PFSENSE IN IRAQ



  • Hello Boards… I have searched and searched but I haven't been luckily enough to find anything. I am looking for anyone that has setup PFSense for use in Iraq. I have about 10 people on a 1024/256 kbps VSAT link and I am looking to use the traffic shaper to best make browsing and skype/yahoo calls speeds still manageable. I would like to see screenshots if anyone can help me out. I will post some of my own, but I am really lost when it comes to this because it doesn't seem like many have used it for VSAT links.

    Any help is greatly appreciated...

    ![5-19-2010 1-23-17 AM.png](/public/imported_attachments/1/5-19-2010 1-23-17 AM.png)
    ![5-19-2010 1-23-17 AM.png_thumb](/public/imported_attachments/1/5-19-2010 1-23-17 AM.png_thumb)



  • @platinumnj:

    Hello Boards… I have searched and searched but I haven't been luckily enough to find anything. I am looking for anyone that has setup PFSense for use in Iraq. I have about 10 people on a 1024/256 kbps VSAT link and I am looking to use the traffic shaper to best make browsing and skype/yahoo calls speeds still manageable. I would like to see screenshots if anyone can help me out. I will post some of my own, but I am really lost when it comes to this because it doesn't seem like many have used it for VSAT links.

    Any help is greatly appreciated...

    Hi! This is my shaper config :

    And you must set your qlanRoot to 10240,9=920kbit\s and  qwanRoot to 2560,9=230kbit\s !!! It is very important . Because otherwise shaper will not work properly.

    ![Firewall- Shaper- Rules.gif](/public/imported_attachments/1/Firewall- Shaper- Rules.gif)
    ![Firewall- Shaper- Rules.gif_thumb](/public/imported_attachments/1/Firewall- Shaper- Rules.gif_thumb)
    ![Firewall- Shaper- Queues_.gif](/public/imported_attachments/1/Firewall- Shaper- Queues_.gif)
    ![Firewall- Shaper- Queues_.gif_thumb](/public/imported_attachments/1/Firewall- Shaper- Queues_.gif_thumb)



  • Werter,

    Thanks for the pictures. Do these configs work well for you? Also are there any specifics that I need to do inside the queues? I am going to copy exactly what you have except for the 16mb and change it to what I am currently running.



  • @platinumnj:

    Werter,

    Thanks for the pictures. Do these configs work well for you? Also are there any specifics that I need to do inside the queues? I am going to copy exactly what you have except for the 16mb and change it to what I am currently running.

    Yes, this config work well for me. But if you used Voip services (like Skype etc.) first you must make queue for this services with Shaper Wizard. And then test your shaper! Run torrents on your some computers, surf on web pages, listen radio. You will see - work your shaper or not.

    Good luck!



  • Yes,

    My guys love skype, what queue speeds did you give skype?



  • @platinumnj:

    Yes,

    My guys love skype, what queue speeds did you give skype?

    When you used Shaper Wizard he creates queue for Voip services. Let 64kbit\s for outgoing and 256kbit\s for incoming.



  • I'm confused.  I see no indication werter is using skype.  I'm not sure skype is even VOIP, as far as pfsense is concerned (e.g. I don't think it is SIP, but some proprietary protocol…)



  • I agree…I don't think its hitting the proper queue either. I have been monitoring it...


  • Rebel Alliance Developer Netgate

    From what I've heard, Skype is particularly hard to classify. Like bittorrent, its clients don't always use the same port, and it opens whatever it wants via UPnP. However you can set a specific port inside of the skype client.

    With only 10 people it wouldn't be hard to ensure that they were all set to use a small range of ports, and then manually set those ports to make it into the proper queue. That doesn't solve the problem of the outgoing traffic, which will still be to a random client port, but it may at least help.


Locked