Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Traced down why connections are being refused under heavy load but how to fix?

    Scheduled Pinned Locked Moved General pfSense Questions
    16 Posts 5 Posters 8.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      GoldServe
      last edited by

      I have dual wan and sometimes the cable modem changes IP once every few months and my lan rule to route all hosts on the same subnet is slightly incorrect. Fixed now. When I don't torrent, everything is fine and dandy. Anyone see any glaring statistics when i'm torrenting?

      1 Reply Last reply Reply Quote 0
      • J
        jabns
        last edited by

        I have the same problem.

        I have two 18mbit(down) 2.5mbit(up) links and it seems to happen when i am seeding torrents.

        I will leave ubuntu seeding when i am at work today and see if it happens.

        James

        1 Reply Last reply Reply Quote 0
        • H
          hoba
          last edited by

          System>advanced: Bump up the maximum firewallstates value. You also can monitor states either at status>system or by viewing the corresponding states rrd graph (status>rrdgraphs). Maybe you are running just out of states.

          1 Reply Last reply Reply Quote 0
          • G
            GoldServe
            last edited by

            Thanks for your suggestion but that is the first thing I did:

            LIMITS:

            states    hard limit 100000

            src-nodes  hard limit  10000

            frags      hard limit  5000

            100,000 states is enough when I reach around 4-5K only.

            1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan
              last edited by

              You guys mentioned the word "torrents".

              My question : are you sure that some one isn't filtering upstream ??
              Some kind of QOS system used by your ISP ?

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              1 Reply Last reply Reply Quote 0
              • G
                GoldServe
                last edited by

                I can't confirm 100% but on my wrt54g modded with tomato firmware, I can run for a long time and my connection doesn't slow down.

                Also how I know it is not the ISP problem and it is the pfsense box because getting internally to 192.168.1.1 is a big problem too. Connections are reset, refresh 15 times and 1 time the page will load half.

                Sigh

                1 Reply Last reply Reply Quote 0
                • GertjanG
                  Gertjan
                  last edited by

                  @GoldServe:

                  I can't confirm 100% but on my wrt54g modded with tomato firmware, …

                  Just forget about my question. If another router works, then no ISP troubles.

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  1 Reply Last reply Reply Quote 0
                  • G
                    GoldServe
                    last edited by

                    No ideas still?

                    1 Reply Last reply Reply Quote 0
                    • G
                      GoldServe
                      last edited by

                      I can't believe I was so dumb. It is NOT PFSENSE and it was my windows xp sp2 causing it. I thought I had cracked the tcpip.sys to allow more than 10 syn connections but I guess I didn't. It was XP causing the problems and when I boosted the number of connections to 50, i'm all fine (crosses fingers)

                      THANKS!

                      1 Reply Last reply Reply Quote 0
                      • H
                        hoba
                        last edited by

                        I never thought it was a good idea from microsoft to set such a low limit  :P

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.