Best Network Topology with Current Hardware
-
It may be okay. Possibly they just do not bother to show the outgoing interface since it can be determined from the subnet of the next hop.
You do not necessarily need another PC. Almost anything with a RJ45 jack can be used.
-
In normal you can use all switches as Layer2 switches and the pfSense
is routing the entire traffic and also the vlans or you may be set up a
transfer net between the pfSense and the or one Layer3 switch and the
Layer3 switch is routing then the vlans perhaps a bit faster, but you may
be setting up then ACLs on the switch for the vlan traffic (to secure or allow/deny) -
@kjk54
Okay, I'm sure I can find something with a RJ45 connector!
-
@Dobby_ said in Best Network Topology with Current Hardware:
In normal you can use all switches as Layer2 switches and the pfSense
is routing the entire traffic and also the vlans or you may be set up a
transfer net between the pfSense and the or one Layer3 switch and the
Layer3 switch is routing then the vlans perhaps a bit faster, but you may
be setting up then ACLs on the switch for the vlan traffic (to secure or allow/deny)I am currently using the switches as Layer 2 and routing the VLANs via Pfsense but the inter VLAN speed is pathetic, much lower than it should be but I can't seem to get to the bottom of it. For example Iperf to NAS on 1G network.....
Could put the NAS on the main LAN and get wire speed but still need to access it from the IOT network (firestick)! Hence the reason for going down the L3 route.
Same LAN speed is fine.......Between 2 PCs on same VLAN........
-
The NAS speed can be also based on the HDD/SSD´s speed!
Perhaps there is also not the max. load on the line, so you could try out iPerf
with multiple streams to gain the load for getting better "numbers". -
@Dobby_ said in Best Network Topology with Current Hardware:
The NAS speed can be also based on the HDD/SSD´s speed!
Perhaps there is also not the max. load on the line, so you could try out iPerf
with multiple streams to gain the load for getting better "numbers".How do I run Iperf with multiple streams?
Totally get that the NAS speed could be affected by HDD speed but they are ironwolfs in a Synology DS920+ and reading around people seem to be getting much better results than me!
-
@stevencavanagh said in Best Network Topology with Current Hardware:
For example Iperf to NAS on 1G network.....
And it is ~50 Mbits/sec? You must have a link speed issue. More like 100M, not 1G.
-
@kjk54 said in Best Network Topology with Current Hardware:
@stevencavanagh said in Best Network Topology with Current Hardware:
For example Iperf to NAS on 1G network.....
And it is ~50 Mbits/sec? You must have a link speed issue. More like 100M, not 1G.
Totally agree but I cannot find the reason at all.
Nothing is running at 100MB. NAS, both switches (P1280) & both PCs are showing as running as 1G. Can only assume it is either the LAG from switch 1 to switch 2 or LAG from switch 1 to Pfsense but they are indicating all is good at 1G
-
Some asymmetric routing? Are you seeing a lot of retries/retransmissions?
-
@stephenw10 said in Best Network Topology with Current Hardware:
Some asymmetric routing? Are you seeing a lot of retries/retransmissions?
Where is the best place to check for this? Would it be in the System Logs somewhere?
-
iperf normally reports retries at one end. Otherwise a pcap would show retransmissions.
-
@stephenw10
Iperf not showing any retries.However, when trying Iperf from Pfsense to NAS IP address it still shows 50 Mbits/sec, does that point to the cabling between Pfsense and the NAS?
-
I mean 50Mbps is an odd value. It would be exactly 100 or very close if something were linked at that. If something were linked at half duplex you'd likely see <20Mbps at best.
Do you have any traffic shaping in play you may have forgotten about?
-
@stephenw10
Don't think there is any traffic shaping in play, certainly no limiters on Pfsense nor is there any in play on either of the 2 switches. -
@stevencavanagh
Traffic shaping was enabled but could not see where it would be influencing the speed to the server.In utter frustration I completely removed the shaper and now get the following results, which I think is as good as it gets with a 1G connection across VLANs via Pfsense.
There is a LAG connecting the NAS to Pfsense (2 * 1G connections) and another from Switch to Pfsense (2 * 1G connections) but this obviously would not increase the speed.
Only issue I may have would be the Microsoft Teams / Jabber voice calls tomorrow when I'm back online for work, as that is why I added the shaper in the first place as I kept getting drop outs.
Any idea as to what bit of the shaper I should modify for this? Clearly my attempt at it worked (sort of) but cocked up the NAS!
Either way, Many thanks for pointing me in this direction!
-
Ah, yup I've forgotten about old test config changes many, many times!
If those are LACP laggs you may get load balancing between them but you would need multiple parallel connections to see it.
-
@stephenw10
Yes they are LACP and I have tested with multiple parallel connections in the past and all seemed good, so hopefully all is good, well at least until tomorrow when I try a Teams call.Unless I am missing something there doesn't appear to be a checkbox for Teams in the shaper anywhere for some reason.
-
No probably not. That list is not that recent. You would need to form your own rules to match that.
-
@stephenw10
Ok, cheers!I'll have a play, but I'll make sure I check the NAS link afterwards!!
-
Spent all day on Teams for work and no drop outs at all. Strange that I had drop outs previously with Teams and had to use traffic shaper to cure it, which obviously caused other issues.
Never mind, all working fine without now.
Just the L3 switch to sort out now!