Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PfSense crash after using Traffic Shaping Wizard

    Scheduled Pinned Locked Moved Traffic Shaping
    13 Posts 7 Posters 4.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      Naum
      last edited by

      I can too observe this crash on latest pfSense.

      4 interfaces: re0, igb0, igb1 and igb0_vlan7. Before wizard, two limiters have been configured if this is important BTW. I have configured CBQ on all interfaces (WAN, LAN, DMZ, link4 …) with traffic_shaper_wizard_multi_all.xml. I have omitted VOIP and Games part of the wizard, just wanted to get initial skeleton for tweaking to my needs.

      After saving configuration and reloading firewall, web gui becomes unresponsive, ssh connection too. New connections are not possible. ICMP - nothing. During reboot, ping is working for about 3-5 seconds, and then everything freezes. Attached on console, I can see machine freezes when starting firewall.

      Booted in single user mode and restored latest pre-shaper config.xml, booted in normal mode ok.

      No such crash if I decide to use HFSC during wizard.

      1 Reply Last reply Reply Quote 0
      • W
        W4RH34D
        last edited by

        Same thing here - what the fuck!

        Didn't use the wizard just removed the shaper and added it again.

        Good thing we have a secondary legacy T1 as a backup or we'd have been completely hosed.

        Did you really check your cables?

        1 Reply Last reply Reply Quote 0
        • N
          Nullity
          last edited by

          @W4RH34D:

          Same thing here - what the fuck!

          Didn't use the wizard just removed the shaper and added it again.

          Good thing we have a secondary legacy T1 as a backup or we'd have been completely hosed.

          Great bug report, thanks.

          The details you include are especially useful.

          Please correct any obvious misinformation in my posts.
          -Not a professional; an arrogant ignoramous.

          1 Reply Last reply Reply Quote 0
          • W
            W4RH34D
            last edited by

            @Nullity:

            @W4RH34D:

            Same thing here - what the fuck!

            Didn't use the wizard just removed the shaper and added it again.

            Good thing we have a secondary legacy T1 as a backup or we'd have been completely hosed.

            Great bug report, thanks.

            The details you include are especially useful.

            I was too busy freaking out to contribute.

            When I got on site there were no crashes.  All it did was apply the traffic shaping rules and some how the wan interfaces were offline.  I had access to the gui through this and it was a simple reboot after removing the codel rules.

            I'm fairly certain it's the realtek ethernet ports going wonk - I had put a quad intel nic in there and have put off transitioning 2 of the ports because it was working fine.

            I noticed a month or so back when I applied traffic shaping rules or removed them the system would speed up tremendously, so every 5 days I'd add and remove traffic shaping rules.  Worked flawlessly so it was quite a shock last night.

            I will admit, pfsense had lulled me to sleep from working so well.  I hadn't had an issue like this in a year and a half.

            Did you really check your cables?

            1 Reply Last reply Reply Quote 0
            • M
              mhertzfeld
              last edited by

              One thing to note from my setup, not sure if this will help or not.

              I have a realtek interface built into my MB that I am using for my WAN.

              When I experienced the problem I had a CBQ traffic shaping rule enabled on the WAN.  Not sure about the details of the rule since I deleted it a few weeks back and don't have a backup config with me to check against.

              I no longer have any traffic shaping rules on my WAN and have been problem free for a few weeks now.

              1 Reply Last reply Reply Quote 0
              • W
                W4RH34D
                last edited by

                Yes I will keep this thread posted with my developments as well.

                I tred through the nightmare of moving to the rest of my intel ports today - every curveball issue dealt with. 8)

                There may be more to this issue than pfsense - comcast business had a hell of a time giving me my settings back after I factory reset their modem to clear the mac out.

                What a freaking nightmare!

                LOL

                I can laugh now that I'm on the other side of that scenario.

                Did you really check your cables?

                1 Reply Last reply Reply Quote 0
                • W
                  W4RH34D
                  last edited by

                  The plot thickens.

                  The arp table mac address is one character off from the mac address the business modem is reporting.

                  We don't have any issues, iperf3 was giving me as fast as my upload to the site allowed - but it is making the gateway monitor throw a shit-fit about packet loss on ipv4 gateway but ipv6 gateway is fine.

                  I don't know if i've seen any stranger things in my day. ;)

                  Edit:

                  Well it was a blown up cable modem from our thunderstorm that worked just enough to be difficult to spot.
                  It was merely a coincidence I was changing the traffic shaping rules when the site went down.
                  ::)

                  Jot this down as things that won't be missed when we finally get fibre - hopefully in my lifetime.

                  Did you really check your cables?

                  1 Reply Last reply Reply Quote 0
                  • S
                    Steve Evans
                    last edited by

                    I've just upgraded to 2.3.2 today (first opportunity with no users to upset) and loading my old config caused a hang during firewall initialisation. Incrementally adding my old config to the default (System, DNS, DHCP etc.) was fine until the shaper section.

                    Certainly appears to be an instability here.

                    I'll investigate further tomorrow.

                    Steve

                    1 Reply Last reply Reply Quote 0
                    • J
                      justinl
                      last edited by

                      Has anyone run into this issue recently or know if there is a ticket to follow up? I just enabled QoS, using the multi-link wizard with CBQ. I have added a couple of custom floating rules for particular services on our network. Shortly after booting, the pfsense seems to lock up. When I reboot, it is only alive again for a few minutes before it locks again. When I removed traffic shaping, the problem disappeared. I'm running 2.3.4-RELEASE-p1. Thanks!

                      1 Reply Last reply Reply Quote 0
                      • J
                        justinl
                        last edited by

                        It looks like this is a more recent thread on the same issue: https://forum.pfsense.org/index.php?topic=129267.15

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.