Home Network Layout, Traffic Shapping & More questions.
-
The more I play with pfSense the less I know...I have been working for days trying to get this right and hope I can get some direction. Any links or pointers are much appreciated. I am in a somewhat unique situation as I live in rural America and we have terrible internet availability at my house; due to this I have 3 different internet connections. I have 2 6M/600k DSL connections and 1 4GLTE connection. I have combined all my WAN's into a gateway group in order to get decent downloads on protocols that allow multiple connections. (i.e. Usenet ,BitTorrent). I think the best route would be to shape traffic but not sure if there is a better route. Below is what I hope to accomplish.
Traffic Shaping Goals
-
I want to prioritize my Xbox traffic over all other traffic. My Xbox needs to flow down its own pipe and
it must be 1 of the 2 DSL connections as my ATT 4GLTE connection is double NAT and therefore I
cannot get an open NAT. -
Next I would like HTTP, DNS Traffic, Netflix Traffic
-
And last I would like Usenet/p2p traffic.
I have tried multiple different setups using HFSC and ended up just using PRIQ because I could not get HFSC to utilize all of my connection when downloading via Usenet. Should I continue with PRIQ or keep trying to get HFSC working? Is there a better option?
Web Filtering
- I want web filtering on LAN2 so the kids are not getting to porn sites and such. I have used this with
untangle and found it to work great, is there something similar for pfSense? I have heard of
Squidguard but not sure if this is the best route.
Creating 2nd Lan for IOT & Kids Devices
- I was planning on creating a 2nd LAN and moving all the kids tablets and IOT devices to separate them from the primary network. Is this best practice? Different recommendation?
Any other unrelated recommendations are appreciated as well. Thanks in advance.
-
-
@xxnumbxx said in Home Network Layout, Traffic Shapping & More questions.:
Web Filtering
I want web filtering on LAN2 so the kids are not getting to porn sites and such. I have used this with
untangle and found it to work great, is there something similar for pfSense? I have heard of
Squidguard but not sure if this is the best route.I can suggest pfBlockerNG-Dev package. Spend sometime browsing here and post specific questions there: https://forum.netgate.com/category/26/traffic-shaping