Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cheap broadband router vs. pfsense (playstation 3)

    General pfSense Questions
    3
    5
    2.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mmlenz
      last edited by

      I switched to pfsense because neither of the older broadband routers I had on hand would give me full bandwidth on my 60/5 cable connection.  I also intended to do multi-wan with a spare dsl connection.

      What is this $15 router doing (or able to do) that allows my PS3's to run perfectly behind it without a single hiccup, yet pfsense requires a special configuration (static ip lease, AON) ?  Hell I can do video chat at the same time on both PS3's with no problems on the cheap router.

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        pfSense scrambles per default outgoing source ports.
        This provides an additional layer of security.

        Most bad implementations of a network-stack have problems with this.
        (And yes i think the network stack of the PS3 is badly implemented if it cannot handle source ports which are not expected).

        At least on the pfSense you KNOW why it works/doesnt work, while the cheap router hides a lot of ugly stuff from you.

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • M
          mmlenz
          last edited by

          OK, so the AON config (used from other posts on the forums) is to use static source ports rather than scrambled?  and the static ip lease is because you only want to enable that for specific devices that need it leaving the rest of the network alone?

          1 Reply Last reply Reply Quote 0
          • M
            mmlenz
            last edited by

            What about IP fragments?  anyway to enable them?

            I did find the following post:

            http://martini.nu/blog/2008/10/ps3-pf.html

            i checked the DF and scrub checkboxes on system / advanced but the network test on the ps3 is still complaining about the router not supporting ip fragments.

            1 Reply Last reply Reply Quote 0
            • K
              ktims
              last edited by

              This is extremely common on modern networks as a result of Path MTU Discovery. Most TCP packets on modern networks will have the DF bit set. For example run a tcpdump -v on your network and you'll find that pretty much every TCP packet has the DF bit set.

              The problem is almost certainly something else.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.