• VPN Traffic Shaping

    9
    0 Votes
    9 Posts
    3k Views
    T

    Thanks for the info, this makes it more clear!

    Unfortunately it seems like there is no easy solution, the version with stacked pfsenses is nice but little bit overkill for a roadwarrior szenario ;)

  • Pfsense "forgets" shaping rules

    2
    0 Votes
    2 Posts
    954 Views
    T

    No?

    Happening on my media downloader too.  Set to 500k limit downstream, currently downloading at 30 megabits.

  • Priority is missing

    8
    0 Votes
    8 Posts
    2k Views
    P

    For the Priority field then, at least, there should be any other lable other than the following:

    "For hfsc, the range is 0 to 7. The default is 1. Hfsc queues with a higher priority are preferred in the case of overload."

    It could be just this label: "Priority does not apply for HFSC. Please keep it blank for HFSC"

  • What happens to queue setting when gateway failovers?

    1
    0 Votes
    1 Posts
    552 Views
    No one has replied
  • Basic Queue Setup Question for Asymmetric WAN

    1
    0 Votes
    1 Posts
    629 Views
    No one has replied
  • Please share traffic shaper and rules for gaming set up

    10
    0 Votes
    10 Posts
    5k Views
    C

    @sideout:

    Yes you can delete them.

    thank you i will observe for while…

  • Oddities with setting up Traffic Shaping?

    9
    0 Votes
    9 Posts
    2k Views
    KOMK

    I just stumbled on this yesterday and it is the best writeup of HFSC that I have seen yet:

    http://ace-host.stuart.id.au/russell/files/tc/doc/sch_hfsc.txt

  • 2.1.3 BUG ? UI shaper configuration not synced with pfctl

    1
    0 Votes
    1 Posts
    877 Views
    No one has replied
  • How to interpret Status: Traffic shaper: Queues

    11
    0 Votes
    11 Posts
    4k Views
    tShaperT

    I advise you not to answer questions you find vague.

    Thank you.

  • How to prioritize a specific host ?

    3
    0 Votes
    3 Posts
    1k Views
    KOMK

    I'm not an expert or even intermediate traffic shaper user, but I want to help you out so here goes…

    Create an alias for the two PCs that need top bandwidth, eg. VIP_PC
    Run the Traffic Shaper wizard to create a VoIP shaper only.
    Use the alias (VIP_PC) you just created as the VoIP source.

    That should be it.  The wizard will create a VoIP queue that gets top bandwidth, except you won't be having any VoIP phones using it, just those two PCs.  You can check it by looking at Firewall - Rules - Floating.  You should have two rules, one in one out, that directs all I/O for those aliased PCs to qVoIP

  • TCPTrack PFsense

    3
    0 Votes
    3 Posts
    2k Views
    S

    Great!!! Thanks , I will look at it.

  • Still fighting for traffic

    7
    0 Votes
    7 Posts
    2k Views
    ?

    Ok, seems that I won't get any further help here.

    I did remove the Shaping yesterday as I was doing some more testing and realized that p2p traffic now was able to consume 50Mbit fine, while with shaping I only got 20 Mbit, so there is either something completely wrong in my setup/logic, or .. don't know ?

    If anyone can shed some light into this, it would be much appreciated.

  • You do not have 8 of local interfaces!

    1
    0 Votes
    1 Posts
    712 Views
    No one has replied
  • Errors in Status -> Queues view?

    2
    0 Votes
    2 Posts
    984 Views
    KOMK

    It's a bug as far as I can tell.  I see the same thing, as do others.  It seems to happen for me most when I manually refresh the view with F5.

  • Limiters Issue

    3
    0 Votes
    3 Posts
    1k Views
    J

    @ermal:

    That is just an input validation limited to the number of 30.

    Its not limiting the number of pipes.

    Hi , thanks for  answering.

    I havent managed to get more than 30 pipes due to this. The  message " you need at least one bw specification" shows as you try to add the 31st bw specification. How could I get more than 30 pipes?

  • Help With Traffic Shaping / Bandwidth Limiting 1 WAN 12 VLAN

    2
    0 Votes
    2 Posts
    2k Views
    B

    I was recently trying to do something similar so I feel your pain. What I can tell you is that at least as far as I can tell (I'm still experimenting) this is definitely possible…but information on how to do it is slim to none. In part it's because it's difficult and time consuming to fully explain. I don't have enough time to sort through all the details with you but maybe the summary below will give you enough to get it going...

    What you need to know is that you can have parent and child queues where children inherit all of the bandwidth restrictions from the parent in addition to more restrictions you might specify. So for EACH VLAN interface you will want a default queue (probably whose parent is the default queue). You will then want something like "qInternet" which is a parent queue for "qAck", "qHighPriority" and "qBulk" or any other queues you want.

    You will then setup qInternet to have your 20Mbps cap by setting the upperlimit m2 to 20Mb (I'm assuming you are using HFSC) which will put a hard cap on that VLAN at 20Mb for traffic in qInternet or it's children. Inside of the child queues of qInternet you can specify hard limits (upperlimit) or portions of a congested link (link shares) for each of the child queues.

    Now you need to assign traffic to the queues. Do this using floating firewall rules. Set the action to "Match", the interface to your WAN interface (so you are limiting only packets originating from the WAN), the direction to "any", the Ackqueue/Queue to "qAck"/"qBulk" and you're set. This should place all your Internet traffic into the bulk queue (and the Ack queue). You can verify this on the queue status page (you may need to clear out your state table first). Now you can create additional similar floating rules except also define ports, etc. for them to put your high priority traffic into your high priority queue.

  • Bandwidth Limitation

    1
    0 Votes
    1 Posts
    779 Views
    No one has replied
  • Traffic shaper limiter

    1
    0 Votes
    1 Posts
    720 Views
    No one has replied
  • Throttling traffic between LAN connections

    2
    0 Votes
    2 Posts
    861 Views
    G

    Traffic shaping can be done on any interface of the firewall. In your case, traffic between LANs must go through your pfSense box. Are there two different physical interfaces for each LAN?

  • Encrypted SIP

    4
    0 Votes
    4 Posts
    1k Views
    deltaendD

    Ah, hidden in rules.  Nice.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.