Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




511 posts

Ultimate Geek


# 77169 11-Feb-2011 20:26
Send private message

Hello all
I need some help deciding and setting up a firewall/QoS

So far I have setup structured cabling throughout the house also have a wireless router setup as an access point (DHCP dissabled)
modem is a Draytek Virgor 120 that is working as a PPPoA/PPPoE bridge and is fine

I am running pfsense 1.2.3 on an old p3 800
There is 5 computers 2 consoles and laptops connected most of the time.
The net seems to work as it should but i have lots of issues with games and some web sites eg youtube vids will not load.
Some games will connect BFP4Free and Trackmania work yet BF2 does not. I have tried to port forward but still will not work.
Also need to setup a traffic monitor so i can see and charge appropriately the internet usage as we keep busting the caps every month. 

I really dont care to much about the firewall side of things just need QoS as still on ADSL 

If anyone knows of a better solution or how to configure pfsense so i can use this setup it would be much appreciated.

Create new topic
8035 posts

Uber Geek

Trusted

  # 438489 12-Feb-2011 01:00
Send private message

I am assuming you have it setup, where you pfsense box has 2 network cards one connected to the modem and the other to a switch, like:

Draytek > Pfsense > Switch > Wireless


I think Enabling upnp and NAT-PMP should help with many games, others you might need to alter the games config on each players machine so they use different ports (depends on the game).

pfsense has QoS / shaping iirc, so use that to lower the priority of p2p, large downloads etc and prioritise gaming... will probably involve quite a bit of trial and error.

pfsesne also seems to have various usage graphs.  What you probably want to do is in the dhcp settings change it so the known machines always get the same ip address, this is usually called "static dhcp by mac address". 



511 posts

Ultimate Geek


  # 438526 12-Feb-2011 10:03
Send private message

Ragnor: I am assuming you have it setup, where you pfsense box has 2 network cards one connected to the modem and the other to a switch, like:

Draytek > Pfsense > Switch > Wireless


I think Enabling upnp and NAT-PMP should help with many games, others you might need to alter the games config on each players machine so they use different ports (depends on the game).

pfsense has QoS / shaping iirc, so use that to lower the priority of p2p, large downloads etc and prioritise gaming... will probably involve quite a bit of trial and error.

pfsesne also seems to have various usage graphs.  What you probably want to do is in the dhcp settings change it so the known machines always get the same ip address, this is usually called "static dhcp by mac address". 


Yea thats how i have it all setup i cant find NAT-PMP i assume its automatic. The traffic shaper i find hard to understand fully yet. I have to load the ports and local ip for everrything and it just ends up trying to do to much i think. I have set the DHCP lease time to 30years or something.

I have the traffic monitor working now using BandwidthD.
Now i just have to work out why pfsense was shut down overnight... 

 
 
 
 


34 posts

Geek


  # 438751 13-Feb-2011 06:59
Send private message

I have done this for my setup as well

ADSL router -> firewall nic1 -> firewall nic2 -> switch -> access point with 8db aerial

pfsense runs static mapped IP addresses for all the flatmates, where I have moved flatmate 1's addresses to 192.168.x.2x and flatmate 2's addresses to 192.168.x.3x. In doing this, I also set the hostname to a name starting with the flatmates name for easy identification - this is then resolved by bandwidthd by the hostname for the individual IP graphs.

bandwidthd graphs themselves are a bit deceptive out of the box, as its set to something like 8 days a week, 35 days a month, etc, so easiest to do a screen cap of the figures at the end of your billing month or delete the log files outright, so that you can moniitor within your monthly cap. Theres still a few teething issues with the likes of the software not changing the logs at midnight, etc, so I just work on the monthly graph only, but this is still easy enough to pick up the heavy downloaders in a matter of minutes :)

Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Intel introduces cryogenic control chip to enable quantum computers
Posted 10-Dec-2019 21:32


Vodafone 5G service live in four cities
Posted 10-Dec-2019 08:30


Samsung Galaxy Fold now available in New Zealand
Posted 6-Dec-2019 00:01


NZ company oDocs awarded US$ 100,000 Dubai World Expo grant
Posted 5-Dec-2019 16:00


New Zealand Rugby Selects AWS-Powered Analytics for Deeper Game Insights
Posted 5-Dec-2019 11:33


IMAGR and Farro bring checkout-less supermarket shopping to New Zealand
Posted 5-Dec-2019 09:07


Wellington Airport becomes first 5G connected airport in the country
Posted 3-Dec-2019 08:42


MetService secures Al Jazeera as a new weather client
Posted 28-Nov-2019 09:40


NZ a top 10 connected nation with stage one of ultra-fast broadband roll-out completed
Posted 24-Nov-2019 14:15


Microsoft Translator understands te reo Māori
Posted 22-Nov-2019 08:46


Chorus to launch Hyperfibre service
Posted 18-Nov-2019 15:00


Microsoft launches first Experience Center worldwide for Asia Pacific in Singapore
Posted 13-Nov-2019 13:08


Disney+ comes to LG Smart TVs
Posted 13-Nov-2019 12:55


Spark launches new wireless broadband "Unplan Metro"
Posted 11-Nov-2019 08:19


Malwarebytes overhauls flagship product with new UI, faster engine and lighter footprint
Posted 6-Nov-2019 11:48



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.