Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Limit bandwidth per IP - FW Rule for every single address?

    Scheduled Pinned Locked Moved Traffic Shaping
    5 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      Assassin
      last edited by

      Cheers folks,

      this is my first topic here since I'm new to pfsense.

      I use a pfsense box v2.0.2 at a boarder school. The bandwidth is very limited, about 4Mbps.
      I want to ensure that every user gets appropriate access to the net, so I'd like to limit speed
      for every IP in the LAN Subnet to 300kbps.

      I created inbound/outbound limiters and tested them with a firewall rule for single addresses, works
      fine so far. But do I have to create a rule for every single address in the subnet? That would be a lot
      of work, since there is no option in the firewall rules to pinpoint a range of addresses.

      Perhaps this is the complete wrong way to achieve what I'm looking for, so maybe someone can give
      me a hint.

      Thanks in advance!

      1 Reply Last reply Reply Quote 0
      • S
        senser
        last edited by

        please have a look here: http://forum.pfsense.org/index.php/topic,59224.0.html
        the anon thingie is a subnet and every user in the subnet gets limited to the bandwidth specified.

        We use the mighty pf, we cannot be fooled.

        1 Reply Last reply Reply Quote 0
        • A
          Assassin
          last edited by

          Thanks for your reply senser, but what does the "use version" in the linked thread mean? I don't get it.  ???

          1 Reply Last reply Reply Quote 0
          • S
            senser
            last edited by

            I have no idea :) Does it matter? I don't think so.

            We use the mighty pf, we cannot be fooled.

            1 Reply Last reply Reply Quote 0
            • A
              Assassin
              last edited by

              Ok, I have the exact same configuration. Two limiters, a firewall rule for the LAN interface with "LAN net" as source.
              As you stated "Anon Freifunk" is a subnet. LAN net is my LAN subnet, so it schould work.  ;D

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.