How to prepare my network for Google Meet Conference
- 
 @DaddyGo Hello DaddyGo, I have seen this guide but not sure if wherein Pfsense config should I apply these prep. I am still trying to understand most of the key stuff in PfSense. Thanks for the reply though 
- 
 @bmeeks As I mentioned from my main message, I have allocated 4Mbps Download and 4Mbps Upload per IP with 40 users Online. And only conducted one Conference having me as the Host and them as my participants. The result was choppy audio and bad quality of the video. I have even let them connect through wired connections. So disappointing, I don't know what to do.      
- 
 @blackfoot said in How to prepare my network for Google Meet Conference: @bmeeks As I mentioned from my main message, I have allocated 4Mbps Download and 4Mbps Upload per IP with 40 users Online. And only conducted one Conference having me as the Host and them as my participants. The result was choppy audio and bad quality of the video. I have even let them connect through wired connections. So disappointing, I don't know what to do.      Remove all limiters and any traffic shaping you configured in pfSense. I don't think they are going to help much since pretty much ALL of your upload traffic is going to be video and audio. Limiters can be tricky to set up. I am assuming you have fiddled with them because of your earlier statement -- By the way, I tried using a limiter 4mb up/down and traffic shaping but still it's not working for me. Asymmetrical WAN connections like you have are not the optimum setup for your requirements. I think you really need larger upload bandwidth. 
- 
 
- 
 @blackfoot 
 If these are your LAN rules, they are really unnecessary. Out of the box pfSense will let any traffic from the LAN go out to the Internet.Trying to use an IP address block as a Google destination is not wise because that IP assignment could change at any time. Google has a huge world-wide network of servers and thus can shuffle around their IP address assignments from time to time based on loading. Just leave the default "any any pass" rule in place on your LAN to start with. And if you later want to block specific traffic, then put block rules in front of the default "allow" rule. That will make your life much easier if you are not an experienced firewall administrator. 
- 
 @bmeeks "Asymmetrical WAN connections like you have are not the optimum setup for your requirements. I think you really need larger upload bandwidth." I totally agree with what Bill is saying... 
 @blackfoot "We have 80 plus teachers and they will be having Online classes at the same time."
 =horribleISP asymmetry can be a problem here... BTW: 
 Here in Europe, Google has given individual contracts and service packages to schools due to the COVID situation.
 it is worth "visiting" them with this question... 
- 
 @bmeeks These are the WAN rules I just added. The three "PASS" rules below. I got your point, I will just let everything pass in the firewall for a while. I am still trying to familiarize this Firewall conf. Thank you for your help, appreciate it alot. 
- 
 @DaddyGo Asymmetrical = exactly, I agree. But The school can't even afford a dedicated bandwidth. Here in Bahrain is too expensive, and even the ISP doesn't have any individual contracts for Schools in this COVID Situation. Even 4G doesn't cover the main provinces in this small Island. 
- 
 @blackfoot said in How to prepare my network for Google Meet Conference: @bmeeks These are the WAN rules I just added. The three "PASS" rules below. I got your point, I will just let everything pass in the firewall for a while. I am still trying to familiarize this Firewall conf. Thank you for your help, appreciate it alot. You should not need ANY user-added rules on your WAN. The stateful inspection engine of the firewall will handle allowing reply traffic through. Users are not connecting to your school. Everyone is connecting to Google's systems for Meet. In pfSense you configure rules for traffic "inbound" into an interface, not "outbound" from an interface. You should be able to remove all three of your manually added rules on the WAN. That would greatly increase your security. With the pfSense out-of-the-box configuration, Google Meet should work just fine. You would not need to do anything except assign the LAN and WAN interfaces during the setup wizard. You might need to change the LAN IP netblock depending on what was previously in place at your school. 
- 
 @bmeeks hello, I am still a new pfSense user but I’m wondering if any packages he may have installed could cause a slow down in traffic? 
- 
 @pi I think I’ve been dealing with something similar. You could theoretically load pfBlocker up with so many lists that it introduces additional load to your CPU that in turn adds latency to your system affecting video conferences and VOIP. What packages are you running? 


