• PRIQ or HFSC

    Locked
    11
    0 Votes
    11 Posts
    5k Views
    S

    Trying to use HFSC with bittorrent and streaming media can be frustrating. They are hard to shape due to many reasons that you can find on this forum.

    Go with PRIQ , set priorities and then use a limiter as well to help restrict what you want to restrict.

    You can try my HFSC setups I have on the forums but again they are not optimized for restricting bittorrent and streaming media.  They are geared for LAN party configurations where allowing max bandwidth for gaming is the overall goal.

  • Limit a 1 IP on Lan not the Rest.

    3
    0 Votes
    3 Posts
    971 Views
    D

    I have the rule setup on the lan side.  With a single host which is his ip and at the bottom theres a choice for a limiter and i added the inbound and outbound limiter.

    At the top of the list.

    When i get a chance today ill take some screen shots.

  • L7 limit doesn't work for bittorent

    2
    0 Votes
    2 Posts
    854 Views
    KOMK

    Limiters are assigned using firewall rules via the In/Out section under Advanced features.  Bittorrent can be very hard to trace because the torrent clients these days use encryption and that can't be handled by a layer7 rule.  You might be better off using an opposite approach where you elevate known traffic like web and mail, and all others can be limited or shaped.

  • After traffic shaping in place, pfSense has slow updates

    1
    0 Votes
    1 Posts
    642 Views
    No one has replied
  • Layer 7

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • P2P traffic shaping in Limit?

    5
    0 Votes
    5 Posts
    1k Views
    I

    The old pfsense shapper was one idea easy for configuration.

  • Traffic Shaping Help

    2
    0 Votes
    2 Posts
    853 Views
    KOMK

    From what I understand, a limiter is just a dumb pipe that will limit all traffic routed to it to its maximum capacity, and not per client/server.  IN on the WAN interface means traffic coming from the Internet, OUT means traffic destined to the Internet.  Set your OUT to 10MB/s, set rules to move your server WAN traffic to the limiter, put them under load and see it it holds steady at ~10MB.

  • Limit bandwidth of specific port

    8
    0 Votes
    8 Posts
    4k Views
    KOMK

    Don't be concerned about packet drops.  When you have an active shaper in place, drops are expected when the router is under load.  You want packets from your lower-priority queues to get dumped in favour of packets from higher queues when there is contention or service guarantees to maintain.  That's how the whole thing works.  If you don't have any drops, you likely don't even need traffic shaping at all.

  • Limit rule based on all traffic or per client connection?

    2
    0 Votes
    2 Posts
    848 Views
    G

    per second

  • Slow WAN, Multi LAN Traffic Shaping

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Limit on Server IP not working?

    4
    0 Votes
    4 Posts
    1k Views
    W

    I want to Limit all my servers behind the DMZ .

    So i have server A server B and server C . what is the best Way to limit the inbound and outbound traffic to a max of 50MB per server.

  • Squid custom acl

    2
    0 Votes
    2 Posts
    1k Views
    KOMK

    First step would be to post this in the Packages forum where it belongs.

    Start here: https://doc.pfsense.org/index.php/Setup_Squid_as_a_Transparent_Proxy

    Come back if you have questions or problems.

  • Shaper… can't do it work at all...

    2
    0 Votes
    2 Posts
    874 Views
    KOMK

    Not that I'm aware of, but if you went into more detail about your requirements and how you configured it, perhaps people can help.

  • Traffic shaper help limiter

    2
    0 Votes
    2 Posts
    967 Views
    KOMK

    I've seen this too, where the bandwidth totals seem really off.

    A traffic shaper will try to provide service for your queues.  It will only throttle a connection if it needs bandwidth for higher-priority connections.  If you want to put a hard cap in place, you need a limiter.

  • Traffic shaper does not start on virtio nic

    2
    0 Votes
    2 Posts
    747 Views
    S

    Sounds like to me you already have a fix , make the NIC E1000.  I dont know what a virtio nic is but it seems similar to VMXNET3 so I am guessing it is a driver issue of some kind. And if it is running as a VM - you might check the other forum for some answers.

  • Is it possible to do?

    3
    0 Votes
    3 Posts
    857 Views
    I

    Thank you for the answer. I found one scenario.. its shape well the traffic but found  that the P2P traffic is shaped whit other lower limits. The limits are 5 MB download, 2 MB Upload. When  start a torrent its take 460 kb/s for download and upload is only 0,5 kb/s. I tray several torrents and i am sure that they have lot of pears.

    Way's that whit P2P traffic? :( No other limits added .

  • Traffic shaping for lan party

    3
    0 Votes
    3 Posts
    1k Views
    S

    Here is a link to my posts on what I do for LAN Parties with PFSense:

    https://forum.pfsense.org/index.php?topic=77388.0

    Feel free to use any of the configs and tweak them as needed.

  • High ping response on lan address with traffic shaping enabled

    2
    0 Votes
    2 Posts
    2k Views
    C

    hi abbj, i have the same problems!

    Do you have resolved?

    regards

  • 0 Votes
    3 Posts
    1k Views
    J

    Well, I enabled RTP debugging on siproxd and telnet'ed to the debug port. I tried an extension routed through siproxd. it was not routed to the qVOIP. But on the RTP debug, I noticed that the UDP port my Polycom 650 was originating with 2224. It hit me that the Polycom default UDP port for RDP was 2222 (from past experience). So, for grins, I rolled it up to 7070 (the starting port for siproxd on my end) and tried the call again. still nothing. But in further examination, I noticed that the destination UDP port that siproxd was using for my remote Asterisk server was 12478 (outside the siproxd specified range of 7070-7099). The originating port siproxd used was 7076 (within the range). Now, i have static ports set for outbound NAT. But, siproxd is side-stepping NAT, so I guess it negotiates with the remote, and the Asterisk server's range is 10000-20000. So, on a hunch, I expanded the floating qVOIP outbound rule to cover UDP 7070-20000. Damned if that didn't do the trick! Now, my SIP and RTP routed through through siproxd is being routed into qVOIP. I am going to keeping investigating it further, but this must be why it was not matching the qVOIP rule. FYI!

  • Any one has a example of working CBQ?

    7
    0 Votes
    7 Posts
    3k Views
    P

    Sorry for my dyslexia. it is HFSC. :) 
    I will look at PRIQ. The other methods are a little complicated, but I don't really have a problem with them.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.