Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




447 posts

Ultimate Geek
+1 received by user: 72


Topic # 77169 11-Feb-2011 20:26
Send private message

Hello all
I need some help deciding and setting up a firewall/QoS

So far I have setup structured cabling throughout the house also have a wireless router setup as an access point (DHCP dissabled)
modem is a Draytek Virgor 120 that is working as a PPPoA/PPPoE bridge and is fine

I am running pfsense 1.2.3 on an old p3 800
There is 5 computers 2 consoles and laptops connected most of the time.
The net seems to work as it should but i have lots of issues with games and some web sites eg youtube vids will not load.
Some games will connect BFP4Free and Trackmania work yet BF2 does not. I have tried to port forward but still will not work.
Also need to setup a traffic monitor so i can see and charge appropriately the internet usage as we keep busting the caps every month. 

I really dont care to much about the firewall side of things just need QoS as still on ADSL 

If anyone knows of a better solution or how to configure pfsense so i can use this setup it would be much appreciated.

Create new topic
8020 posts

Uber Geek
+1 received by user: 386

Trusted
Subscriber

  Reply # 438489 12-Feb-2011 01:00
Send private message

I am assuming you have it setup, where you pfsense box has 2 network cards one connected to the modem and the other to a switch, like:

Draytek > Pfsense > Switch > Wireless


I think Enabling upnp and NAT-PMP should help with many games, others you might need to alter the games config on each players machine so they use different ports (depends on the game).

pfsense has QoS / shaping iirc, so use that to lower the priority of p2p, large downloads etc and prioritise gaming... will probably involve quite a bit of trial and error.

pfsesne also seems to have various usage graphs.  What you probably want to do is in the dhcp settings change it so the known machines always get the same ip address, this is usually called "static dhcp by mac address". 



447 posts

Ultimate Geek
+1 received by user: 72


  Reply # 438526 12-Feb-2011 10:03
Send private message

Ragnor: I am assuming you have it setup, where you pfsense box has 2 network cards one connected to the modem and the other to a switch, like:

Draytek > Pfsense > Switch > Wireless


I think Enabling upnp and NAT-PMP should help with many games, others you might need to alter the games config on each players machine so they use different ports (depends on the game).

pfsense has QoS / shaping iirc, so use that to lower the priority of p2p, large downloads etc and prioritise gaming... will probably involve quite a bit of trial and error.

pfsesne also seems to have various usage graphs.  What you probably want to do is in the dhcp settings change it so the known machines always get the same ip address, this is usually called "static dhcp by mac address". 


Yea thats how i have it all setup i cant find NAT-PMP i assume its automatic. The traffic shaper i find hard to understand fully yet. I have to load the ports and local ip for everrything and it just ends up trying to do to much i think. I have set the DHCP lease time to 30years or something.

I have the traffic monitor working now using BandwidthD.
Now i just have to work out why pfsense was shut down overnight... 

 
 
 
 


34 posts

Geek


  Reply # 438751 13-Feb-2011 06:59
Send private message

I have done this for my setup as well

ADSL router -> firewall nic1 -> firewall nic2 -> switch -> access point with 8db aerial

pfsense runs static mapped IP addresses for all the flatmates, where I have moved flatmate 1's addresses to 192.168.x.2x and flatmate 2's addresses to 192.168.x.3x. In doing this, I also set the hostname to a name starting with the flatmates name for easy identification - this is then resolved by bandwidthd by the hostname for the individual IP graphs.

bandwidthd graphs themselves are a bit deceptive out of the box, as its set to something like 8 days a week, 35 days a month, etc, so easiest to do a screen cap of the figures at the end of your billing month or delete the log files outright, so that you can moniitor within your monthly cap. Theres still a few teething issues with the likes of the software not changing the logs at midnight, etc, so I just work on the monthly graph only, but this is still easy enough to pick up the heavy downloaders in a matter of minutes :)

Create new topic



Twitter »

Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Netatmo launches smart home products in New Zealand
Posted 20-Nov-2017 20:06


Huawei Mate 10: Punchy, long battery life, artificial intelligence
Posted 20-Nov-2017 16:30


Propel launch Disney Star Wars Laser Battle Drones
Posted 19-Nov-2017 21:26


UFB killer app: Speed
Posted 17-Nov-2017 17:01


The case for RSS — MacSparky
Posted 13-Nov-2017 14:35


WordPress and Indieweb: Take control of your online presence — 6:30 GridAKL Nov 30
Posted 11-Nov-2017 13:43


Chorus reveals technology upgrade for schools, students
Posted 10-Nov-2017 10:28


Vodafone says Internet of Things (IoT) crucial for digital transformation
Posted 10-Nov-2017 10:06


Police and Facebook launch AMBER Alerts system in NZ
Posted 9-Nov-2017 10:49


Amazon debuts Fire TV Stick Basic Edition in over 100 new countries
Posted 8-Nov-2017 05:34


Vodafone VoIP transition to start this month
Posted 7-Nov-2017 12:33


Spark enhances IoT network capability
Posted 7-Nov-2017 11:33


Vocus NZ sale and broadband competition
Posted 6-Nov-2017 14:36


Hawaiki reaches key milestone in landmark deep-sea fibre project
Posted 4-Nov-2017 13:53


Countdown launches new proximity online shopping app
Posted 4-Nov-2017 13:50



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.