Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Have I set this up right or am I being stupid?

    Scheduled Pinned Locked Moved General pfSense Questions
    35 Posts 2 Posters 3.9k Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S Offline
      stephenw10 Netgate Administrator
      last edited by

      If you enable the WAN traffic graph on the other axis you can check to see if you were moving a lot of traffic when you saw the packet loss and latency. I don't really expect to see any loss.

      I still use an old HG612 there and my line looks similar:

      # xdslcmd info --state --stats
      xdslcmd: ADSL driver and PHY status
      Status: Showtime
      Retrain Reason:	0
      Last initialization procedure status:	0
      Max:	Upstream rate = 26292 Kbps, Downstream rate = 73580 Kbps
      Bearer:	0, Upstream rate = 19999 Kbps, Downstream rate = 66999 Kbps
      Bearer:	1, Upstream rate = 0 Kbps, Downstream rate = 0 Kbps
      Link Power State:	L0
      Mode:			VDSL2 Annex B
      VDSL2 Profile:		Profile 17a
      TPS-TC:			PTM Mode(0x0)
      Trellis:		U:ON /D:ON
      Line Status:		No Defect
      Training Status:	Showtime
      		Down		Up
      SNR (dB):	 8.1		 15.3
      Attn(dB):	 13.6		 0.0
      Pwr(dBm):	 14.0		 3.0
      
      F022YF 1 Reply Last reply Reply Quote 0
      • F022YF Offline
        F022Y @stephenw10
        last edited by

        @stephenw10 I see a few spikes (I expect steam updating)

        e5759731-519c-4d15-8314-60c7e6b3806e-image.png

        1 Reply Last reply Reply Quote 0
        • F022YF Offline
          F022Y
          last edited by

          Sorry for the delayed response been away for work.

          It appears whatever was the cause has gone. Been over a week and no connection drops.

          776d45d7-b747-4aea-990c-75bb7e43331f-image.png

          1 Reply Last reply Reply Quote 0
          • stephenw10S Offline
            stephenw10 Netgate Administrator
            last edited by

            Nice, something upstream then. Good result. 👍

            1 Reply Last reply Reply Quote 0
            • F022YF Offline
              F022Y
              last edited by

              @stephenw10 Afraid to say about 10:30am the internet died. This was followed by the usual unimpressed look from the wife as she was knee deep the the latest season of the witcher.

              From the pfsense dashboard the WAN interface shows down

              de4e2981-84cd-4cbd-86d7-07fc082f900c-image.png

              I can connect to the web GUI of the modem and that looks good.

              05380d03-87c0-4bdb-8b3e-d6ccecbaee3f-image.png

              From here i've done the usual tests.

              VDSL Status
              cc2da5d9-9534-4fa1-8d26-09a91fa85ec0-image.png

              ping and nslookup from desktop
              17e4510f-31d1-40e5-b536-d4b4ae8ec993-image.png

              DNS lookup from pfsense
              26b07db5-39be-4449-abf7-93fc5427f9d2-image.png

              Monitoring from pfsense
              d221358a-68df-4f0f-a9fd-b9825a92623c-image.png

              Then I tried to even force it
              f63f485f-4751-46c2-928a-b4598eaa0625-image.png
              37e092f7-aa20-48bd-985b-1cce3f72f3ed-image.png

              Ultimately I went to the logs.
              24b92b01-b292-46b4-81b1-0426228d6b29-image.png

              I rebooted pfsense, nothing. Rebooted the Draytek Vigor 166 modem and it came back to life. I'm kinda stumped at this point so going to ask Draytek support incase i've missed some sort of logging their box does but if you guys see anything i've missed please let me know.

              1 Reply Last reply Reply Quote 0
              • stephenw10S Offline
                stephenw10 Netgate Administrator
                last edited by

                Hmm, does it comes back up if you only reboot pfSense and not the modem?

                You can see in the logs that it is seeing at least some response from Vodaphone's servers so the connection is making it that far.

                If you manually close the connection while it is working correctly and then try to reconnect does it fail?

                Steve

                F022YF 1 Reply Last reply Reply Quote 0
                • F022YF Offline
                  F022Y @stephenw10
                  last edited by

                  @stephenw10 Thanks for the response on a sunday, if i just reboot the pfsense VM the connection is still down which is why I may be leaning towards the modem now and have raised a support case with Draytek.

                  I'll try killing the connection later on today, I dare not get between her and Henry Cavill lol

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S Offline
                    stephenw10 Netgate Administrator
                    last edited by

                    Ha, yeah best avoid that!

                    F022YF 1 Reply Last reply Reply Quote 0
                    • F022YF Offline
                      F022Y @stephenw10
                      last edited by

                      @stephenw10 So from the status > interfaces section i downed the connection waited 10 seconds (why is it always 10 seconds in IT) then reconnected. Worked fine.

                      Just waiting on Draytek now.

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S Offline
                        stephenw10 Netgate Administrator
                        last edited by

                        Yeah, that seems to rule out some of the PPP issues I've seen in the past.

                        I guess you could try just rebooting the modem, that would seem to confirm it if it comes back up without doing anything in pfSense.

                        Steve

                        F022YF 1 Reply Last reply Reply Quote 0
                        • F022YF Offline
                          F022Y @stephenw10
                          last edited by

                          @stephenw10 Thats how i had to get it to work yesterday a reboot of the vigor 166.

                          Luckily already had an email from Draytek asking me to update to the latest firmware...... the one i have told them i am already on :).

                          See how that goes.

                          1 Reply Last reply Reply Quote 1
                          • stephenw10S Offline
                            stephenw10 Netgate Administrator
                            last edited by

                            Mmm, interesting. They are usually pretty good. I had years of good service from a V120 and the V130 is pretty much the go-to option for regular VDSL. The V166 supports g.fast though I was thinking about getting one as there's no line stats from the Openreach Huawei MT992, it's fully locked down.

                            Steve

                            F022YF 2 Replies Last reply Reply Quote 0
                            • F022YF Offline
                              F022Y @stephenw10
                              last edited by

                              @stephenw10 I'm hoping that an altnet will be taking orders for 1Gb here in the next few weeks then i will be going direct from the PON to my pfsense VM so won't be using the 166.

                              I only bought the 166 because i was having this issue with a 130.

                              1 Reply Last reply Reply Quote 1
                              • F022YF Offline
                                F022Y @stephenw10
                                last edited by

                                @stephenw10 Just thinking out loud but with any of your drayteks did the enable the ddos functions via CLI? I wonder if i've just overworked the modem, but then surely if the options are there it should run them.....

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S Offline
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  I never tried. I'm not sure the V120 has that option. Also I wouldn't expect it to do anything unless it's running in router mode since in modem mode the public IP is on the pfSense WAN.

                                  F022YF 2 Replies Last reply Reply Quote 0
                                  • F022YF Offline
                                    F022Y @stephenw10
                                    last edited by

                                    @stephenw10 Thats a fair point i never thought about. As it won't hurt to do it i may as well re flash and leave default.

                                    1 Reply Last reply Reply Quote 0
                                    • F022YF Offline
                                      F022Y @stephenw10
                                      last edited by

                                      @stephenw10 I have a horrible thought all of this is because of me, so looking over the vigor 166 settings i had ALL of the ddos settings enabled and hardware acceleration, I can only assume i just did it on auto pilot. I'm guessing then this can be closed, i can only imagine that after a while the logs ect just crapped out needing a reboot to clear things down. I've performed a .rst upgrade on it and this time left it all alone. Time will tell i guess.

                                      Thanks again though :)

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S Offline
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Well, if that's true it seems like a bug in the Draytek firmware. I wouldn't expect to be able to enable things and cause it to crash out.

                                        That would be an easy fix though so... 🤞

                                        Steve

                                        F022YF 1 Reply Last reply Reply Quote 0
                                        • F022YF Offline
                                          F022Y @stephenw10
                                          last edited by

                                          @stephenw10 just a little update, since resetting the modem my TB BQM has calmed down.

                                          Before:-
                                          Screenshot 2022-01-17 at 14.32.56.png

                                          After:-
                                          Screenshot 2022-01-17 at 14.35.43.png

                                          All stock, no hardware acceleration or DDoS settings so really weird never seen behaviour like it but think it points all my issues at that.

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S Offline
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Mmm, that is interesting. Good result though.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.