Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Have I set this up right or am I being stupid?

    Scheduled Pinned Locked Moved General pfSense Questions
    35 Posts 2 Posters 3.9k Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S Offline
      stephenw10 Netgate Administrator @F022Y
      last edited by

      Mmm, interesting. Let's see what pfSense shows against 8.8.8.8 then.

      This is what my WANs look like over 2 days:

      Screenshot from 2021-12-09 16-10-00.png

      0% loss on both and minimal latency change. WAN is standard FTTC VDSL, WAN2 is g.fast.
      That's monitoring against 8.8.8.8 and 8.8.4.4.

      Steve

      F022YF 1 Reply Last reply Reply Quote 1
      • F022YF Offline
        F022Y @stephenw10
        last edited by

        @stephenw10 Where is that graph hiding? I'm still getting used to the interface

        1 Reply Last reply Reply Quote 0
        • stephenw10S Offline
          stephenw10 Netgate Administrator
          last edited by

          In Status > Monitoring. Hit the 'wrench' icon to configure the graph.

          F022YF 1 Reply Last reply Reply Quote 1
          • F022YF Offline
            F022Y @stephenw10
            last edited by

            @stephenw10 Thank you again for your help, i'll report back in a few days :)

            F022YF 1 Reply Last reply Reply Quote 0
            • F022YF Offline
              F022Y @F022Y
              last edited by

              So ran it with your suggested change for 2 days.

              36e1b11e-4638-432b-9a49-8117b734d53c-image.png

              That is just a 80/20 FTTC connection but i think i have been banded as my Draytek show interleaving on the down stream.

              1d3318e4-c405-4a4c-bde7-152cdd788d18-image.png

              Hopefully DLM will kick in after a few days and sort it out.

              1 Reply Last reply Reply Quote 0
              • stephenw10S Offline
                stephenw10 Netgate Administrator
                last edited by

                If you enable the WAN traffic graph on the other axis you can check to see if you were moving a lot of traffic when you saw the packet loss and latency. I don't really expect to see any loss.

                I still use an old HG612 there and my line looks similar:

                # xdslcmd info --state --stats
                xdslcmd: ADSL driver and PHY status
                Status: Showtime
                Retrain Reason:	0
                Last initialization procedure status:	0
                Max:	Upstream rate = 26292 Kbps, Downstream rate = 73580 Kbps
                Bearer:	0, Upstream rate = 19999 Kbps, Downstream rate = 66999 Kbps
                Bearer:	1, Upstream rate = 0 Kbps, Downstream rate = 0 Kbps
                Link Power State:	L0
                Mode:			VDSL2 Annex B
                VDSL2 Profile:		Profile 17a
                TPS-TC:			PTM Mode(0x0)
                Trellis:		U:ON /D:ON
                Line Status:		No Defect
                Training Status:	Showtime
                		Down		Up
                SNR (dB):	 8.1		 15.3
                Attn(dB):	 13.6		 0.0
                Pwr(dBm):	 14.0		 3.0
                
                F022YF 1 Reply Last reply Reply Quote 0
                • F022YF Offline
                  F022Y @stephenw10
                  last edited by

                  @stephenw10 I see a few spikes (I expect steam updating)

                  e5759731-519c-4d15-8314-60c7e6b3806e-image.png

                  1 Reply Last reply Reply Quote 0
                  • F022YF Offline
                    F022Y
                    last edited by

                    Sorry for the delayed response been away for work.

                    It appears whatever was the cause has gone. Been over a week and no connection drops.

                    776d45d7-b747-4aea-990c-75bb7e43331f-image.png

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S Offline
                      stephenw10 Netgate Administrator
                      last edited by

                      Nice, something upstream then. Good result. 👍

                      1 Reply Last reply Reply Quote 0
                      • F022YF Offline
                        F022Y
                        last edited by

                        @stephenw10 Afraid to say about 10:30am the internet died. This was followed by the usual unimpressed look from the wife as she was knee deep the the latest season of the witcher.

                        From the pfsense dashboard the WAN interface shows down

                        de4e2981-84cd-4cbd-86d7-07fc082f900c-image.png

                        I can connect to the web GUI of the modem and that looks good.

                        05380d03-87c0-4bdb-8b3e-d6ccecbaee3f-image.png

                        From here i've done the usual tests.

                        VDSL Status
                        cc2da5d9-9534-4fa1-8d26-09a91fa85ec0-image.png

                        ping and nslookup from desktop
                        17e4510f-31d1-40e5-b536-d4b4ae8ec993-image.png

                        DNS lookup from pfsense
                        26b07db5-39be-4449-abf7-93fc5427f9d2-image.png

                        Monitoring from pfsense
                        d221358a-68df-4f0f-a9fd-b9825a92623c-image.png

                        Then I tried to even force it
                        f63f485f-4751-46c2-928a-b4598eaa0625-image.png
                        37e092f7-aa20-48bd-985b-1cce3f72f3ed-image.png

                        Ultimately I went to the logs.
                        24b92b01-b292-46b4-81b1-0426228d6b29-image.png

                        I rebooted pfsense, nothing. Rebooted the Draytek Vigor 166 modem and it came back to life. I'm kinda stumped at this point so going to ask Draytek support incase i've missed some sort of logging their box does but if you guys see anything i've missed please let me know.

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S Offline
                          stephenw10 Netgate Administrator
                          last edited by

                          Hmm, does it comes back up if you only reboot pfSense and not the modem?

                          You can see in the logs that it is seeing at least some response from Vodaphone's servers so the connection is making it that far.

                          If you manually close the connection while it is working correctly and then try to reconnect does it fail?

                          Steve

                          F022YF 1 Reply Last reply Reply Quote 0
                          • F022YF Offline
                            F022Y @stephenw10
                            last edited by

                            @stephenw10 Thanks for the response on a sunday, if i just reboot the pfsense VM the connection is still down which is why I may be leaning towards the modem now and have raised a support case with Draytek.

                            I'll try killing the connection later on today, I dare not get between her and Henry Cavill lol

                            1 Reply Last reply Reply Quote 0
                            • stephenw10S Offline
                              stephenw10 Netgate Administrator
                              last edited by

                              Ha, yeah best avoid that!

                              F022YF 1 Reply Last reply Reply Quote 0
                              • F022YF Offline
                                F022Y @stephenw10
                                last edited by

                                @stephenw10 So from the status > interfaces section i downed the connection waited 10 seconds (why is it always 10 seconds in IT) then reconnected. Worked fine.

                                Just waiting on Draytek now.

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S Offline
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Yeah, that seems to rule out some of the PPP issues I've seen in the past.

                                  I guess you could try just rebooting the modem, that would seem to confirm it if it comes back up without doing anything in pfSense.

                                  Steve

                                  F022YF 1 Reply Last reply Reply Quote 0
                                  • F022YF Offline
                                    F022Y @stephenw10
                                    last edited by

                                    @stephenw10 Thats how i had to get it to work yesterday a reboot of the vigor 166.

                                    Luckily already had an email from Draytek asking me to update to the latest firmware...... the one i have told them i am already on :).

                                    See how that goes.

                                    1 Reply Last reply Reply Quote 1
                                    • stephenw10S Offline
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      Mmm, interesting. They are usually pretty good. I had years of good service from a V120 and the V130 is pretty much the go-to option for regular VDSL. The V166 supports g.fast though I was thinking about getting one as there's no line stats from the Openreach Huawei MT992, it's fully locked down.

                                      Steve

                                      F022YF 2 Replies Last reply Reply Quote 0
                                      • F022YF Offline
                                        F022Y @stephenw10
                                        last edited by

                                        @stephenw10 I'm hoping that an altnet will be taking orders for 1Gb here in the next few weeks then i will be going direct from the PON to my pfsense VM so won't be using the 166.

                                        I only bought the 166 because i was having this issue with a 130.

                                        1 Reply Last reply Reply Quote 1
                                        • F022YF Offline
                                          F022Y @stephenw10
                                          last edited by

                                          @stephenw10 Just thinking out loud but with any of your drayteks did the enable the ddos functions via CLI? I wonder if i've just overworked the modem, but then surely if the options are there it should run them.....

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S Offline
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            I never tried. I'm not sure the V120 has that option. Also I wouldn't expect it to do anything unless it's running in router mode since in modem mode the public IP is on the pfSense WAN.

                                            F022YF 2 Replies Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.