Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    larger files not serving through pfsense

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 3 Posters 734 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bheinsius
      last edited by

      Hi,

      My laptop and web server and connected via a Netgate SG-3100 running the latest pfsense version (2.4.4-RELEASE-p3 (arm) ). Everything has been working fine until a week or so ago.

      When, on my laptop, I request a 61K file from my web server, it arrives.
      When, on my laptop, I request a 62K file from my web server, it does not arrive.
      When, in a shell on the Netgate SG-3100, I request that same 61K file from my web server, it arrives.
      When, in a shell on the Netgate SG-3100, I request that same 62K file from my web server, it arrives.

      Observations:

      • the 61K file can be fetched from the Netgate
      • the 61K file can be fetched from behind the Netgate
      • the 62K file can be fetched from the Netgate
      • the 62K file cannot be fetched from behind the Netgate.

      Both the 61K and 62K files are test files I created that contain only spaces.
      I created these files to pinpoint the problem, the original problem was that bootstrap.css would not load and when investigating it turned out that the problem is - or seems to be - related to the file size.

      Can there be any size limit or packet inspection in the Netgate that is causing this?

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        No there would not normally be anything behaving like that.

        How are the client, server and SG-3100 arranged during this test?

        Do you see any blocked traffic in the firewall log?

        Are you running Snort or Suricata?

        Steve

        1 Reply Last reply Reply Quote 0
        • B
          bheinsius
          last edited by

          @stephenw10 said in larger files not serving through pfsense:

          Are you running Snort or Suricata?

          No

          Do you see any blocked traffic in the firewall log?

          No

          How are the client, server and SG-3100 arranged during this test?

          I tried 2 setups:

          1. Client -> OpenVPN on Netgate -> Server
          2. Client -> SSH tunnel -> Server

          It is very strange. When connecting through OpenVPN I get the 61K works/62K does not work problem.
          When I connect through the SSH tunnel I get the same but now for different files. The 62K file works but when I curl a jquery.js it just stops halfway. When I try again it stops again but somewhere else halfway.

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            Hmm, odd.

            I would take packet captures on WAN (or OpenVPN if that's how you're connected) and LAN covering the failed transfer.

            You might also try just setting up a port forward and connecting directly just as a test.

            Steve

            B 1 Reply Last reply Reply Quote 0
            • B
              bheinsius @stephenw10
              last edited by

              @stephenw10 it looks like it is not related to pfSense.

              I set up a port forward like you suggested.

              To a Windows computer (I tried Windows 10 on a Dell laptop and Windows Server 2016 on GCE) the file is still not being served. To a Linux computer (I tried Firefox on CentOS and Firefox on Ubuntu) the file is being served.
              I will continue my investigation in the OS arena.

              Thanks for your support.

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                No worries. Nice catch!

                1 Reply Last reply Reply Quote 0
                • L
                  Liamdawson Banned
                  last edited by

                  This post is deleted!
                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.