the changes required to connect with Sonos. And the risk is not limited to “someone gets to listen to your music without permission”; the risk is that someone gets your credentials & exploits that to attack something important… keep anything important on your NAS? It’s now at greater risk!  Sonos has let us down in a huge way here because they will not upgrade the Sonos Controller!  We shouldn’t be at greater risk because I don’t want or need to replace 8 or 10 older Sonos speakers.


Thank you for this, it has been bugging me for weeks trying to connect my new Synology NAS!!! Setting SMBv1 AND NTLMv1 did the trick.


Just as a reminder for others who come upon this thread. S1 still requires SMB v1. S2 now uses up to SMB v3.


Great info; thanks.

 

I’ve changed both SMB1 (ignoring the red warnings) and NTLMv1 settings.

Synology DS920+ music folders can now be seen by my two Sonos Connect S1. I didn’t need /share/ in the path name .

DSM 7.0.1-42218 update 2. Running Mediastation; might restart audiostation. 
 

Now just need to get the album art on my Samsung TV.
 

 


I have tried enabling SMB1 and NTLMv1, all against my better judgement, and I cannot connect to my Synology NAS since I updated it to DSM 7.0.1-42218. Any ideas?


I’ve been months without my music library - that NTLM1 was the thing I needed all along.

Thanks to all the posts above!

 


Good morning 

To enable NTLM Synology DSM v7 goto

File Services - Advanced Settings - Others (tab) - select ‘Enable NTLMv1 authentication’

This fixed my access deny issue.

Also make sure SMB1 is set as the ‘Minimum SMB Protocol’ on the ‘Advanced Settings’ page.

 

 

 


So good to see the old crew still doing their thing here. I have a question related to this I’m hoping that maybe the OP can help me with. I ran into the SMB problem today and made the adjustment that got me mostly there. Now I’m having a problem with the shares. I’m not sure how to resolve it.

My current setup is a MyBookLiveDuo that I’m going to be retiring… On that drive I have a folder called Music, then under there all my shares by genre: rock, jazz, country, etc. How do I do this on the Synology? I was able to create a music share, but I can’t access it without errors through Sonos. If I go \\DS01\Music that works, but then I can’t segregate by genre (because of that pesky 65K track limitation). 

Thank you.


Thank you Ken!  That did the trick.  That setting is buried in the Synology settings.  Probably for good reason.  Hope Sonos supports SMBv2 and v3 soon.

Hopefully that will happen in the not too distant future. See this link:

https://en.community.sonos.com/advanced-setups-229000/smb1-security-issue-lack-of-response-from-sonos-6860761?postid=16551779#post16551779


Thank you Ken!  That did the trick.  That setting is buried in the Synology settings.  Probably for good reason.  Hope Sonos supports SMBv2 and v3 soon.


I have a new Synology running DSM 7.0.1-42218g with no luck connecting my older SONOS system.  Set SMB v1 but have not seen any settings for NTMLv1.   Have PLEX installed and running but prefer to use the network share to my Sonos like I did with my previous Lacie NAS.

 

Now the error prompt advised access is denied.  I have that folder set up for a read write in the NAS File settings.  Any ideas? 

From other posts here (entirely at your own risk):

Goto the SMB settings under File Services, then Advanced, and then other.  There is a setting called enable NTLMv1 authentication.  Once you do, you will get a nasty warning message about potential vulnerabilities with this aging standard.  Continue and enable the setting and it should then work.


I have a new Synology running DSM 7.0.1-42218g with no luck connecting my older SONOS system.  Set SMB v1 but have not seen any settings for NTMLv1.   Have PLEX installed and running but prefer to use the network share to my Sonos like I did with my previous Lacie NAS.

 

Now the error prompt advised access is denied.  I have that folder set up for a read write in the NAS File settings.  Any ideas?