Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Shapping traffic between DMZ and WAN, but *not* DMZ and LAN?

    Scheduled Pinned Locked Moved Traffic Shaping
    5 Posts 4 Posters 2.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      superwormy
      last edited by

      I want to limit the amount of WAN bandwidth that the DMZ can use, but not shape traffic between the LAN and the DMZ.

      After going through the traffic shaping wizard, using DMZ in the LAN box, it appears to both limit traffic between LAN and DMZ and WAN and DMZ.

      How can I fix this?

      firewall.png
      firewall.png_thumb

      1 Reply Last reply Reply Quote 0
      • H
        hoba
        last edited by

        pfSense 1.2 only supports trafficshaping between 2 interface out of the box. Please read up at the bounty board for changes in the upcoming version 1.3 regarding trafficshaping.

        1 Reply Last reply Reply Quote 0
        • S
          superwormy
          last edited by

          The problem right now is that it's shaping traffic between all interfaces equally.

          It's shaping traffic between (WAN and DMZ) and between (DMZ and LAN).
          There's no way to get it to shape between just WAN and DMZ?

          • Keith
          1 Reply Last reply Reply Quote 0
          • E
            eri--
            last edited by

            Try deleteing the whole LAN queue config.

            Though i do not know how 1.2 will cope with that.

            1 Reply Last reply Reply Quote 0
            • D
              datafirm
              last edited by

              Im running 1.2 final and I may be trying to do something similar, can someone confirm?

              I have my Webserver in the DMZ and have a LAN and WAN if.  Currently I am shaping the LAN and WAN with simple shaping to prioritze the VoIP data.  I also want to limit all LAN -> WAN traffic to some KB limit to ensure the DMZ if gets all the bandwidth it needs.

              Since the DMZ is bridged to the WAN, is this not possible in 1.2 ?

              Thanks

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.