Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Packetloss on all interfaces

    Scheduled Pinned Locked Moved General pfSense Questions
    13 Posts 3 Posters 4.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      michaelsnijder
      last edited by

      Hey Guys,

      Im having some packetloss problems, the pfsense box is running fine for a couple of hours. Then it suddenly starts to have allot of packetloss.

      If i reboot the box, everything is back to normal. It is currently not loadbalancing, because i thought it would cause the packetloss.

      We have a monitoring system on the lan interface wich starts to complain about the lan interface being unreachable.
      I cant discover anything weird on the CPU usage or memory load. Any thoughts about this problem?

      status_rrd_graph_img.png
      status_rrd_graph_img.png_thumb

      1 Reply Last reply Reply Quote 0
      • H
        hoba
        last edited by

        Anything in the systemlogs? Are you running snort?

        1 Reply Last reply Reply Quote 0
        • M
          michaelsnijder
          last edited by

          i have been running snort indeed, i removed the package. So if im right im not using snort at the moment. I cannot find anything in the systemlogs for now.

          1 Reply Last reply Reply Quote 0
          • H
            hoba
            last edited by

            Can you verify that snort got removed correctly? Maybe it's still running and detecting an attack and starts to block traffic.

            1 Reply Last reply Reply Quote 0
            • M
              michaelsnijder
              last edited by

              I had the same thought, thats why i removed the package. It doesnt show up at the installed packages, it does show up at the packages im able to install. So if im right it should be gone.

              I rebooted the box a couple of times, so i dont think it's still running in a background process.

              1 Reply Last reply Reply Quote 0
              • M
                michaelsnijder
                last edited by

                Another strange thing is, the loadbalancer marks the ip's as down while they are not.. This goes paired with the lan interface not being reachable.

                1 Reply Last reply Reply Quote 0
                • H
                  hoba
                  last edited by

                  And there are realy no logentries that point to a problem? What hardware are you running on? Also what kernel (embedded, smp, uni, developer)?

                  1 Reply Last reply Reply Quote 0
                  • M
                    michaelsnijder
                    last edited by

                    Well i changed the states to 20 000 and it seems to be running oke now, do you recognize this? The cpu usage is about 20%, its a 2 ghz box.

                    But i noticed that the states where at their max whole the time, i think that caused the packetloss. Will keep you updated on this.

                    1 Reply Last reply Reply Quote 0
                    • H
                      hoba
                      last edited by

                      That will absolutely do it. What kind of network do you have behind your pfSense? 10k states sounds heavy. If it seems abnormal I would start investigating the traffic.

                      1 Reply Last reply Reply Quote 0
                      • M
                        michaelsnijder
                        last edited by

                        We have a zabbix monitoring server behind it, that causes the abnormal states ;-) For now its still working great!

                        1 Reply Last reply Reply Quote 0
                        • M
                          michaelsnijder
                          last edited by

                          This definitely solved the problem! Thanks for your help.

                          1 Reply Last reply Reply Quote 0
                          • H
                            hoba
                            last edited by

                            Good to hear  :)

                            1 Reply Last reply Reply Quote 0
                            • O
                              obstreperousness
                              last edited by

                              I ran into exactly this problem too. My connections were all physically stable, and established connections (downloads, VoIP calls, etc) were reliable. But new connections were intermittently flaky, and packet loss was appearing while pinging the router's internal addresses.

                              A quick look at the RRD graphs showed that I was hovering around the 10k default state limit. So I doubled the state table size (in System / Advanced).

                              Thanks for the thread. Love those graphs.

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.