Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Increased RTT times

    Scheduled Pinned Locked Moved General pfSense Questions
    13 Posts 4 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • gregeehG
      gregeeh
      last edited by

      Thanks for the reply.

      Here is the quality graph.  Seems not too bad, yes/no?

      PfSense running on Qotom mini PC
      CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
      UniFi AC-Lite access point

      1 Reply Last reply Reply Quote 0
      • dennypageD
        dennypage
        last edited by

        The amount of packet loss seems high to me.

        1 Reply Last reply Reply Quote 0
        • H
          Harvy66
          last edited by

          To give an idea of what your quality graph should probably look like, I included a wide range of screenshots I've done over the years. The more recent 12ms pings is because I switched to using the external target of 4.2.2.2 instead of my ISPs speedtest server. This way I could monitor my internet connection instead of just my link.

          I'm assuming your PPPOE is probing an ISP target.
          Two things could be at play and could be a mix

          • Your link has issues

          • Your target has issues

          QualityMonitor.PNG
          QualityMonitor.PNG_thumb
          QualityJan72018.PNG
          QualityJan72018.PNG_thumb
          BusySeeding.png
          BusySeeding.png_thumb
          24hLoad.png
          24hLoad.png_thumb
          Jan2016Quality.png
          Jan2016Quality.png_thumb

          1 Reply Last reply Reply Quote 0
          • dennypageD
            dennypage
            last edited by

            Harvy has a particularly nice WAN link. Here is a 2 day graph from my more pedestrian link.

            quality.png
            quality.png_thumb

            1 Reply Last reply Reply Quote 0
            • gregeehG
              gregeeh
              last edited by

              As my main concern was the increased VPN (vpn_gw) RTT times I did the graph below.  Keep in mind my target is not external but 10.10.100.1.

              If I graph my WAN (WAN_PPPOE) where the monitoring IP is blank in System | Routing | Gateways for the same time period I get this:

              Thanks again for your help.

              Greg

              PfSense running on Qotom mini PC
              CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
              UniFi AC-Lite access point

              1 Reply Last reply Reply Quote 0
              • dennypageD
                dennypage
                last edited by

                Low levels of packet loss on the WAN link will result in increased latency on the VPN link. Higher levels of packet loss on the WAN link will result in both the WAN and VPN connections resetting. This is likely why you are seeing frequent restarts of dpinger.

                1 Reply Last reply Reply Quote 0
                • gregeehG
                  gregeeh
                  last edited by

                  This shows the RTT for the VPN (vpn_gw) suddenly increased on Jan 6 while the packet loss does not change on either the WAN or the VPN.

                  PfSense running on Qotom mini PC
                  CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                  UniFi AC-Lite access point

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by

                    So did you edit your vpn monitor ip?  Normally out of the box setting up a vpn client connection in pfsense it will point to its own interface as the gateway - ie the vpn connection.  So the RTT should be like almost nothing..

                    Is pfsense pointing to the far end of the vpn connection, or its own IP as the monitor?

                    vpnconnection.png
                    vpnconnection.png_thumb
                    vpngateway.png
                    vpngateway.png_thumb

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    1 Reply Last reply Reply Quote 0
                    • gregeehG
                      gregeeh
                      last edited by

                      @johnpoz:

                      So did you edit your vpn monitor ip?  Normally out of the box setting up a vpn client connection in pfsense it will point to its own interface as the gateway - ie the vpn connection.  So the RTT should be like almost nothing..

                      Is pfsense pointing to the far end of the vpn connection, or its own IP as the monitor?

                      As per these instructions https://vpn.ac/knowledgebase/63/OpenVPN-on-pfSense.html from my VPN Provider the VPN Monitor IP is 10.10.100.1.  Do not know why that was chosen.

                      PfSense running on Qotom mini PC
                      CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                      UniFi AC-Lite access point

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        Well that is clearly some IP in their network.. If your normal wan monitoring RTT has not increased you will have to get with them on any slowdowns your seeing in their network.

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 0
                        • gregeehG
                          gregeeh
                          last edited by

                          @johnpoz:

                          Well that is clearly some IP in their network.. If your normal wan monitoring RTT has not increased you will have to get with them on any slowdowns your seeing in their network.

                          OK, Thanks for your time.

                          Greg

                          PfSense running on Qotom mini PC
                          CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                          UniFi AC-Lite access point

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.