Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Traffic Shaper / Alias / Firewall Rule config Share

    Scheduled Pinned Locked Moved Traffic Shaping
    23 Posts 8 Posters 13.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sideout
      last edited by

      The limiter handles that. The LAN rule with the limiter for TCP will divide up whatever bandwidth you set equally between everyone .

      You can change that amount on the fly as you need. Typically I set it at like 30 to 40mbit for the first couple of hours then we throttle back as we start tourneys.

      We have our LoL tourney on Sunday as well to help.

      Also using the rule with the LoL server IP's help too .

      1 Reply Last reply Reply Quote 0
      • S
        sideout
        last edited by

        So we have another LAN this weekend. There will be 4 modems being used for this configuration.  Using HFSC and will be allocating traffic to specific modems with LAN interface rules.  I will post up some results after the event.

        1 Reply Last reply Reply Quote 0
        • M
          mcwtim
          last edited by

          @sideout:

          The limiter handles that. The LAN rule with the limiter for TCP will divide up whatever bandwidth you set equally between everyone .

          You can change that amount on the fly as you need. Typically I set it at like 30 to 40mbit for the first couple of hours then we throttle back as we start tourneys.

          I've imported your Single WAN/Single LAN PRIQ configs into a clean install, the Limiter tab is empty. Tips?

          1 Reply Last reply Reply Quote 0
          • S
            sideout
            last edited by

            It might have gotten left out. You can just manually create it.  I went back to HFSC instead of PRIQ. If I get a chance I will try and redo it.

            1 Reply Last reply Reply Quote 0
            • S
              sideout
              last edited by

              I restored the shaper xml from the zip file and the limiter is there. I restored into my test system and then rebooted.  It is under Firewall / Traffic Shaper / Limiter tab for the settings of it and then under Firewall / Rules / LAN interface for the implemetation of it.

              You might have to reboot after you restore the configuration to see it.

              1 Reply Last reply Reply Quote 0
              • S
                sideout
                last edited by

                Here is another screenie of HFSC with the limiter in action.  I have a laptop on the LAN downloading from steam. Limiter is set to 8Mbits down  / 2.5Mbits upload.  I am on another PC running LoL.  LAN interface is limited to 20Mbits under qInternet and WAN's are limited to 5Mbits.  qGames has 20% realtime and 40% overall.  qWeb has 40% on the LAN side as well.  Granted this is not like a full LAN party but it gives you an idea of how it should work.

                I have a 135 person LAN this weekend so I will post up screenies from that along with graphs and charts.

                IngameLoLSteamdownloadHFSC.jpg
                IngameLoLSteamdownloadHFSC.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • M
                  mcwtim
                  last edited by

                  I used the Single WAN/Single LAN PRIQ setup at a 48 man LAN party yesterday. Everything worked very well. We were lucky to have an exceptional internet connection, 472Mb/407Mb which I limited to 350Mb/350Mb. In game pings to internet servers were in the 30-40ms range. I was using a LANcache setup as well. The whole setup worked so well that a 100Mb/12Mb connection would have provided the exact same experience.

                  I was fortunate to have a well behaved group of attendees, no one was abusing the network with torrents so really didn't get to see how it would have handled it. Given there were zero complaints even when people were downloading games I think the limiter would have handled it fine.

                  @sideout thanks again for the configs and advice given.

                  1 Reply Last reply Reply Quote 0
                  • S
                    sideout
                    last edited by

                    Awesome!!! Glad it all worked good for you. I would love to be able to find a venue that had that Internet connection .

                    1 Reply Last reply Reply Quote 0
                    • D
                      denielle8412
                      last edited by

                      @sideout:

                      Here is a single WAN configuration.  I put it in a different dropbox so you wont have to get them mixed up.

                      https://www.dropbox.com/s/68267ssgwcdack2/PFSenseSingleWAN.zip

                      This is the same shaping and rules just with a single WAN.  Note I changed the name of the LAN interface so you can name it whatever.
                      The limiter here is 25MB / 2.5MB since this will be on a 50MB/5MB modem.  Either delete the rule or change the limiter if you don't want to use it.

                      Sir the link is dead … re-up please...

                      1 Reply Last reply Reply Quote 0
                      • D
                        denielle8412
                        last edited by

                        @sideout:

                        I have added my configuration for Single WAN / Single LAN PRIQ setup.  Some things to note:

                        1. Limiter for TCP is in effect with 8MB download / 1MB upload set so change it to suit your speeds.
                        2. PRIQ is used versus HFSC.  DNS queries are under the qGames which is at priority 7.

                        This is my first attempt at PRIQ compared to HFSC but it does seem that I am getting lower pings in a game (LoL) compared to HFSC.  I am seeing 95ms with PRIQ versus 112 - 120ms with HFSC. This is with Steam going in the background downloading at almost 1MB/sec. (See attached screenshot).

                        Feel free to use and if you have suggestions or tips , they are greatly appreciated.

                        Here is the link to the config on dropbox.  https://www.dropbox.com/s/6loxfax6k4xr78u/LANPARTYPRIQSLSW.zip

                        Sir the link is dead … re-up please...

                        1 Reply Last reply Reply Quote 0
                        • S
                          sideout
                          last edited by

                          See my other reference threads in this forum.

                          1 Reply Last reply Reply Quote 0
                          • N
                            Nukos
                            last edited by

                            Hello I can't seem to find any links from you in this forum with the dropbox links that is still alive. Can you please repost a live link for the configs it would help alot for us, thanks.

                            1 Reply Last reply Reply Quote 0
                            • M
                              mcthr0
                              last edited by

                              Sir can you re upload again the file  because the link is broke thanks

                              1 Reply Last reply Reply Quote 0
                              • N
                                Nullity
                                last edited by

                                @mcthr0:

                                Sir can you re upload again the file  because the link is broke thanks

                                sideout has newer threads with newer configs.

                                https://forum.pfsense.org/index.php?action=profile;area=showposts;sa=topics;u=11283

                                https://forum.pfsense.org/index.php?topic=119872

                                Please correct any obvious misinformation in my posts.
                                -Not a professional; an arrogant ignoramous.

                                1 Reply Last reply Reply Quote 0
                                • S
                                  sideout
                                  last edited by

                                  Yes I have newer configs posted as Nullity said.  (And thanks for that man!!!)

                                  I have switched models to using multiple modems and grouping DHCP clients into pools and then using LAN firewall rules to send those aliases out those modems.

                                  I did it this way because the trend has been to go back to TCP for games now and limiting per client for TCP / UDP is easier than running complex shaping rules with HFSC..

                                  I have been keeping about 50 people on a modem and this config has worked out great.  My config has been run and tested in 3 separate LAN's of over 150 people.  This is a LAN party config done for that purpose.

                                  My HFSC config can be used for LAN parties but I am not updating the Alias lists for the newer games so that will need to be done.

                                  You can use the HFSC config and modify it how you need as some have done for their purposes.

                                  If I ever get a venue with a big connection , I would go back to HFSC for shaping but in my area , it's TWC / Spectrum or nothing and they wont give a big connection so we have to chain multiple residential modems together.

                                  Here is the link to my public PFSense config location.  I have been running it virtually as well. This is my modified Vmware PFSense.

                                  https://drive.google.com/drive/folders/0B96G4GloGCiKRklTaE83SU9nY0E?usp=sharing  password is pfsense2016 for the build.

                                  1 Reply Last reply Reply Quote 0
                                  • First post
                                    Last post
                                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.