Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Limiting guest vlan to specific mbits up/down

    Scheduled Pinned Locked Moved Traffic Shaping
    4 Posts 3 Posters 839 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      vanapagan
      last edited by

      We have a specific vlan we allow wireless guests to log in with. It goes directly to the internet and cannot reach anything internal. How do we limit that vlan to take no more than 10% of the upstream or downstream traffic? All other vlans will share the other 90% equally.

      So if I have a 100mbit up/down I want the wireless guests to consume no more than 10% (10mbits) and leave the other 90mbits to the other vlans.

      I've been playing with shaping and limiting but not have had any good results. I am at the point of not seeing the forest for the trees.

      B 1 Reply Last reply Reply Quote 0
      • NogBadTheBadN
        NogBadTheBad
        last edited by NogBadTheBad

        Try using limiters.

        I’ll do a few screenshots when i’m back home.

        Andy

        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

        1 Reply Last reply Reply Quote 0
        • NogBadTheBadN
          NogBadTheBad
          last edited by NogBadTheBad

          Create an in & an out limiter

          0_1534580060607_Untitled.jpeg

          Apply it to the firewall rule that passes the traffic on the guest LAN.

          0_1534580149624_Untitled 2.jpeg

          Andy

          1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

          1 Reply Last reply Reply Quote 0
          • B
            bafonso @vanapagan
            last edited by bafonso

            @vanapagan said in Limiting guest vlan to specific mbits up/down:

            We have a specific vlan we allow wireless guests to log in with. It goes directly to the internet and cannot reach anything internal. How do we limit that vlan to take no more than 10% of the upstream or downstream traffic? All other vlans will share the other 90% equally.
            So if I have a 100mbit up/down I want the wireless guests to consume no more than 10% (10mbits) and leave the other 90mbits to the other vlans.
            I've been playing with shaping and limiting but not have had any good results. I am at the point of not seeing the forest for the trees.

            I have a setup with multiple VLANs and a "guest" one and I've now setup limiters with weights, which allows guests to use all bandwidth if it's available... effectively implementing borrowing. So far Quick Fair Queueing works with Codel queues but if I use PRIO scheduler I get kernel panics :)

            I do have to add the In/Out pipe manually to each VLAN rule that allows VLAN traffic out to the world (to be NAT'ed)

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.