Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    is it normal to loose WAN speed to compared to to Pfsense?

    Scheduled Pinned Locked Moved General pfSense Questions
    20 Posts 7 Posters 1.7k Views 7 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      chrcoluk
      last edited by chrcoluk

      RWIN is the receive buffer for TCP downloads, it determines how much data can be sent per acknowledgement, most modern OS are designed now for fast connections and a too high RWIN can cause performance problems. This been your problem is I dont think it is likely, but I mentioned as an avenue to check.

      It sounds like you have no QoS (is off by default), so I dont know, hopefully someone else can help you figure it out.

      Potentially it could be MTU problems. But changing that on the windows client is a bit too much for me to explain now as I am tired, if you are still stuck tomorrow I can offer help on that.

      If you want to try a lower RWIN, try these commandsin a admin command prompt.

      netsh int tcp set global autotuning=highlyrestricted
      or
      netsh int tcp set global autotuning=disabled

      no reboot needed.

      to revert to default setting

      netsh int tcp set global autotuning=normal

      pfSense CE 2.8.0

      1 Reply Last reply Reply Quote 0
      • C Offline
        comet424
        last edited by

        @chrcoluk sure sounds good no rush..
        as i was googling PPPOE and pfsense they talked about your providers MTU so i googled it... with Bell its 1492 and i had it blank so defaults 1500 i take it.. not sure what that does either.. but it didnt help.. i edited that in the PPP or it was the WAN assignnment forgot at the moment..

        but i can wait i just noticed it.. as i know i can receive it shows.. just sending backuploading is an issue.. well hopefully you can get unstuck (:

        1 Reply Last reply Reply Quote 0
        • C Offline
          comet424
          last edited by

          i have disabled my VPN's as i had a couple VPNS running so i made sure it wasnt also leaking... and maybe its my NAT settings as i have set to get the XBOX setting to work damn that double nat stuff lol
          so maybe its one of those issues too i not sure

          1 Reply Last reply Reply Quote 0
          • AKEGECA Offline
            AKEGEC
            last edited by

            @comet424 , yes you can tweak it so you can get double speed 11.74 Mbit/s (5.87 Mbit/s x 2 ).
            Do you have two separate fax and phone line? and are they both active?

            C 1 Reply Last reply Reply Quote 0
            • C Offline
              chrcoluk
              last edited by

              I wish you disclosed you are using a VPN initially, that is probably the most likely reason. When you tested from pfsense that probably didnt route via the VPN hence the difference.

              pfSense CE 2.8.0

              1 Reply Last reply Reply Quote 0
              • stephenw10S Offline
                stephenw10 Netgate Administrator
                last edited by

                On a faster connection 400kbps would be a negligible difference.

                It's not clear if you're even testing against the same server here and that alone could easily account for it.

                Better to run a test like iperf where you can set the server you're testing against and then try that from both pfSense and a client behind it.

                A PPPoE connection from pfSense will default to 1492 anyway. Which is how you should have this setup.
                You mentioned double NAT though....

                And yeah if you're testing over VPN that changes everything so a difference like that would be expected.

                Steve

                1 Reply Last reply Reply Quote 0
                • C Offline
                  comet424 @AKEGEC
                  last edited by stephenw10

                  sorry for the delay
                  @AKEGEC

                  no i dont have 2nd line.. was looking at getting one ad go with different internet provider.. as i pay 90+ for 5mbp download 600k(ish up)
                  how can i double it

                  @chrcoluk
                  didnt disclose it as desktop as it doesnt use VPN never through of it.. doesnt matter.. Desktop like i mentioned still gets slow speed with OpenVPn client and Site to Site is turned off at pfsense.. so its still slow

                  @stephenw10
                  so how do i test it with iperf .. not at home to test it.. and ok so i changed that to 1492 as it said in video change it to it.. and pfsense said it defaults to 1500 if you down change... what does it actually do.

                  ya Windows is Double natting. desktop isnt behind the VPN its supposed to be open.. but i usually have to click the FIX button under xbox gaming. but ya wasnt testing at vpn this computer supposed to be free no vpn.. its supposed to be setup just like my xboxs where they open

                  AKEGECA 1 Reply Last reply Reply Quote 0
                  • stephenw10S Offline
                    stephenw10 Netgate Administrator
                    last edited by

                    There are public iperf servers you can test against, find one close to you. Doing so means you can use the same server from pfSense and the client behind it for a much closer test.

                    Steve

                    1 Reply Last reply Reply Quote 0
                    • C Offline
                      comet424
                      last edited by

                      @stephenw10
                      ok ill look it up and try when i get home
                      then post results. havent been home and just checking emails today... borrowed internet.. damn pandemic has ruining lot of things

                      i appreciate the help from you and the others.. and ill give it a try hopefully today or tomorrow (:

                      1 Reply Last reply Reply Quote 0
                      • AKEGECA Offline
                        AKEGEC @comet424
                        last edited by

                        @comet424 said in is it normal to loose WAN speed to compared to to Pfsense?:

                        sorry for the delay
                        @AKEGEC

                        no i dont have 2nd line.. was looking at getting one ad go with different internet provider.. as i pay 90+ for 5mbp download 600k(ish up)
                        how can i double it

                        Well it is very easy actually, you need to know your ISP (latest)modem network card (whitelisted)chip model. But I see you don't have 2 active lines so there is no use.

                        1 Reply Last reply Reply Quote 0
                        • N Offline
                          negate1
                          last edited by

                          Yes, you can use both to speed up the process of the speed. Make sure that you have both lines active.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S Offline
                            stephenw10 Netgate Administrator
                            last edited by

                            Both what? Unclear what you're referring to here.

                            Steve

                            Raffi_R 1 Reply Last reply Reply Quote 0
                            • Raffi_R Offline
                              Raffi_ @stephenw10
                              last edited by

                              @stephenw10 said in is it normal to loose WAN speed to compared to to Pfsense?:

                              Both what? Unclear what you're referring to here.

                              Steve

                              lol on the next episode of "to catch a bot"....

                              My guess is bot, what do I win if I'm right?

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S Offline
                                stephenw10 Netgate Administrator
                                last edited by

                                Hmm, I'll have to work on a prize. ๐Ÿ˜‰

                                1 Reply Last reply Reply Quote 1
                                • johnpozJ Offline
                                  johnpoz LAYER 8 Global Moderator
                                  last edited by johnpoz

                                  Yeah the posts are quite sus ;)

                                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                                  If you get confused: Listen to the Music Play
                                  Please don't Chat/PM me for help, unless mod related
                                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                                  1 Reply Last reply Reply Quote 1
                                  • C Offline
                                    comet424
                                    last edited by

                                    sorry for the delay had family issues I had to deal with and with this covid issues has made family issues harder to deal with

                                    but I finally home and I just ran the iperf
                                    so left side Pfsense box right side is the windows Desktop no vpn no nothing

                                    I had issues getting servers to work.. this one I using that worked was a Moscow one I couldn't get the usa public one I found and none in Canada I found all the servers were busy it said

                                    iperf3.PNG

                                    1 Reply Last reply Reply Quote 0
                                    • stephenw10S Offline
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      Hmm, well I would retry until you are able to connect to something closer to you. iperf.scottlinux.com works for me (although that's actually no-where near me ๐Ÿ˜‰ )

                                      You should run the test in both directions and use multiple streams so:
                                      iperf3 -c iperf.scottlinux.com -P 4
                                      and
                                      iperf3 -c iperf.scottlinux.com -R -P 4

                                      Steve

                                      1 Reply Last reply Reply Quote 0
                                      • First post
                                        Last post
                                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.