Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    HELP FOR A LANPARTY

    Scheduled Pinned Locked Moved Routing and Multi WAN
    13 Posts 4 Posters 7.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      Perry
      last edited by

      As a side note force users to use opendns.
      2nd side note, sites like youtube don't like loadbalancing.

      /Perry
      doc.pfsense.org

      1 Reply Last reply Reply Quote 0
      • A
        apocalipsis
        last edited by

        @GruensFroeschli:

        It depends on how your WAN's arrive at your location.
        Is it a standalone device (a router?) on which you can configure the internal subnet?

        I think so (i am not sure)

        @GruensFroeschli:

        2 PC's.
        One for loadbalancing, the other for traffic shaping.
        You dont want someone leeching like crazy and slowing down everyone else).

        It is a very ingenious option that I would never have thought

        I will try first this option, but… I want to have a bullet extra ... this way if the first option fails in half of the party ... that will be better? ... an equipment with 4 nics or 2 equipments with 2 nics (all without vlan)... i known two pfsense machines ... two diferent gateways (it doesnt matter, we will indicate the users to change the gateway)

        Another question... someone has tried pfsense in an vmware environment with an intesive charge???? (this option will be another bullet... if our first lines of defense down... we will survive )

        1 Reply Last reply Reply Quote 0
        • A
          apocalipsis
          last edited by

          @Perry:

          As a side note force users to use opendns.
          2nd side note, sites like youtube don't like loadbalancing.

          Please… can you explain more these notes???

          1 Reply Last reply Reply Quote 0
          • P
            Perry
            last edited by

            OpenDNS adds extra security against bad sites with virus, spyware (keeps your party going) + parents tend to like knowing that there son wont be looking at naked ladies on porn sites.
            Look at the pictures on how to use openDNS
            IMO The Loadbalancing pool benefit ( in it's current state ) is slim to none. So I would much rather go with failover pools and split the load by assigning groups of users to a failover pool.
            In your case with 4 wan i would make 3 failover pool's:

            wan2FailsToWan assigned to an alias with ip ...10 - 50
            wan3FailsToWan assigned to an alias with ip ..
            .51 - 100
            wan4FailsToWan assigned to an alias with ip ..*.101 - 150
            (Remember ftp downloads will only be using wan)

            Unfortunately GruensFroeschli traffic sharping will be lost unless you will be using pfSense snapshot version 1.3 alpha alpha with multi wan sharper support. How well the 1.3 work is unknown to me.

            /Perry
            doc.pfsense.org

            1 Reply Last reply Reply Quote 0
            • GruensFroeschliG
              GruensFroeschli
              last edited by

              Perry why do you think the balancer in its current state doesnt benefit such a setup?
              And why cant you use the shaper with your solution as well?
              After all a single machine is dedicated to shaping, because you cannot shape multiple wans in 1.2

              For the OpenDNS. I would force the users to use the pfSense DNS-forwarder, block outbound port 53 traffic, and set the OpenDNS-servers on pfSense.

              Like this you can create your own names for specific servers.
              –> At the last lan-party i helped we've been using pfSense as well and like this we could direct the names intra, intranet, webserver, game-stats, etc. all to our intranet-server.

              We do what we must, because we can.

              Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

              1 Reply Last reply Reply Quote 0
              • P
                Perry
                last edited by

                Perry why do you think the balancer in its current state doesnt benefit such a setup?

                When you load a youtube video with a loadbalancing pool it will often fail or be very slow to start. Sticky connection is/was the solution but unfortunately it had other problems.

                And why cant you use the shaper with your solution as well?
                After all a single machine is dedicated to shaping, because you cannot shape multiple wans in 1.2

                As I split the load by user IP I can't see how a pc in between could handle this.

                /Perry
                doc.pfsense.org

                1 Reply Last reply Reply Quote 0
                • GruensFroeschliG
                  GruensFroeschli
                  last edited by

                  Well since the balancer-machine is AFTER the shaper it doesnt look like anything gets balanced at all (seen from the shaper-machine).

                  But i think we get offtopic from the original question.
                  And i think this all is a bit overkill for a LAN.

                  A single pfSense with balancing as perry said is probably the easiest.

                  When we organised a LAN, internet was basically here for troubleshooting problems and downloading drivers / new virus definitions / check E-mails / etc, and NOT for downloading or watching youtube.

                  We've run the captive portal and had a Freeradius on th pfSense.
                  When someone needed internet access he could come to us and we created an user which was valid for 1 hour.

                  Ok we didnt have 4x4Mbis symetric bandwith at our hands…. ;)

                  We do what we must, because we can.

                  Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                  1 Reply Last reply Reply Quote 0
                  • E
                    eri--
                    last edited by

                    Though i would give 1.3 a shot at this it should perform well enough and you need its QoS capabilities.
                    Since as i may forecome you need only loadbalance and some filtering it may serve you well.

                    1 Reply Last reply Reply Quote 0
                    • A
                      apocalipsis
                      last edited by

                      @GruensFroeschli:

                      When we organised a LAN, internet was basically here for troubleshooting problems and downloading drivers / new virus definitions / check E-mails / etc, and NOT for downloading or watching youtube.

                      We've run the captive portal and had a Freeradius on th pfSense.
                      When someone needed internet access he could come to us and we created an user which was valid for 1 hour.

                      Ok we didnt have 4x4Mbis symetric bandwith at our hands…. ;)

                      This solution for slow inet connection is very good…. (i was in a lanparty which has this trouble... and they couldnt find a solution ... so, we had no inet....:-(    ....)

                      1 Reply Last reply Reply Quote 0
                      • A
                        apocalipsis
                        last edited by

                        @ermal:

                        Though i would give 1.3 a shot at this it should perform well enough and you need its QoS capabilities.
                        Since as i may forecome you need only loadbalance and some filtering it may serve you well.

                        First i will try QoS new capacities of 1.3.

                        Another question… is there any software to "test or emulate" the conditions of use of a lanparty????

                        1 Reply Last reply Reply Quote 0
                        • E
                          eri--
                          last edited by

                          search for packet generator.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.