Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to prepare my network for Google Meet Conference

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    15 Posts 5 Posters 2.6k Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B Offline
      blackfoot @bmeeks
      last edited by

      @bmeeks Hello Bmeeks, Yes you got the scenario. We have ISP bandwidth 500Mbps Download and 50Mbps Upload speed. And they will be having a simultaneous class every day. We have 80 plus teachers and they will be having Online classes at the same time. I have checked my Physical structure, so far based on my test it can still cater to this bandwidth over my LAN.
      My problem is in the Pfsense settings. It doesn't meet the expected output. I have tried to connect my LAN directly to the ISP Modem router and the result were smooth unlike when I let it pass through PfSense.

      1 Reply Last reply Reply Quote 0
      • B Offline
        blackfoot @DaddyGo
        last edited by

        @DaddyGo Hello DaddyGo,

        I have seen this guide but not sure if wherein Pfsense config should I apply these prep. I am still trying to understand most of the key stuff in PfSense.

        Thanks for the reply though

        1 Reply Last reply Reply Quote 0
        • B Offline
          blackfoot @bmeeks
          last edited by

          @bmeeks As I mentioned from my main message, I have allocated 4Mbps Download and 4Mbps Upload per IP with 40 users Online. And only conducted one Conference having me as the Host and them as my participants.

          The result was choppy audio and bad quality of the video. I have even let them connect through wired connections. So disappointing, I don't know what to do. 😖 😢 😥

          bmeeksB 1 Reply Last reply Reply Quote 0
          • bmeeksB Offline
            bmeeks @blackfoot
            last edited by

            @blackfoot said in How to prepare my network for Google Meet Conference:

            @bmeeks As I mentioned from my main message, I have allocated 4Mbps Download and 4Mbps Upload per IP with 40 users Online. And only conducted one Conference having me as the Host and them as my participants.

            The result was choppy audio and bad quality of the video. I have even let them connect through wired connections. So disappointing, I don't know what to do. 😖 😢 😥

            Remove all limiters and any traffic shaping you configured in pfSense. I don't think they are going to help much since pretty much ALL of your upload traffic is going to be video and audio. Limiters can be tricky to set up. I am assuming you have fiddled with them because of your earlier statement --

            By the way, I tried using a limiter 4mb up/down and traffic shaping but still it's not working for me.

            Asymmetrical WAN connections like you have are not the optimum setup for your requirements. I think you really need larger upload bandwidth.

            1 Reply Last reply Reply Quote 0
            • B Offline
              blackfoot
              last edited by

              Thanks a lot for your comments @bmeeks .
              I already have started a fresh installed pfsense. and to follow the link that @DaddyGo provided. my question is did I do it right.![alt text](image url)

              I tried to allow these outbound ports and google IP. and will test these this week if it works.
              7ef718a1-bb3a-4de1-9a00-9b50abb82bc9-image.png

              bmeeksB DaddyGoD 2 Replies Last reply Reply Quote 0
              • bmeeksB Offline
                bmeeks @blackfoot
                last edited by

                @blackfoot
                If these are your LAN rules, they are really unnecessary. Out of the box pfSense will let any traffic from the LAN go out to the Internet.

                Trying to use an IP address block as a Google destination is not wise because that IP assignment could change at any time. Google has a huge world-wide network of servers and thus can shuffle around their IP address assignments from time to time based on loading.

                Just leave the default "any any pass" rule in place on your LAN to start with. And if you later want to block specific traffic, then put block rules in front of the default "allow" rule. That will make your life much easier if you are not an experienced firewall administrator.

                B 1 Reply Last reply Reply Quote 0
                • DaddyGoD Offline
                  DaddyGo @blackfoot
                  last edited by DaddyGo

                  @blackfoot

                  @bmeeks "Asymmetrical WAN connections like you have are not the optimum setup for your requirements. I think you really need larger upload bandwidth."

                  I totally agree with what Bill is saying...
                  @blackfoot "We have 80 plus teachers and they will be having Online classes at the same time."
                  =horrible

                  ISP asymmetry can be a problem here...

                  BTW:
                  Here in Europe, Google has given individual contracts and service packages to schools due to the COVID situation.
                  it is worth "visiting" them with this question...😉

                  Cats bury it so they can't see it!
                  (You know what I mean if you have a cat)

                  B 1 Reply Last reply Reply Quote 0
                  • B Offline
                    blackfoot @bmeeks
                    last edited by

                    @bmeeks These are the WAN rules I just added. The three "PASS" rules below.

                    I got your point, I will just let everything pass in the firewall for a while. I am still trying to familiarize this Firewall conf.

                    Thank you for your help, appreciate it alot.

                    bmeeksB 1 Reply Last reply Reply Quote 0
                    • B Offline
                      blackfoot @DaddyGo
                      last edited by

                      @DaddyGo Asymmetrical = exactly, I agree.

                      But The school can't even afford a dedicated bandwidth. Here in Bahrain is too expensive, and even the ISP doesn't have any individual contracts for Schools in this COVID Situation. Even 4G doesn't cover the main provinces in this small Island.

                      1 Reply Last reply Reply Quote 0
                      • bmeeksB Offline
                        bmeeks @blackfoot
                        last edited by bmeeks

                        @blackfoot said in How to prepare my network for Google Meet Conference:

                        @bmeeks These are the WAN rules I just added. The three "PASS" rules below.

                        I got your point, I will just let everything pass in the firewall for a while. I am still trying to familiarize this Firewall conf.

                        Thank you for your help, appreciate it alot.

                        You should not need ANY user-added rules on your WAN. The stateful inspection engine of the firewall will handle allowing reply traffic through. Users are not connecting to your school. Everyone is connecting to Google's systems for Meet.

                        In pfSense you configure rules for traffic "inbound" into an interface, not "outbound" from an interface. You should be able to remove all three of your manually added rules on the WAN. That would greatly increase your security. With the pfSense out-of-the-box configuration, Google Meet should work just fine. You would not need to do anything except assign the LAN and WAN interfaces during the setup wizard. You might need to change the LAN IP netblock depending on what was previously in place at your school.

                        P 1 Reply Last reply Reply Quote 0
                        • P Offline
                          pi @bmeeks
                          last edited by

                          @bmeeks hello, I am still a new pfSense user but I’m wondering if any packages he may have installed could cause a slow down in traffic?

                          Q 1 Reply Last reply Reply Quote 0
                          • Q Online
                            q54e3w @pi
                            last edited by

                            @pi I think I’ve been dealing with something similar. You could theoretically load pfBlocker up with so many lists that it introduces additional load to your CPU that in turn adds latency to your system affecting video conferences and VOIP. What packages are you running?

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.