10Gbps DAC lossing connection with 160Mbps LAN traffic.



  • No local ip addresses generate almost 160 Mbps in LAN causing 30-60Sec drops in our network.
    While pinging the Pfsense LAN, all the packets sent are dropped.

    https://drive.google.com/open?id=1sTVqqkByKhXNcayTQMKMgcQ30kCdErPg

    I have a cisco SG550X connected to the XG-1537 through a 10Gb SFP DAC.
    Switches running Spanning Tree Classic.
    Ports utilization < 2% RX and TX
    CPU and RAM < 12%

    https://drive.google.com/open?id=16yX6TbLkx0pVpirYa0wPd1bipvW5ePyR

    My pfsense is running with two GWs, 1st 100D/100U. 2nd configured as failovers.
    PFSense CPU<2%, RAM<20%.

    Pfsense configurations:
    Transparent Squidguard MITM
    Traffic Shaper, allowing only 10Mbps for each host.
    Snort blocking LAN.

    Things ive done:
    Ping through all my switches, only my SW-PFsense LAN being affected by drops.
    Deactivate LAN Snort.
    Deactivate Smartports and DoS protection in the switches.

    POFLAN Traffic Graph showing some external IP address increasing the bandwidth more than 160Mbps, through my testing i found another 6 ip address doing the same.

    13.89.136.7
    47.220.143.51
    24.47.233.152
    207.32.21.109
    71.183.40.126

    https://drive.google.com/open?id=1_H1qLTbUjXpUJcw_ZVx1ptwP3Gn4jU27

    Could you please help me to identify the source of my problem, or suggest any other tool or test i need to run to get rid of this packet loss issue.


Log in to reply