Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IpV6 flood

    Firewalling
    4
    6
    838
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      xkaas
      last edited by

      Hi

      Here's a quick screenshot of the logs:
      http://prntscr.com/ia34uj

      This is flooding my network, and making it slow and unstable.

      I have tried to block all IPv6 traffic, but no luck.

      I also block ping requests against that particular ipv4 ip. Nothing.

      What can I do?

      1 Reply Last reply Reply Quote 0
      • H
        Harvy66
        last edited by

        I wonder if the pinging is harming your network or the logging is. Just looking at the screenshot, it's like 2-3 pings per second.

        1 Reply Last reply Reply Quote 0
        • JKnottJ
          JKnott
          last edited by

          Perhaps I'm missing something, but I only see one IPv6 item and all the rest IPv4.

          PfSense running on Qotom mini PC
          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
          UniFi AC-Lite access point

          I haven't lost my mind. It's around here...somewhere...

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            That is an insignificant amount of traffic to be fingered as causing any kinds of slowdown.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • X
              xkaas
              last edited by

              Hi anyone.

              Yes. You guys were right. That is nothing.

              Take a look at this screenshot:
              http://prntscr.com/ib1rwk

              You see - That isnt alot of traffic either, However, its enough to slow my firewall down.

              The actual pipe only uses a few mbits of traffic. The stable table size is on 500.

              I use PFBlocker to block these connections. I cannot change the port, as its used for a game service.

              Is there anyway, I can minimize the impact? I guess its just quite large packets its sending.

              I've been thinking about upgrading the firewall with a way better CPU. Would that help my issue?

              I am unsure, if this is not what is causing the lagg. As I have a device connected to the network that is not going through the PFsense box which is working just fine, and a speedtest also shows around the speeds I pay for. Therefore, I am pretty sure its the box itself getting bombed with something. CPU sometimes spikes from 10% to 50% then down again slowly. Up and down.

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                @xkaas:

                Hi anyone.

                Yes. You guys were right. That is nothing.

                Take a look at this screenshot:
                http://prntscr.com/ib1rwk

                You see - That isnt alot of traffic either, However, its enough to slow my firewall down.

                No, it is not.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.