Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Traffic rate for "lagg0" higher than set maximum 1000 Mbit

    Scheduled Pinned Locked Moved General pfSense Questions
    11 Posts 3 Posters 909 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Something may have inherited the link speed incorrectly. Something may have been set to 1G, traffic shaping for example.

      What packages do you have installed?

      Steve

      P 1 Reply Last reply Reply Quote 0
      • J
        josepho
        last edited by

        Hi @stephenw10 , see below.

        The real question is, is it really exceeding, or is it a misleading message i can ignore?

        7f655446-0e14-4d1c-8b00-7c5977875da3-image.png

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          If it's an LACP lagg it can carry more than 1G when passing multiple connections.

          I would look at ntopng.

          What does the actual log entry look like? What process is it shown against?

          J 2 Replies Last reply Reply Quote 0
          • J
            josepho @stephenw10
            last edited by

            @stephenw10 , the process is vnstatd

            What should i look for in ntop?

            fc812d26-35bc-42fc-b204-b50a034a6d14-image.png

            1 Reply Last reply Reply Quote 0
            • J
              josepho @stephenw10
              last edited by josepho

              Hmm, this is interesting. I have two pfsenses in an HA deployment. Based on ntop, the highest talker on the LAN side are the two pfsense. Does this make sense? I guess i should disable pfsync Synchronize Peer IP?

              b578d07f-4778-417b-ae42-9a99bf0b2abd-image.png

              277d6260-45ec-4310-9b18-366e3e4a54f7-image.png

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                You need pfSync enabled between the nodes if you want to have smooth failovers. That's what syncs states between the firewalls.

                What does ntopng show the interface speed as? You can configure the interface speed there.

                1 Reply Last reply Reply Quote 0
                • P
                  pfpv @stephenw10
                  last edited by

                  @stephenw10 said in Traffic rate for "lagg0" higher than set maximum 1000 Mbit:

                  Something may have inherited the link speed incorrectly. Something may have been set to 1G, traffic shaping for example.

                  While looking for something else I found that I also have similar messages in my syslog. Looking further I found this recommendation for the vnStat package:

                  "Every NIC is added on install. So if a NIC is added (or removed) on the firewall, remove the package and install again. If the firewall has data for a NIC vnStat will report the data even if the NIC has been removed.
                  A reinstall of the package will not change this as the firewall has data pertaining to the non existent data and thus other packages such as vnstat2 will report the data it has or has found."

                  Link: https://docs.netgate.com/pfsense/en/latest/packages/traffic-totals.html

                  Indeed I changed my hardware and restored the configuration from the old one. Some NICs changed from 1Gb to 10Gb.

                  However, after removing and installing the package I see this in the log:

                  Monitoring (10): tun_wg0 (1000 Mbit) pppoe1 (1000 Mbit) pfsync0 (1000 Mbit) pflog0 (1000 Mbit) ix1 (10000 Mbit) ix0 (10000 Mbit) igb1 (10 Mbit) igb0 (10 Mbit) enc0 (1000 Mbit) em0 (1000 Mbit)
                  

                  And it's incorrect. My pppoe1 sits on ix0 and my fiber speed is 3/3Gbps, so higher than 1000Mbit vnStat thinks. Also igb0 and igb1 are 1000Mbit, not 10Mbit (they are not assigned yet, though).

                  I suppose the log messages we see are no more than a minor nuisance but is there a way to assign correct interface speeds for vnStat or disable these messages?

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Hmm, I'm not aware of any way to change that. There is a conf file in /user/local/etc but it's auto generated so anything did there would be over-written.

                    P 1 Reply Last reply Reply Quote 1
                    • P
                      pfpv @stephenw10
                      last edited by

                      @stephenw10, can these messages be safely ignored?

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        Yes, I've never seen that cause a problem.

                        1 Reply Last reply Reply Quote 1
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.