Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Have I set this up right or am I being stupid?

    Scheduled Pinned Locked Moved General pfSense Questions
    35 Posts 2 Posters 3.9k Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F022YF Offline
      F022Y @stephenw10
      last edited by

      @stephenw10 Thank you again for your help, i'll report back in a few days :)

      F022YF 1 Reply Last reply Reply Quote 0
      • F022YF Offline
        F022Y @F022Y
        last edited by

        So ran it with your suggested change for 2 days.

        36e1b11e-4638-432b-9a49-8117b734d53c-image.png

        That is just a 80/20 FTTC connection but i think i have been banded as my Draytek show interleaving on the down stream.

        1d3318e4-c405-4a4c-bde7-152cdd788d18-image.png

        Hopefully DLM will kick in after a few days and sort it out.

        1 Reply Last reply Reply Quote 0
        • stephenw10S Offline
          stephenw10 Netgate Administrator
          last edited by

          If you enable the WAN traffic graph on the other axis you can check to see if you were moving a lot of traffic when you saw the packet loss and latency. I don't really expect to see any loss.

          I still use an old HG612 there and my line looks similar:

          # xdslcmd info --state --stats
          xdslcmd: ADSL driver and PHY status
          Status: Showtime
          Retrain Reason:	0
          Last initialization procedure status:	0
          Max:	Upstream rate = 26292 Kbps, Downstream rate = 73580 Kbps
          Bearer:	0, Upstream rate = 19999 Kbps, Downstream rate = 66999 Kbps
          Bearer:	1, Upstream rate = 0 Kbps, Downstream rate = 0 Kbps
          Link Power State:	L0
          Mode:			VDSL2 Annex B
          VDSL2 Profile:		Profile 17a
          TPS-TC:			PTM Mode(0x0)
          Trellis:		U:ON /D:ON
          Line Status:		No Defect
          Training Status:	Showtime
          		Down		Up
          SNR (dB):	 8.1		 15.3
          Attn(dB):	 13.6		 0.0
          Pwr(dBm):	 14.0		 3.0
          
          F022YF 1 Reply Last reply Reply Quote 0
          • F022YF Offline
            F022Y @stephenw10
            last edited by

            @stephenw10 I see a few spikes (I expect steam updating)

            e5759731-519c-4d15-8314-60c7e6b3806e-image.png

            1 Reply Last reply Reply Quote 0
            • F022YF Offline
              F022Y
              last edited by

              Sorry for the delayed response been away for work.

              It appears whatever was the cause has gone. Been over a week and no connection drops.

              776d45d7-b747-4aea-990c-75bb7e43331f-image.png

              1 Reply Last reply Reply Quote 0
              • stephenw10S Offline
                stephenw10 Netgate Administrator
                last edited by

                Nice, something upstream then. Good result. 👍

                1 Reply Last reply Reply Quote 0
                • F022YF Offline
                  F022Y
                  last edited by

                  @stephenw10 Afraid to say about 10:30am the internet died. This was followed by the usual unimpressed look from the wife as she was knee deep the the latest season of the witcher.

                  From the pfsense dashboard the WAN interface shows down

                  de4e2981-84cd-4cbd-86d7-07fc082f900c-image.png

                  I can connect to the web GUI of the modem and that looks good.

                  05380d03-87c0-4bdb-8b3e-d6ccecbaee3f-image.png

                  From here i've done the usual tests.

                  VDSL Status
                  cc2da5d9-9534-4fa1-8d26-09a91fa85ec0-image.png

                  ping and nslookup from desktop
                  17e4510f-31d1-40e5-b536-d4b4ae8ec993-image.png

                  DNS lookup from pfsense
                  26b07db5-39be-4449-abf7-93fc5427f9d2-image.png

                  Monitoring from pfsense
                  d221358a-68df-4f0f-a9fd-b9825a92623c-image.png

                  Then I tried to even force it
                  f63f485f-4751-46c2-928a-b4598eaa0625-image.png
                  37e092f7-aa20-48bd-985b-1cce3f72f3ed-image.png

                  Ultimately I went to the logs.
                  24b92b01-b292-46b4-81b1-0426228d6b29-image.png

                  I rebooted pfsense, nothing. Rebooted the Draytek Vigor 166 modem and it came back to life. I'm kinda stumped at this point so going to ask Draytek support incase i've missed some sort of logging their box does but if you guys see anything i've missed please let me know.

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S Offline
                    stephenw10 Netgate Administrator
                    last edited by

                    Hmm, does it comes back up if you only reboot pfSense and not the modem?

                    You can see in the logs that it is seeing at least some response from Vodaphone's servers so the connection is making it that far.

                    If you manually close the connection while it is working correctly and then try to reconnect does it fail?

                    Steve

                    F022YF 1 Reply Last reply Reply Quote 0
                    • F022YF Offline
                      F022Y @stephenw10
                      last edited by

                      @stephenw10 Thanks for the response on a sunday, if i just reboot the pfsense VM the connection is still down which is why I may be leaning towards the modem now and have raised a support case with Draytek.

                      I'll try killing the connection later on today, I dare not get between her and Henry Cavill lol

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S Offline
                        stephenw10 Netgate Administrator
                        last edited by

                        Ha, yeah best avoid that!

                        F022YF 1 Reply Last reply Reply Quote 0
                        • F022YF Offline
                          F022Y @stephenw10
                          last edited by

                          @stephenw10 So from the status > interfaces section i downed the connection waited 10 seconds (why is it always 10 seconds in IT) then reconnected. Worked fine.

                          Just waiting on Draytek now.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S Offline
                            stephenw10 Netgate Administrator
                            last edited by

                            Yeah, that seems to rule out some of the PPP issues I've seen in the past.

                            I guess you could try just rebooting the modem, that would seem to confirm it if it comes back up without doing anything in pfSense.

                            Steve

                            F022YF 1 Reply Last reply Reply Quote 0
                            • F022YF Offline
                              F022Y @stephenw10
                              last edited by

                              @stephenw10 Thats how i had to get it to work yesterday a reboot of the vigor 166.

                              Luckily already had an email from Draytek asking me to update to the latest firmware...... the one i have told them i am already on :).

                              See how that goes.

                              1 Reply Last reply Reply Quote 1
                              • stephenw10S Offline
                                stephenw10 Netgate Administrator
                                last edited by

                                Mmm, interesting. They are usually pretty good. I had years of good service from a V120 and the V130 is pretty much the go-to option for regular VDSL. The V166 supports g.fast though I was thinking about getting one as there's no line stats from the Openreach Huawei MT992, it's fully locked down.

                                Steve

                                F022YF 2 Replies Last reply Reply Quote 0
                                • F022YF Offline
                                  F022Y @stephenw10
                                  last edited by

                                  @stephenw10 I'm hoping that an altnet will be taking orders for 1Gb here in the next few weeks then i will be going direct from the PON to my pfsense VM so won't be using the 166.

                                  I only bought the 166 because i was having this issue with a 130.

                                  1 Reply Last reply Reply Quote 1
                                  • F022YF Offline
                                    F022Y @stephenw10
                                    last edited by

                                    @stephenw10 Just thinking out loud but with any of your drayteks did the enable the ddos functions via CLI? I wonder if i've just overworked the modem, but then surely if the options are there it should run them.....

                                    1 Reply Last reply Reply Quote 0
                                    • stephenw10S Offline
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      I never tried. I'm not sure the V120 has that option. Also I wouldn't expect it to do anything unless it's running in router mode since in modem mode the public IP is on the pfSense WAN.

                                      F022YF 2 Replies Last reply Reply Quote 0
                                      • F022YF Offline
                                        F022Y @stephenw10
                                        last edited by

                                        @stephenw10 Thats a fair point i never thought about. As it won't hurt to do it i may as well re flash and leave default.

                                        1 Reply Last reply Reply Quote 0
                                        • F022YF Offline
                                          F022Y @stephenw10
                                          last edited by

                                          @stephenw10 I have a horrible thought all of this is because of me, so looking over the vigor 166 settings i had ALL of the ddos settings enabled and hardware acceleration, I can only assume i just did it on auto pilot. I'm guessing then this can be closed, i can only imagine that after a while the logs ect just crapped out needing a reboot to clear things down. I've performed a .rst upgrade on it and this time left it all alone. Time will tell i guess.

                                          Thanks again though :)

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S Offline
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Well, if that's true it seems like a bug in the Draytek firmware. I wouldn't expect to be able to enable things and cause it to crash out.

                                            That would be an easy fix though so... 🤞

                                            Steve

                                            F022YF 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.