Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    sticky connections ignored

    Scheduled Pinned Locked Moved Routing and Multi WAN
    9 Posts 2 Posters 166 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      netblues
      last edited by

      Re: Sticky outgoing connections

      I haven't been using multiwan for quite some time, but when I did, everything worked as expected/
      I have revisited this scenario and it seems that stickiness is completely ignored.

      Load balancing works as expected, getting the full aggregate speed in multi connection speedtests.
      However one would expect that speedtests should use only 1 line with stickiness enabled, which doesn't seem to be the case

      This is also verified by having connections change source ip's which typically in e.g. web banking logs you out immediately when load balancing.

      I have
      8f66612e-9480-446d-9c5d-49cd75b7b6f6-image.png

      But I get nothing at

      be49a7df-d53d-45cb-b58f-f5b9c75fa795-image.png

      which is rather strange.

      This has worked in the past.

      This is on pfplus beta 25.07. Am I missing something or is it a bug?

      1 Reply Last reply Reply Quote 0
      • P
        pwood999
        last edited by

        Most speedtests are multi-threaded these days, hence they will load-balance.

        Use public iperf server with single session outbound, and it should stick.

        I also had the banking issue, so created an alias containing those sites, and added a rule using that alias to use a specifis gateway rather than the group.

        bb738773-ae0e-46f1-92fa-6b309ac6f6ce-image.png

        N 1 Reply Last reply Reply Quote 0
        • N
          netblues @pwood999
          last edited by

          @pwood999 said in sticky connections ignored:

          Most speedtests are multi-threaded these days, hence they will load-balance.

          Use public iperf server with single session outbound, and it should stick.

          What???

          No, you are wrong.

          If stickiness was working correctly, speedtests would stick and NOT load balance.

          What you suggest is a workaround for broken stickiness.

          P 1 Reply Last reply Reply Quote 0
          • P
            pwood999 @netblues
            last edited by

            @netblues If that were true, how would the Ookla App report the combined speed of multi-Wan configs ?

            I used to have both Virgin Cable (300Mb) & BT VDSL (400Mbps) at home. This test would be impossible if the Ookla app used a single connection !!

            2c94ee88-9a69-4340-ae6b-cfe58489123f-image.png

            N 1 Reply Last reply Reply Quote 0
            • N
              netblues @pwood999
              last edited by

              @pwood999 Obviously it would not.

              If stickiness is enabled, ookla speedtest only tests one wan.
              This is the expected behavior.

              Oookla is multihtreaded but ALL threads are done towards a SINGLE destination.
              It never connects to different ip's, so stickyness would kick in

              Obviously you had the same bug.

              If stickiness would stick, then you don't need to exclude ANYTHING.

              However the feature seems broken for quite some time.

              P 1 Reply Last reply Reply Quote 0
              • P
                pwood999 @netblues
                last edited by

                @netblues ok fair enough. Doesn't matter to me anymore because I cancelled my BT broadband last year & now have just VMO2 !!

                N 1 Reply Last reply Reply Quote 0
                • N
                  netblues @pwood999
                  last edited by

                  @pwood999 Yep., this seems to be the case for many, and in multi gig connections the need to load balance is only for speedtest pictures. :)

                  Sticky connections seem to be broken.

                  P 1 Reply Last reply Reply Quote 0
                  • P
                    pwood999 @netblues
                    last edited by

                    @netblues Not quite. My reason for having it was reliability for work not speed, so that consumer broadband failure didn't leave me isolated.

                    I didn't care about sticky connections because I had a suitable & simple work-around.

                    Another reason for using Alias & Rules was VM public IP was stable for months, so "allowed IP" on work lab firewalls did not require constant maintenance. BT public IP changed almost every day.

                    Also BT Router does not work with SamKnows, but VM Router does - hence this one needs an alias & rule. LB or Sticky would be useless !!

                    N 1 Reply Last reply Reply Quote 0
                    • N
                      netblues @pwood999
                      last edited by

                      @pwood999 Indeed.

                      I also run dual fiber links (on different physical fibers, with different building entry points)
                      for resilience, not speed.

                      Plain failover is enough for me too.

                      But issues are issues and should nevertheless be fixed.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.