Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Flooded log

    Scheduled Pinned Locked Moved General pfSense Questions
    40 Posts 2 Posters 3.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nicknuke @stephenw10
      last edited by

      @stephenw10
      well actually yes...
      the vm actually just act as redirector and shaper for different vlans to different ISP's gateway.
      Been doing that and it just works.. until lately..
      Do I miss something ?

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Nope I would expect that work fine. It seems suspicious that something just changed seemingly without any changes made to the pfSense config. Like something else is limiting it.

        N 2 Replies Last reply Reply Quote 0
        • N
          nicknuke @stephenw10
          last edited by

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • N
            nicknuke @stephenw10
            last edited by nicknuke

            @stephenw10
            That's the hair pulling prob.

            Let's call this pfsense box : shaper ( vm ).
            It has 3 interfaces, 1 to LAN ( L3 Switch ), 1 interface to ISP1, and 1 other to ISP2
            Turned off NAT on shaper, so it's just doing routing and traffic shaping only.
            Gateway of ISP1 is actually another pfsense doing NAT ( a vm )
            Gateway of ISP2 is the debian box ( another VM )

            I suspected there's something wrong on the gateway side.
            I have debian box act as gateway on top of pfsense.

            But when I tried removing the limiter to ISP2 , vlan client got full bandwidth.

            • Limit Off : vlan pc - iperf3 - gateway = Full b/w.
            • Limit On : vlan pc - iperf3 - gateway = inconsistent b/w. ( this is done with no other client online ).
              But ONLY on this particular gateway to ISP2.
              I've been re-installing pfsense like 5 times in vm already, lol..
            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Hmm, you're testing using iperf3 to the gateway directly? Though that should still work.

              N 1 Reply Last reply Reply Quote 0
              • N
                nicknuke @stephenw10
                last edited by

                @stephenw10
                Okay .. there's just something with 2.71 that I just do not know about.

                I got good backup of 2.6 vm image.. started it up...
                All is well.. surprisingly well.. no flooded msgs in the log like above.
                I do not know how it got there the first time.
                Started the slave vm.. performed well also, Limiter works great with both ISP's Gateway.

                Installed a fresh 2.71..
                Then Restore the FULL backup config from 2.6.0...

                Everything went well.. EXCEPT the Limiter again !
                I even copy all /boot/loader.conf from 2.6 vm..
                The limiter on 2.7.1 just doesn't work as well as 2.6.0 one...

                here's the loader.conf content :
                kern.cam.boot_delay=10000
                kern.ipc.nmbclusters="1000000"
                kern.ipc.nmbjumbop="524288"
                kern.ipc.nmbjumbo9="524288"
                autoboot_delay="3"
                hw.hn.vf_transparent="0"
                hw.hn.use_if_start="1"
                net.link.ifqmaxlen="128"
                hw.vtnet.csum_disable="1"

                I guess I will stick to 2.6.0 for now then...

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  Do you have WAN1 set as the system default gateway?

                  If you set that to WAN2 does it affect the Limiter behaviour?

                  That's about the only thing I can imagine that's different between the two WANs. And we did see issues with that in 2.5.X.

                  N 2 Replies Last reply Reply Quote 0
                  • N
                    nicknuke @stephenw10
                    last edited by

                    @stephenw10 I will try that again tomorrow and let you know..

                    1 Reply Last reply Reply Quote 1
                    • N
                      nicknuke @stephenw10
                      last edited by

                      @stephenw10
                      Tried upgrading again from 2.60, still no go.
                      The weird thing was even when i use ISP1's gateway, as "Default gateway IPv4" in Settings-Routing,
                      then I try traceroute with source address any, it somehow still uses ISP2's gateway.
                      The speed from lan degraded like previous attempts. ( upgrading the same vm, then just tried it again right away ).
                      Went back to backup image of 2.6 now.. ( We even gonna have 3rd ISP coming in, so i really need stability right now, which 2.6.0 can still deliver ).

                      stephenw10S 1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator @nicknuke
                        last edited by

                        @nicknuke said in Flooded log:

                        The weird thing was even when i use ISP1's gateway, as "Default gateway IPv4" in Settings-Routing,
                        then I try traceroute with source address any, it somehow still uses ISP2's gateway.

                        Hmm, did you note if it set the WAN1 gateway as the default route correctly?

                        N 1 Reply Last reply Reply Quote 0
                        • N
                          nicknuke @stephenw10
                          last edited by

                          @stephenw10
                          yes of course :D that why i noticed how weird it was. Also found some other posts here having the same prob with limiter, getting half than assigned bandwidth.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            Is it exactly half? Same value every time?

                            That feels like something looping twice through the same Limiter. But I'm not sure how that would happening with something on the LAN side.

                            N 1 Reply Last reply Reply Quote 0
                            • N
                              nicknuke @stephenw10
                              last edited by

                              @stephenw10
                              no, its top speed is half the assigned limit.

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                So.... it's not exactly half? Or not consistent? (or both!)

                                N 1 Reply Last reply Reply Quote 0
                                • N
                                  nicknuke @stephenw10
                                  last edited by

                                  @stephenw10
                                  Yes Both.

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    So to be clear it is in fact always exactly half the configured speed?

                                    N 1 Reply Last reply Reply Quote 0
                                    • N
                                      nicknuke @stephenw10
                                      last edited by

                                      @stephenw10
                                      okay, it is half of the configured limit at best...
                                      I set 4 Mb download, it only do 1.75-1.8 at best..
                                      at worst.. it's 0 point something..

                                      Took backup of 2.6 -> upgrade to 2.71 = Not OK.
                                      Fresh install 2.71 -> re-create all rules and limiters = Not OK.

                                      I'm sure now I have to stay at 2.6

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Ok just reviewing the thread I'm unsure if you tested setting the default gateway to ISP2. Does that make the Limiter on ISP behave correctly? Does it break the Limiter to ISP1?

                                        That behaviour is very similar to issues we saw on earlier versions when we moved Limiters from ipfw to pf.

                                        N 1 Reply Last reply Reply Quote 0
                                        • N
                                          nicknuke @stephenw10
                                          last edited by

                                          @stephenw10
                                          Yes what actually bothers me is that it always a problem to ISP2..
                                          This ISP2, the gateway ( NATing ) is debian box, that got me thinking that there might be a problem with the debian gateway box..
                                          But then again, if i remove the limiter to this ISP2 , it's full bandwidth, vlan to debian box, or vlan to internet.
                                          And, no matter what default i set it to, always to this ISP2 that has problem with limiter.

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            And conversely the Limiter on ISP1 is still good even if you set the default gateway as ISP2?

                                            N 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.