<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[1.2-RELEASE too SLOW to use…. I have a clue....]]></title><description><![CDATA[<p dir="auto">Hi folks</p>
<p dir="auto">I do have a 1.2-RELEASE on a Soekris NET-4801, which was working fine while using over LAN, but now I'm using it over WAN and it is too slow to use, it takes ages to load pages.</p>
<p dir="auto">If needed, I can submit a obfuscated config file…</p>
<p dir="auto">Getting slowly insane I issued a "pfctl -F rules", which essentially clears all firewall rules, but keeps the NAT, so I can access the box from remote, and suddently pfsense get's responsive! I can now even SSH from remote to my pfsense box.</p>
<p dir="auto">I haven't enabled Traffic Shaper, I marked that Checksum Offloading is disabled, even though it seemed to work fine.... Meanwhile the box is as much reduced in terms of configuration to find the bug, that I can say that the only special things are that it is managed over ssl and has a nat rule vom external to the internal port 443 (for Management) and some more legacy rules. As a side-note if does have a Hifn 7955 Encryption module.</p>
<p dir="auto">I have to dig deeper into it, to see which rules, or if any rule at all causes the trouble, but as always - so little time. In case someone has also the trouble, and I saw numerous posts about it, I leave this as a hint.... and will complete it once I figured it or hope for someone to figure it first.</p>
<p dir="auto">regards<br />
Philipp</p>
]]></description><link>https://forum.netgate.com/topic/11306/1-2-release-too-slow-to-use-i-have-a-clue</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Apr 2026 11:21:30 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/11306.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 09 Oct 2008 10:48:10 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Tue, 18 Nov 2008 15:17:01 GMT]]></title><description><![CDATA[<p dir="auto">The box is merely guarding some admin ports, so it is very lightly loaded, despite I tried to reset the counters, to get rid of any error counters that happened in the past.</p>
<p dir="auto">In the setup intended it does Proxy ARP for some IPs, it does even "loadBalance", but merely to proxy the request. But I also remove the whole ProxyARP and LB Stuff and it still happened….</p>
<p dir="auto">This are the counters after zeroing the counters, connecting, waiting in vain for some web content to show up, in hope, that something would show up in the output.</p>
]]></description><link>https://forum.netgate.com/post/185299</link><guid isPermaLink="true">https://forum.netgate.com/post/185299</guid><dc:creator><![CDATA[Phoenix]]></dc:creator><pubDate>Tue, 18 Nov 2008 15:17:01 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Thu, 06 Nov 2008 22:44:42 GMT]]></title><description><![CDATA[<p dir="auto">are you even passing traffic on this thing most of your rule counters are 0?!<br />
Are you doing an assymetric routing somehow?<br />
Do you by any chance have any proxy arp on the sis1(WAN?) interface?</p>
]]></description><link>https://forum.netgate.com/post/184614</link><guid isPermaLink="true">https://forum.netgate.com/post/184614</guid><dc:creator><![CDATA[eri--]]></dc:creator><pubDate>Thu, 06 Nov 2008 22:44:42 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Thu, 06 Nov 2008 18:46:12 GMT]]></title><description><![CDATA[<p dir="auto">Output of pfctl -vv -s all:</p>
<p dir="auto">TRANSLATION RULES:<br />
@0 nat-anchor "pftpx/<em>" all<br />
  [ Evaluations: 35        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/1">@<bdi>1</bdi></a> nat-anchor "natearly/</em>" all<br />
  [ Evaluations: 35        Packets: 0        Bytes: 0          States: 0    ]<br />
@2 nat-anchor "natrules/<em>" all<br />
  [ Evaluations: 35        Packets: 0        Bytes: 0          States: 0    ]<br />
@3 nat on sis2 inet from 172.17.17.0/24 to any -&gt; (sis2) round-robin<br />
  [ Evaluations: 35        Packets: 0        Bytes: 0          States: 0    ]<br />
@4 nat on sis0 inet from any to 172.17.17.0/24 -&gt; (sis0) round-robin<br />
  [ Evaluations: 35        Packets: 223      Bytes: 11221      States: 29    ]<br />
@0 rdr-anchor "pftpx/</em>" all<br />
  [ Evaluations: 32        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/1">@<bdi>1</bdi></a> rdr-anchor "slb" all<br />
  [ Evaluations: 32        Packets: 0        Bytes: 0          States: 0    ]<br />
@2 no rdr on sis0 proto tcp from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">vpns:0</a>port = ftp<br />
  [ Evaluations: 32        Packets: 0        Bytes: 0          States: 0    ]<br />
@3 rdr on sis0 inet proto tcp from any to any port = ftp -&gt; 127.0.0.1 port 8021<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@4 rdr on sis2 inet proto tcp from any to 212.25.4.30 port = https -&gt; 172.17.17.250<br />
  [ Evaluations: 32        Packets: 20        Bytes: 2744        States: 1    ]<br />
@5 rdr-anchor "imspector" all<br />
  [ Evaluations: 2        Packets: 0        Bytes: 0          States: 0    ]<br />
@6 rdr-anchor "miniupnpd" all<br />
  [ Evaluations: 2        Packets: 0        Bytes: 0          States: 0    ]</p>
<p dir="auto">FILTER RULES:<br />
@0 anchor "ftpsesame/<em>" all<br />
  [ Evaluations: 37        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/1">@<bdi>1</bdi></a> anchor "firewallrules" all<br />
  [ Evaluations: 37        Packets: 0        Bytes: 0          States: 0    ]<br />
@2 block drop quick proto tcp from any port = 0 to any<br />
  [ Evaluations: 37        Packets: 0        Bytes: 0          States: 0    ]<br />
@3 block drop quick proto tcp from any to any port = 0<br />
  [ Evaluations: 36        Packets: 0        Bytes: 0          States: 0    ]<br />
@4 block drop quick proto udp from any port = 0 to any<br />
  [ Evaluations: 37        Packets: 0        Bytes: 0          States: 0    ]<br />
@5 block drop quick proto udp from any to any port = 0<br />
  [ Evaluations: 1        Packets: 0        Bytes: 0          States: 0    ]<br />
@6 block drop quick from <a target="_blank" rel="noopener noreferrer nofollow ugc">snort2c:0</a>to any label "Block snort2c hosts"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@7 block drop quick from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">snort2c:0</a>label "Block snort2c hosts"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@8 anchor "loopback" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@9 pass in quick on lo0 all label "pass loopback"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/10">@<bdi>10</bdi></a> pass out quick on lo0 all label "pass loopback"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/11">@<bdi>11</bdi></a> anchor "packageearly" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/12">@<bdi>12</bdi></a> anchor "carp" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@13 pass quick inet proto icmp from 212.25.4.30 to any keep state<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@14 anchor "dhcpserverlan" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@15 pass in quick on sis0 inet proto udp from any port = bootpc to 255.255.255.255 port = bootps label "allow access to DHCP server on LAN"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@16 pass in quick on sis0 inet proto udp from any port = bootpc to 172.17.17.250 port = bootps label "allow access to DHCP server on LAN"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@17 pass out quick on sis0 inet proto udp from 172.17.17.250 port = bootps to any port = bootpc label "allow access to DHCP server on LAN"<br />
  [ Evaluations: 17        Packets: 0        Bytes: 0          States: 0    ]<br />
@18 block drop in log quick on sis2 inet proto udp from any port = bootps to 172.17.17.0/24 port = bootpc label "block dhcp client out wan"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@19 pass in quick on sis2 proto udp from any port = bootps to any port = bootpc label "allow dhcp client out wan"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@20 block drop in on ! sis0 inet from 172.17.17.0/24 to any<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@21 block drop in inet from 172.17.17.250 to any<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/22">@<bdi>22</bdi></a> block drop in on ! sis1 inet from 192.168.144.0/24 to any<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@23 block drop in inet from 192.168.144.44 to any<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@24 block drop in on sis0 inet6 from fe80::200:24ff:fec4:2ba8 to any<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@25 block drop in on sis1 inet6 from fe80::200:24ff:fec4:2ba9 to any<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@26 anchor "spoofing" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@27 anchor "limitingesr" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@28 block drop in quick from <a target="_blank" rel="noopener noreferrer nofollow ugc">virusprot:0</a>to any label "virusprot overload table"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@29 pass out quick on sis0 proto icmp all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@30 pass out quick on sis2 proto icmp all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@31 pass out quick on sis2 all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 17        Packets: 0        Bytes: 0          States: 0    ]<br />
@32 anchor "firewallout" all<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@33 pass out quick on sis2 all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 38        Packets: 0        Bytes: 0          States: 0    ]<br />
@34 pass out quick on sis0 all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 17        Packets: 112      Bytes: 5641        States: 29    ]<br />
@35 pass out quick on sis1 all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@36 pass out quick on enc0 all keep state label "IPSEC internal host to host"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@37 pass out quick on sis1 proto icmp all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@38 pass out quick on sis1 all keep state label "let out anything from firewall host itself"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@39 anchor "anti-lockout" all<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@40 pass in quick on sis0 inet from any to 172.17.17.250 keep state label "anti-lockout web rule"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@41 block drop in log proto tcp from <a target="_blank" rel="noopener noreferrer nofollow ugc">sshlockout:0</a>to any port = ssh label "sshlockout"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/42">@<bdi>42</bdi></a> anchor "ftpproxy" all<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@43 anchor "pftpx/</em>" all<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@44 pass quick proto carp all<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@45 pass quick proto pfsync all<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@46 pass in log quick on sis2 from <a target="_blank" rel="noopener noreferrer nofollow ugc">immunity:1</a>to any keep state label "USER_RULE"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@47 pass in quick on sis2 inet proto icmp from any to 212.25.4.24/29 icmp-type echoreq keep state label "USER_RULE: ICMP IPv4"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 0    ]<br />
@48 pass in quick on sis2 inet proto icmp from any to 212.25.4.30 icmp-type routeradv keep state label "USER_RULE: IPv6 ICMP Router ADV"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@49 pass in log quick on sis2 inet proto tcp from any to 172.17.17.250 port = https synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: Firewall Management"<br />
  [ Evaluations: 21        Packets: 0        Bytes: 0          States: 1    ]<br />
@50 pass in log quick on sis2 inet proto tcp from any to 212.25.4.30 port = rsh-spx synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: Firewall Management"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@51 pass in log quick on sis2 proto tcp from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">ipmi:1</a>port = https synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: IPMI Management"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@52 pass in log quick on sis2 proto tcp from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">unity:1</a>port = ssh synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: Unity SSH Access"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@53 pass in log quick on sis2 proto tcp from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">sw0:1</a>port = http synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: Switch Management"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@54 pass in log quick on sis2 proto tcp from any to <a target="_blank" rel="noopener noreferrer nofollow ugc">arc1231ml:1</a>port = https synproxy state (source-track rule, max-src-states 1, max-src-conn-rate 5/1, overload &lt;virusprot&gt;flush global, src.track 1) label "USER_RULE: RAID Management"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@55 pass in quick on sis0 inet from 172.17.17.0/24 to any keep state label "USER_RULE: Default LAN -&gt; any"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@56 pass in quick on sis0 inet proto tcp from any to 127.0.0.1 port = ftp-proxy keep state label "FTP PROXY: Allow traffic to localhost"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@57 pass in quick on sis0 inet proto tcp from any to 127.0.0.1 port = ftp keep state label "FTP PROXY: Allow traffic to localhost"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@58 pass in quick on sis2 inet proto tcp from any port = ftp-data to (sis2:1) port &gt; 49000 flags S/SA keep state label "FTP PROXY: PASV mode data connection"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@59 pass in quick on sis1 inet proto tcp from any to 127.0.0.1 port = 8022 keep state label "FTP PROXY: Allow traffic to localhost"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@60 pass in quick on sis1 inet proto tcp from any to 127.0.0.1 port = ftp keep state label "FTP PROXY: Allow traffic to localhost"<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@61 anchor "imspector" all<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
<a class="plugin-mentions-user plugin-mentions-a" href="/user/62">@<bdi>62</bdi></a> anchor "miniupnpd" all<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@63 block drop in log quick all label "Default block all just to be sure."<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
@64 block drop out log quick all label "Default block all just to be sure."<br />
  [ Evaluations: 0        Packets: 0        Bytes: 0          States: 0    ]<br />
No queue in use</p>
<p dir="auto">STATES:<br />
self tcp 172.17.17.250:222 &lt;- 172.17.17.17:56069      ESTABLISHED:ESTABLISHED<br />
  [232999338 + 64128] wscale 8  [4130094954 + 66560] wscale 7<br />
  age 00:05:35, expires in 04:59:59, 908:956 pkts, 58144:185427 bytes<br />
  id: 48f9941400148c1e creatorid: 03ccbaa0<br />
self tcp 172.17.17.250:30970 -&gt; 172.17.17.250:61329 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [1448249574 + 5888] wscale 8  [710236459 + 66519] wscale 7<br />
  age 00:00:05, expires in 00:00:25, 4:4 pkts, 208:256 bytes, rule 34<br />
  id: 48f9941400148d27 creatorid: 43281e2d<br />
self tcp 172.17.17.250:57557 -&gt; 172.17.17.250:63123 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [3437643998 + 5888] wscale 8  [468405940 + 66519] wscale 7<br />
  age 00:00:20, expires in 00:00:10, 4:3 pkts, 208:204 bytes, rule 34<br />
  id: 48f9941400148d1d creatorid: 43281e2d<br />
self tcp 77.56.108.199:53308 -&gt; 172.17.17.250:63638 -&gt; 172.17.17.17:22      ESTABLISHED:ESTABLISHED<br />
  [2465360198 + 16320]  [377591790 + 65535]<br />
  age 00:14:08, expires in 04:59:59, 963:860 pkts, 57155:184100 bytes<br />
  id: 48f9941400148a7a creatorid: 03ccbaa0<br />
self tcp 172.17.17.250:22668 -&gt; 172.17.17.250:50902 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [270953047 + 5888] wscale 8  [392879556 + 66519] wscale 7<br />
  age 00:00:26, expires in 00:00:04, 4:3 pkts, 208:204 bytes, rule 34<br />
  id: 48f9941400148d19 creatorid: 43281e2d<br />
self tcp 172.17.17.250:4839 -&gt; 172.17.17.250:63200 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [2910484932 + 5888] wscale 8  [552531330 + 66519] wscale 7<br />
  age 00:00:15, expires in 00:00:15, 4:4 pkts, 208:256 bytes, rule 34<br />
  id: 48f9941400148d1f creatorid: 43281e2d<br />
self tcp 172.17.17.250:45188 -&gt; 172.17.17.250:53222 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [1298794834 + 5888] wscale 8  [233650270 + 66519] wscale 7<br />
  age 00:00:36, expires in 00:00:00, 4:4 pkts, 208:256 bytes, rule 34<br />
  id: 48f9941400148d11 creatorid: 43281e2d<br />
self tcp 172.17.17.250:6502 -&gt; 172.17.17.250:57072 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [2490816275 + 5888] wscale 8  [624944666 + 66519] wscale 7<br />
  age 00:00:10, expires in 00:00:20, 4:4 pkts, 208:256 bytes, rule 34<br />
  id: 48f9941400148d25 creatorid: 43281e2d<br />
self tcp 172.17.17.250:10893 -&gt; 172.17.17.250:53237 -&gt; 172.17.17.17:22      TIME_WAIT:TIME_WAIT<br />
  [3873454032 + 5888] wscale 8  [317090911 + 66519] wscale 7<br />
  age 00:00:31, expires in 00:00:00, 4:4 pkts, 208:256 bytes, rule 34<br />
  id: 48f9941400148d15 creatorid: 43281e2d<br />
self tcp 172.17.17.17:22 &lt;- 212.25.4.28:22 &lt;- 77.56.108.199:53308      ESTABLISHED:ESTABLISHED<br />
  <a href="+4097252308">377591790 + 65535</a>  <a href="+1891417498">573942700 + 16320</a><br />
  age 00:14:08, expires in 04:59:59, 961:859 pkts, 57071:184056 bytes, source-track, sticky-address<br />
  id: 48f9941400148a79 creatorid: 03ccbaa0<br />
self tcp 172.17.17.250:443 &lt;- 212.25.4.30:443 &lt;- 77.56.108.199:60146      FIN_WAIT_2:FIN_WAIT_2<br />
  <a href="+2317901880">3891263548 + 9648</a>  <a href="+1043110888">3154738227 + 65534</a><br />
  age 00:00:43, expires in 00:00:00, 10:10 pkts, 1385:1359 bytes, rule 49, source-track<br />
  id: 48f9941400148d09 creatorid: 43281e2d<br />
self tcp 172.17.17.250:50347 -&gt; 172.17.17.250:56610 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [4259170932 + 1446]  [1541000899 + 65534]<br />
  age 00:00:10, expires in 00:00:20, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d22 creatorid: 43281e2d<br />
self tcp 172.17.17.250:42814 -&gt; 172.17.17.250:59246 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [4256733390 + 1446]  [3550747993 + 65534]<br />
  age 00:00:15, expires in 00:00:15, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d20 creatorid: 43281e2d<br />
self tcp 172.17.17.250:7661 -&gt; 172.17.17.250:57969 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [2509796519 + 1446]  [3125640129 + 65534]<br />
  age 00:00:36, expires in 00:00:00, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d10 creatorid: 43281e2d<br />
self tcp 172.17.17.250:20263 -&gt; 172.17.17.250:52392 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [1042620772 + 1446]  [1113950290 + 65534]<br />
  age 00:00:31, expires in 00:00:00, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d14 creatorid: 43281e2d<br />
self tcp 172.17.17.250:37362 -&gt; 172.17.17.250:58852 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [3848165941 + 1446]  [3828389538 + 65534]<br />
  age 00:00:05, expires in 00:00:25, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d26 creatorid: 43281e2d<br />
self tcp 172.17.17.250:5314 -&gt; 172.17.17.250:57061 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [3567756948 + 1446]  [3396913258 + 65534]<br />
  age 00:00:26, expires in 00:00:04, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d18 creatorid: 43281e2d<br />
self tcp 172.17.17.250:40000 -&gt; 172.17.17.250:63991 -&gt; 172.17.17.252:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [4101677653 + 1446]  [1268744228 + 65534]<br />
  age 00:00:20, expires in 00:00:10, 4:3 pkts, 184:124 bytes, rule 34<br />
  id: 48f9941400148d1c creatorid: 43281e2d<br />
self tcp 172.17.17.250:65073 -&gt; 172.17.17.250:65034 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [4145778725 + 5792] wscale 8  [2341533048 + 66560] wscale 1<br />
  age 00:00:10, expires in 00:00:20, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d24 creatorid: 43281e2d<br />
self tcp 172.17.17.250:24052 -&gt; 172.17.17.250:62307 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [2161382861 + 5792] wscale 8  [2329489218 + 66560] wscale 1<br />
  age 00:00:31, expires in 00:00:00, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d12 creatorid: 43281e2d<br />
self tcp 172.17.17.250:37139 -&gt; 172.17.17.250:57984 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [4165103318 + 5792] wscale 8  [2312543900 + 66560] wscale 1<br />
  age 00:00:36, expires in 00:00:00, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d0e creatorid: 43281e2d<br />
self tcp 172.17.17.250:23815 -&gt; 172.17.17.250:54433 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [2886265462 + 5792] wscale 8  [2329896515 + 66560] wscale 1<br />
  age 00:00:26, expires in 00:00:04, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d16 creatorid: 43281e2d<br />
self tcp 172.17.17.250:22055 -&gt; 172.17.17.250:58573 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [2281684271 + 5792] wscale 8  [2332448097 + 66560] wscale 1<br />
  age 00:00:15, expires in 00:00:15, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d1e creatorid: 43281e2d<br />
self tcp 172.17.17.250:34124 -&gt; 172.17.17.250:61171 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [4158672752 + 5792] wscale 8  [2336746588 + 66560] wscale 1<br />
  age 00:00:20, expires in 00:00:10, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d1a creatorid: 43281e2d<br />
self tcp 172.17.17.250:22299 -&gt; 172.17.17.250:64503 -&gt; 172.17.17.253:443      FIN_WAIT_2:FIN_WAIT_2<br />
  [1620644857 + 5792] wscale 8  [2340283693 + 66560] wscale 1<br />
  age 00:00:05, expires in 00:00:25, 4:2 pkts, 220:112 bytes, rule 34<br />
  id: 48f9941400148d28 creatorid: 43281e2d<br />
self tcp 172.17.17.250:48854 -&gt; 172.17.17.250:57606 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [1859060403 + 4096]  [1974833318 + 65279]<br />
  age 00:00:10, expires in 00:00:20, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d23 creatorid: 43281e2d<br />
self tcp 172.17.17.250:51858 -&gt; 172.17.17.250:54078 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [2465975669 + 4096]  [2587129204 + 65279]<br />
  age 00:00:31, expires in 00:00:00, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d13 creatorid: 43281e2d<br />
self tcp 172.17.17.250:28264 -&gt; 172.17.17.250:52554 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [2025935362 + 4096]  [3251555864 + 65279]<br />
  age 00:00:20, expires in 00:00:10, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d1b creatorid: 43281e2d<br />
self tcp 172.17.17.250:63337 -&gt; 172.17.17.250:56520 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [1318609598 + 4096]  [3442098642 + 65279]<br />
  age 00:00:15, expires in 00:00:15, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d21 creatorid: 43281e2d<br />
self tcp 172.17.17.250:35193 -&gt; 172.17.17.250:50921 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [1740830445 + 4096]  [3797352221 + 65279]<br />
  age 00:00:26, expires in 00:00:04, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d17 creatorid: 43281e2d<br />
self tcp 172.17.17.250:39491 -&gt; 172.17.17.250:57330 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [253618915 + 4096]  [3340088615 + 65279]<br />
  age 00:00:36, expires in 00:00:00, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d0f creatorid: 43281e2d<br />
self tcp 172.17.17.250:50610 -&gt; 172.17.17.250:59893 -&gt; 172.17.17.254:80      FIN_WAIT_2:FIN_WAIT_2<br />
  [2972699482 + 4096]  [3261166035 + 65279]<br />
  age 00:00:05, expires in 00:00:25, 4:3 pkts, 184:120 bytes, rule 34<br />
  id: 48f9941400148d29 creatorid: 43281e2d<br />
self udp 172.17.17.250:53436 -&gt; 172.17.17.250:53085 -&gt; 172.17.17.5:53      SINGLE:NO_TRAFFIC<br />
  age 00:00:04, expires in 00:00:56, 1:0 pkts, 61:0 bytes, rule 34<br />
  id: 48f9941400148d2a creatorid: 43281e2d<br />
self udp 172.17.17.250:514 -&gt; 172.17.17.250:60792 -&gt; 172.17.17.6:514      SINGLE:NO_TRAFFIC<br />
  age 00:02:38, expires in 00:00:28, 67:0 pkts, 18961:0 bytes<br />
  id: 48f9941400148cad creatorid: 03ccbaa0</p>
<p dir="auto">SOURCE TRACKING NODES:<br />
77.56.108.199 -&gt; 0.0.0.0 ( states 0, connections 0, rate 0.0/1s )<br />
  age 00:00:59, expires in 00:00:00, 22 pkts, 2824 bytes<br />
77.56.108.199 -&gt; 172.17.17.17 ( states 1, connections 0, rate 0.0/0s )<br />
  age 00:14:08, 1820 pkts, 241127 bytes<br />
77.56.108.199 -&gt; 0.0.0.0 ( states 1, connections 1, rate 0.0/1s )<br />
  age 00:14:08, 1820 pkts, 241127 bytes<br />
77.56.108.199 -&gt; 0.0.0.0 ( states 1, connections 1, rate 0.0/1s )<br />
  age 00:00:43, 20 pkts, 2744 bytes, filter rule 49</p>
<p dir="auto">INFO:<br />
Status: Enabled for 19 days 10:17:41          Debug: Urgent</p>
<p dir="auto">Hostid: 0x43281e2d</p>
<p dir="auto">Interface Stats for sis1              IPv4            IPv6<br />
  Bytes In                              0                0<br />
  Bytes Out                              0                0<br />
  Packets In<br />
    Passed                              0                0<br />
    Blocked                              0                0<br />
  Packets Out<br />
    Passed                              0                0<br />
    Blocked                              0                0</p>
<p dir="auto">State Table                          Total            Rate<br />
  current entries                      34             <br />
  searches                        11139878            6.6/s<br />
  inserts                          1346859            0.8/s<br />
  removals                        1346825            0.8/s<br />
Source Tracking Table<br />
  current entries                        4             <br />
  searches                            1491            0.0/s<br />
  inserts                              452            0.0/s<br />
  removals                            448            0.0/s<br />
Counters<br />
  match                            1365100            0.8/s<br />
  bad-offset                            0            0.0/s<br />
  fragment                              0            0.0/s<br />
  short                                  0            0.0/s<br />
  normalize                              0            0.0/s<br />
  memory                                0            0.0/s<br />
  bad-timestamp                          0            0.0/s<br />
  congestion                            0            0.0/s<br />
  ip-option                              0            0.0/s<br />
  proto-cksum                            0            0.0/s<br />
  state-mismatch                        19            0.0/s<br />
  state-insert                          0            0.0/s<br />
  state-limit                            0            0.0/s<br />
  src-limit                            470            0.0/s<br />
  synproxy                            695            0.0/s<br />
Limit Counters<br />
  max states per rule                    0            0.0/s<br />
  max-src-states                      470            0.0/s<br />
  max-src-nodes                          0            0.0/s<br />
  max-src-conn                          0            0.0/s<br />
  max-src-conn-rate                      0            0.0/s<br />
  overload table insertion              0            0.0/s<br />
  overload flush states                  0            0.0/s</p>
<p dir="auto">LABEL COUNTERS:<br />
Block snort2c hosts 39 0 0<br />
Block snort2c hosts 39 0 0<br />
pass loopback 39 0 0<br />
pass loopback 0 0 0<br />
allow access to DHCP server on LAN 39 0 0<br />
allow access to DHCP server on LAN 0 0 0<br />
allow access to DHCP server on LAN 18 0 0<br />
block dhcp client out wan 21 0 0<br />
allow dhcp client out wan 0 0 0<br />
virusprot overload table 39 0 0<br />
let out anything from firewall host itself 39 0 0<br />
let out anything from firewall host itself 21 0 0<br />
let out anything from firewall host itself 18 0 0<br />
let out anything from firewall host itself 39 0 0<br />
let out anything from firewall host itself 18 119 5949<br />
let out anything from firewall host itself 0 0 0<br />
IPSEC internal host to host 0 0 0<br />
let out anything from firewall host itself 0 0 0<br />
let out anything from firewall host itself 0 0 0<br />
anti-lockout web rule 21 0 0<br />
sshlockout 21 0 0<br />
USER_RULE 21 0 0<br />
USER_RULE: ICMP IPv4 21 0 0<br />
USER_RULE: IPv6 ICMP Router ADV 0 0 0<br />
USER_RULE: Firewall Management 21 0 0<br />
USER_RULE: Firewall Management 0 0 0<br />
USER_RULE: IPMI Management 0 0 0<br />
USER_RULE: Unity SSH Access 0 0 0<br />
USER_RULE: Switch Management 0 0 0<br />
USER_RULE: RAID Management 0 0 0<br />
USER_RULE: Default LAN -&gt; any 0 0 0<br />
FTP PROXY: Allow traffic to localhost 0 0 0<br />
FTP PROXY: Allow traffic to localhost 0 0 0<br />
FTP PROXY: PASV mode data connection 0 0 0<br />
FTP PROXY: Allow traffic to localhost 0 0 0<br />
FTP PROXY: Allow traffic to localhost 0 0 0<br />
Default block all just to be sure. 0 0 0<br />
Default block all just to be sure. 0 0 0</p>
<p dir="auto">TIMEOUTS:<br />
tcp.first                    30s<br />
tcp.opening                  5s<br />
tcp.established          18000s<br />
tcp.closing                  60s<br />
tcp.finwait                  30s<br />
tcp.closed                  30s<br />
tcp.tsdiff                  10s<br />
udp.first                    60s<br />
udp.single                  30s<br />
udp.multiple                60s<br />
icmp.first                  20s<br />
icmp.error                  10s<br />
other.first                  60s<br />
other.single                30s<br />
other.multiple              60s<br />
frag                        30s<br />
interval                    10s<br />
adaptive.start                0 states<br />
adaptive.end                  0 states<br />
src.track                    0s</p>
<p dir="auto">LIMITS:<br />
states    hard limit  10000<br />
src-nodes  hard limit  10000<br />
frags      hard limit  5000</p>
<p dir="auto">TABLES:<br />
–a-r- arc1231ml<br />
Addresses:  1<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 8464              Match: 63                ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- immunity<br />
Addresses:  1<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 19456              Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- ipmi<br />
Addresses:  1<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 9007              Match: 14                ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 22                Bytes: 972                ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 14                Bytes: 560                ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
-pa-r- snort2c<br />
Addresses:  0<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 2                  ]<br />
Evaluations: [ NoMatch: 2730188            Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
-pa-r- sshlockout<br />
Addresses:  0<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 9241              Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- sw0<br />
Addresses:  1<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 8527              Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- unity<br />
Addresses:  1<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 2                  ]<br />
Evaluations: [ NoMatch: 8527              Match: 480                ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 126122            Bytes: 8834575            ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 93742              Bytes: 27705305          ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- virusprot<br />
Addresses:  0<br />
Cleared:    Thu Jan  1 00:00:00 1970<br />
References:  [ Anchors: 0                  Rules: 5                  ]<br />
Evaluations: [ NoMatch: 19468              Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]<br />
–a-r- vpns<br />
Addresses:  0<br />
Cleared:    Sat Oct 18 07:45:24 2008<br />
References:  [ Anchors: 0                  Rules: 1                  ]<br />
Evaluations: [ NoMatch: 12                Match: 0                  ]<br />
In/Block:    [ Packets: 0                  Bytes: 0                  ]<br />
In/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
In/XPass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/Block:  [ Packets: 0                  Bytes: 0                  ]<br />
Out/Pass:    [ Packets: 0                  Bytes: 0                  ]<br />
Out/XPass:  [ Packets: 0                  Bytes: 0                  ]</p>
<p dir="auto">OS FINGERPRINTS:<br />
348 fingerprints loaded&lt;/virusprot&gt;&lt;/arc1231ml:1&gt;&lt;/virusprot&gt;&lt;/sw0:1&gt;&lt;/virusprot&gt;&lt;/unity:1&gt;&lt;/virusprot&gt;&lt;/ipmi:1&gt;&lt;/virusprot&gt;&lt;/virusprot&gt;&lt;/immunity:1&gt;&lt;/sshlockout:0&gt;&lt;/virusprot:0&gt;&lt;/snort2c:0&gt;&lt;/snort2c:0&gt;&lt;/vpns:0&gt;</p>
]]></description><link>https://forum.netgate.com/post/184598</link><guid isPermaLink="true">https://forum.netgate.com/post/184598</guid><dc:creator><![CDATA[Phoenix]]></dc:creator><pubDate>Thu, 06 Nov 2008 18:46:12 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Thu, 06 Nov 2008 18:03:01 GMT]]></title><description><![CDATA[<p dir="auto">CPU Load: 5-6%<br />
RAM Load: 40%<br />
State Table: 32/10000<br />
No Interface Errors</p>
<p dir="auto">last pid: 98670;  load averages:  0.09,  0.10,  0.09                                                                                          up 19+10:15:26  17:58:30<br />
39 processes:  1 running, 35 sleeping, 3 zombie<br />
CPU states:  0.4% user,  0.0% nice,  2.3% system,  1.2% interrupt, 96.1% idle<br />
Mem: 30M Active, 9192K Inact, 19M Wired, 12K Cache, 13M Buf, 59M Free<br />
Swap: 1024M Total, 1024M Free</p>
<p dir="auto">PID USERNAME  THR PRI NICE  SIZE    RES STATE    TIME  WCPU COMMAND<br />
  461 root        1  4    0 23172K 20232K accept  0:07  0.24% php<br />
  305 root        7  20    0  2196K  1160K kserel 102:37  0.00% slbd<br />
  670 root        1  -8  20  2328K  1688K piperd  58:00  0.00% sh<br />
  715 root        1  8  -88  1408K  836K nanslp  6:38  0.00% watchdogd<br />
  453 root        1  4    0  3444K  2880K kqread  3:41  0.00% lighttpd<br />
  293 root        1 -58    0  3916K  2248K bpf      2:26  0.00% tcpdump<br />
  613 root        1  96    0  5848K  5504K select  1:16  0.00% bsnmpd<br />
  187 root        1  96    0  1388K  1012K select  0:41  0.00% syslogd<br />
  798 root        1  8    0  1384K  992K nanslp  0:39  0.00% cron<br />
  403 proxy      1  4    0  704K  452K kqread  0:36  0.00% pftpx<br />
  792 root        1  96    0  1372K  1004K select  0:20  0.00% ntpd<br />
  809 root        1  8    0  1268K  708K nanslp  0:10  0.00% minicron<br />
  294 root        1  -8    0  1276K  704K piperd  0:07  0.00% logger<br />
  509 root        1  96    0  1280K  692K select  0:06  0.00% choparp<br />
91457 root        1  8  20  1272K  716K nanslp  0:04  0.00% check_reload_status<br />
  740 _ntp        1  96    0  1340K  1012K select  0:01  0.00% ntpd<br />
98622 root        1  96    0  5756K  2808K select  0:01  0.00% sshd<br />
98645 root        1  96    0  2356K  1516K RUN      0:00  0.00% top<br />
98640 root        1  20    0  3908K  2600K pause    0:00  0.00% tcsh<br />
  454 root        1  8    0 14924K  5016K wait    0:00  0.00% php<br />
  458 root        1  8    0 14924K  5016K wait    0:00  0.00% php<br />
98355 proxy      1 -58  20  852K  640K bpf      0:00  0.00% ftpsesame<br />
98625 root        1  8    0  1728K  1092K wait    0:00  0.00% sh<br />
42760 root        1  20  20  2260K  1320K pause    0:00  0.00% top<br />
42759 root        1  8  20  2328K  1688K wait    0:00  0.00% sh<br />
  261 root        1  96    0  3064K  2380K select  0:00  0.00% sshd<br />
42761 root        1  -8  20  1564K  1028K piperd  0:00  0.00% awk<br />
91445 root        1  -8    0  1392K  1056K piperd  0:00  0.00% cron<br />
  104 root        1  96    0  504K  360K select  0:00  0.00% devd<br />
  460 root        1  4    0 14924K  5088K accept  0:00  0.00% php</p>
]]></description><link>https://forum.netgate.com/post/184594</link><guid isPermaLink="true">https://forum.netgate.com/post/184594</guid><dc:creator><![CDATA[Phoenix]]></dc:creator><pubDate>Thu, 06 Nov 2008 18:03:01 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Tue, 21 Oct 2008 03:55:45 GMT]]></title><description><![CDATA[<p dir="auto">Things to check:</p>
<p dir="auto">Status -&gt; System<br />
Check the CPU and RAM load.<br />
What is the 'State table size'?</p>
<p dir="auto">Status -&gt; Interfaces<br />
Is there any In/out errors?</p>
<p dir="auto">System -&gt; Advanced<br />
'Enable Secure Shell' make sure the box is checked.<br />
Then SSH into the the pfSense firewall, I typically use putty for this. Press 8 and then run the following command: top<br />
Report back the top processes.</p>
]]></description><link>https://forum.netgate.com/post/183635</link><guid isPermaLink="true">https://forum.netgate.com/post/183635</guid><dc:creator><![CDATA[cybrsrfr]]></dc:creator><pubDate>Tue, 21 Oct 2008 03:55:45 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Sun, 12 Oct 2008 14:23:48 GMT]]></title><description><![CDATA[<p dir="auto">I saw this entry… but it's a mess....</p>
<p dir="auto">I don't use any beta software or pre-relase, it's the RELEASE version I use.<br />
I dont run any PPPoE or stuff that can cause mss issues<br />
My problem goes away when I flush the rules, so Checksum offloading can't be the cause, even though I disabled it for testing.<br />
Not only is web-access for the GUI slow, ANY traffic going though the box is dead SLOW, be it a webserver behing, or SSH Access to the pfsense box.</p>
<p dir="auto">So we talking here acout a Soekris NET4801, without any fancy intel NICs, plain simple ethernet wiring and a RELEASE version...</p>
<p dir="auto">regards<br />
Philipp</p>
]]></description><link>https://forum.netgate.com/post/183119</link><guid isPermaLink="true">https://forum.netgate.com/post/183119</guid><dc:creator><![CDATA[Phoenix]]></dc:creator><pubDate>Sun, 12 Oct 2008 14:23:48 GMT</pubDate></item><item><title><![CDATA[Reply to 1.2-RELEASE too SLOW to use…. I have a clue.... on Thu, 09 Oct 2008 13:31:17 GMT]]></title><description><![CDATA[<p dir="auto">Is this what you are seeing?</p>
<p dir="auto">SEARCH: WAN interface slow</p>
<p dir="auto"><a href="http://forum.pfsense.org/index.php/topic,10436.0.html" target="_blank" rel="noopener noreferrer nofollow ugc">http://forum.pfsense.org/index.php/topic,10436.0.html</a></p>
]]></description><link>https://forum.netgate.com/post/182933</link><guid isPermaLink="true">https://forum.netgate.com/post/182933</guid><dc:creator><![CDATA[cheesyboofs]]></dc:creator><pubDate>Thu, 09 Oct 2008 13:31:17 GMT</pubDate></item></channel></rss>