Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Traffic Shaping on Floating Rules

    Scheduled Pinned Locked Moved 2.1 Snapshot Feedback and Problems - RETIRED
    5 Posts 3 Posters 2.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      supermega
      last edited by

      Hi guys

      I'm trying to do traffic shaping for some floating rules. I created new limiters for up and download bandwith and add this to a rule. (have a look at the pictures)

      The problem is that if I do a speedtest (doesn't matter ipv4 or ipv6) the maximum bandwith is used.

      regards

      supermega
      Limiter.PNG
      Limiter.PNG_thumb
      Rule_Direction.PNG
      Rule_Direction.PNG_thumb
      Rule_IN-OUT.PNG
      Rule_IN-OUT.PNG_thumb

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        When using limiters on pass rules, make sure you check "quick" or it will fall through to other rules and not use that one.

        Or use the Match action, not pass. I believe that should work with limiters on current 2.1 snapshots.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • S
          supermega
          last edited by

          Thanks for your answer

          I enabled the quick option in the firewall rules but it still doesn't work. I do not understand exatcly how many and what I have to configure.

          Did I need 4 rules ?

          –> ipv4 direction IN and limiter IN and OUT
                --> ipv4 direction OUT and limiter IN and OUT
                --> ipv6 direction IN and limiter IN and OUT
                --> ipv6 direction OUT and limiter IN and OUT

          regards

          supermega

          1 Reply Last reply Reply Quote 0
          • S
            supermega
            last edited by

            Hi there

            Can somebody please explain me how I have to configure the traffic shaping on floating rule. I have some knowledge problems to get this working.

            The goal is that 3 interfaces can share a defined amount of bandwith for up and download.

            regards

            supermega

            UPDATE: When I set the floating rule direction to IN I can ping from the OPT1 to the Internet. After I set the limiter parameters IN/OUT the connection doesn't work anymore :(

            1 Reply Last reply Reply Quote 0
            • panzP
              panz
              last edited by

              Forgive my lack of knowledge about pf, but setting a "pass action" on a floating rule, direction -> in, could be a risk for internal LAN protection? (or should we use "match" instead, as suggested).

              pfSense 2.3.2-RELEASE-p1 (amd64)
              motherboard: MSI C847MS-E33 Micro ATX (with Intel Celeron CPU 847 @ 1.10 GHz) ~ PSU: Corsair VS350 ~ RAM: Kingston KVR1333D3E9S 4096 MB 240-pin DIMM DDR3 SDRAM 1.5 volt ~ NIC: Intel EXPI9301CTBLK (LAN) ~ NIC: D-Link DFE-528TX (CAM) ~ Hard Disk: Western Digital WD10JFCX Red ~ Case: Cooler Master HAF XB ~ power consumption: 21 Watts.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.