• VMWare + pfsense + freeswitch = reliable shaping????

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Traffic shaping a corporate leased line.

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    D
    http://forum.pfsense.org/index.php/topic,11986.0.html
  • Youtube causing high delay on everything.

    Locked
    7
    0 Votes
    7 Posts
    6k Views
    A
    @TreeTopFlyer: Again, from my understanding, once the lower priority (downstream) traffic hits the pfSense box the packet is dropped (which would be correct), with no ACK back, and the packet is sent again thus flooding the downstream pipe again. If the sender is behaving appropriately, the sender would be naturally throttled just by the fact that it is waiting for the ACK.  Thus each packet that is dropped will delay the sender, and allow the higher priority packets to come through.
  • Queue bar length

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    5 Posts
    2k Views
    K
    EDIT: Traffic should not be limited on the LAN interface as its going in the LAN interface and OUT the LAN interface, correct? It shouldnt match any of my rules as they are all set with WAN in and LAN out or vice versa. ~~Im wondering how to get around this. Would it be possible to have the default rules and then assign a new queue which has 1gbps (possibly make it parent), assign all traffic originating from lan subnet destined to lan subnet to a queue that has 1gbps bandwidth? so: LANTOTAL (1gbps) parent  – qwanRoot 218kbps      -- children WANTOTAL (1gbps) parent  -- qlanRoot 1306kbps      -- children~~
  • MOVED: pfSense 2.0-BETA1: Unable to limit IPs in Penalty Box

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Errors (doesnt make sense)

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    L
    i got something similar. Whatever bandwidth queue you created, is too high and exceeds the sum of all the other queues, bring your queue down or adjust the other queue(s) to compensate for this new one.
  • Traffic shaper limits

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    K
    I've read the qos sticky and it does mention borrowing. Does anyone know if the default traffic wizard enables borrowing?
  • Traffic shaping for virtual servers and bandwidth share

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    L
    Dunno what to tell ya. I spent a good part of the night figuring this out. What I have down on paper looks like it would work, however actually implimenting it in PFSense seems trivial. They made it more complicated than it should be.
  • Block Local Ip by Real Time

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    L
    Your right! There is no other way unless there is a 3rd party plugin that gives you that option. The only thing you can do from the Status>DHCP screen is set a static DHCP mapping or WOL Mapping. You will have to manually set the rule in the MAC filtering.
  • Traffic shaping dependent on static DHCP leases.

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Bandwidth limit per IP

    Locked
    12
    0 Votes
    12 Posts
    23k Views
    W
    @nykollas: And for the LAN how can I make sure that they are not using manual IP addresses ? I am thinking to use static IP address for each user and create an aliass from their range, and have the firewall to pass the traffic with the bandwidth limit rules. And block everything else in case they are changing manualy their IPs. I hate those people also  :D you can use ipguard http://ipguard.deep.perm.ru/ By pkg_add -r ipguard it can bind ip address to mac and prevent (as much as it can) others from changing there ip's by adding mac-ip pair in file like this 00:11:22:33:44:55 192.168.1.2 00:44:55:66:77:88 192.168.1.6 actually idon't know why it hasn't been added to pfsense packages. if users can take any ip they want ,then all firewall configuration and traffic shaping is in vain.
  • Looking for Traffic Shaping Clarity.

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • MOVED: Traffic Shaper Wizard Question on the Beta 2.0 Release

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Traffic shaper issue with wireless bridged to lan

    Locked
    27
    0 Votes
    27 Posts
    10k Views
    X
    if u set wan to opt and opt to wan then that will work only till a restart. try switching to 2.0
  • Traffic Shaper Drops qOthersDownH

    Locked
    31
    0 Votes
    31 Posts
    18k Views
    B
    i too suffer from this issue, and i thought its just me… with aggressive apps, drops could sometimes reach 5 digits.. it doesnt matter if qlimit is specified or not, but it happens either way. would be good to hear feedback from a dev
  • Is pfSense/HFSC the best option for me? (re: very simple home network)

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    P
    a bit old thread, but the same question… so, dreamslacker, you say that this example u wrote would help in our case (yes i've got the same problem as sofakng)? thanks
  • A bit of help with shaping…

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Problem classifying SSH traffic

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    D
    I don't think it will be considered that way - I ran into the same issue with VOIP packets, where because they had ToS of low delay they got put on the ACK queue.
  • Traffic Shaping across VPN

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    F
    @danswartz: I thought the answered the same question somewhere else on this forum, but here goes: I am pretty sure that the shaper cannot prioritize stuff once it is inside the tunnel. Technically though it should be prioritizing it AT the tunnel, like a WAN connection does right? Inside the tunnel is not important so long as it does it before it hits it. Again just as the traffic shaper does this with a WAN connection to the Internet, it has no control of what the data does beyond the interface, i.e. out to the Internet and to the destination, but only up to that point. I can't see why it isn't doing this now, unless there is something that IPsec-PPTP-OpenVPN(?) prevents it? That's why I asked originally.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.