PFSense Traffic Shaper Wizard
-
Hi Team
Having issues with setting up the Traffic shaper wizard. My WAN interface does not appear. Could it be that ix0 interface is not supported by ALTQ
Anyone else experienced this?
-
Yes it would seem so, as the only interfaces available to me are those configured as VLANs....
-
I want to setup QoS / DSCP marking for Zoom meetings on a corporate network vlan, I can't use the wizard as our WAN interface is not supported, so if your reading and have any hints, oohh that would be great.
-
Yes, as you found, unfortunately AltQ is not currently supported on ix interfaces.
What other interfaces do you have?
You can filter/match on DSCP traffic for shaping:
https://docs.netgate.com/pfsense/en/latest/trafficshaper/diffserv.htmlSteve
-
HI Steve, thanks for confirming.
They are all ix interfaces. The ones currently displaying are the logical interfaces. (Vlans)
-
Yes, you can run AltQ on logical interfaces on top of ix. If you can add a VLAN to your WAN that would solve the problem.
Steve
-
Forgive my stupidity, but Is there a more clever way to do this than putting a few switch ports on a new VLAN and patching in my WAN router and ix0 into it??
-
There might be. It depends what devices you have and how they're connected.
You could try to use Limiters for shaping instead of AltQ.
Steve
-
@mitch_sullo said in PFSense Traffic Shaper Wizard:
I want to setup QoS / DSCP marking
Be aware that QoS on pfSense is performed based on connection states. Connection states are established by the first packet of a connection. To perform QoS based on DSCP, the expected DSCP code point must be present in the first packet of a connection visible to pfSense.
If that protocol uses a separate media stream that has the right tags it would be OK. For example if it performs signaling on port AAAA to setup a connection, DSCP on that doesn't matter if it makes a media (audio or video) connection on port YYYY and uses DSCP on the first packet there.
There are some ugly workarounds to match DSCP inside connections, but it involves making 'no state' rules which is ugly and unlikely to help.