Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Increased RTT times

    Scheduled Pinned Locked Moved General pfSense Questions
    13 Posts 4 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • dennypageD
      dennypage
      last edited by

      The amount of packet loss seems high to me.

      1 Reply Last reply Reply Quote 0
      • H
        Harvy66
        last edited by

        To give an idea of what your quality graph should probably look like, I included a wide range of screenshots I've done over the years. The more recent 12ms pings is because I switched to using the external target of 4.2.2.2 instead of my ISPs speedtest server. This way I could monitor my internet connection instead of just my link.

        I'm assuming your PPPOE is probing an ISP target.
        Two things could be at play and could be a mix

        • Your link has issues

        • Your target has issues

        QualityMonitor.PNG
        QualityMonitor.PNG_thumb
        QualityJan72018.PNG
        QualityJan72018.PNG_thumb
        BusySeeding.png
        BusySeeding.png_thumb
        24hLoad.png
        24hLoad.png_thumb
        Jan2016Quality.png
        Jan2016Quality.png_thumb

        1 Reply Last reply Reply Quote 0
        • dennypageD
          dennypage
          last edited by

          Harvy has a particularly nice WAN link. Here is a 2 day graph from my more pedestrian link.

          quality.png
          quality.png_thumb

          1 Reply Last reply Reply Quote 0
          • gregeehG
            gregeeh
            last edited by

            As my main concern was the increased VPN (vpn_gw) RTT times I did the graph below.  Keep in mind my target is not external but 10.10.100.1.

            If I graph my WAN (WAN_PPPOE) where the monitoring IP is blank in System | Routing | Gateways for the same time period I get this:

            Thanks again for your help.

            Greg

            PfSense running on Qotom mini PC
            CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
            UniFi AC-Lite access point

            1 Reply Last reply Reply Quote 0
            • dennypageD
              dennypage
              last edited by

              Low levels of packet loss on the WAN link will result in increased latency on the VPN link. Higher levels of packet loss on the WAN link will result in both the WAN and VPN connections resetting. This is likely why you are seeing frequent restarts of dpinger.

              1 Reply Last reply Reply Quote 0
              • gregeehG
                gregeeh
                last edited by

                This shows the RTT for the VPN (vpn_gw) suddenly increased on Jan 6 while the packet loss does not change on either the WAN or the VPN.

                PfSense running on Qotom mini PC
                CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                UniFi AC-Lite access point

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  So did you edit your vpn monitor ip?  Normally out of the box setting up a vpn client connection in pfsense it will point to its own interface as the gateway - ie the vpn connection.  So the RTT should be like almost nothing..

                  Is pfsense pointing to the far end of the vpn connection, or its own IP as the monitor?

                  vpnconnection.png
                  vpnconnection.png_thumb
                  vpngateway.png
                  vpngateway.png_thumb

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • gregeehG
                    gregeeh
                    last edited by

                    @johnpoz:

                    So did you edit your vpn monitor ip?  Normally out of the box setting up a vpn client connection in pfsense it will point to its own interface as the gateway - ie the vpn connection.  So the RTT should be like almost nothing..

                    Is pfsense pointing to the far end of the vpn connection, or its own IP as the monitor?

                    As per these instructions https://vpn.ac/knowledgebase/63/OpenVPN-on-pfSense.html from my VPN Provider the VPN Monitor IP is 10.10.100.1.  Do not know why that was chosen.

                    PfSense running on Qotom mini PC
                    CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                    UniFi AC-Lite access point

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      Well that is clearly some IP in their network.. If your normal wan monitoring RTT has not increased you will have to get with them on any slowdowns your seeing in their network.

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • gregeehG
                        gregeeh
                        last edited by

                        @johnpoz:

                        Well that is clearly some IP in their network.. If your normal wan monitoring RTT has not increased you will have to get with them on any slowdowns your seeing in their network.

                        OK, Thanks for your time.

                        Greg

                        PfSense running on Qotom mini PC
                        CPU N3150, 2 GB memory, 32 GB SSD & 2 Realtek Gb Ethernet ports.
                        UniFi AC-Lite access point

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.