This is the second time, now, I’ve had to swap out hardware. This time around I 
just blanked the CF out and reinstalled 2.1-RELEASE and then imported my last 
good configuration to the board and we’re back up.

But the symptoms are as follows: 80% of TCP traffic (not on 80/443) passes 
through - so email, ICMP, FTP, etc.

95% of HTTP traffic does not pass. In fact if you load Yahoo.com it stalls when 
it hits a new hostname (s.yimg.com, for example, as part of their CDN).

Basics: 

ALIX 2D13 board (with battery), 4GB image (presently on a SanDisk 16GB card as 
it was all I had on me today).
Traffic shaping turned on for two VLANs (102 and 103). (limiting to 4Mbps down 
and 500Kbps up)
3 networks, with DHCP, on VLANs 101-103. 101=24bit, 102 = 24bit 103 = 22bit - 
backdoor access on VLAN1 from their wifi if I need it.
A 5th VLAN exists but is NOT routed through my switches (two Netgear GS110TPs) 
and is only used for their POS systems, nothing more than that.
No IP or Subnet overlap (0.0/24, 1.0/24, 2.0/24, 4.0/22).

No special applications installed.

Restoring settings doesn’t resolve the issue under any circumstances, it 
requires a new image.

This has happened on two separate boards - I would prefer to not think this is 
two bad boards, one was in the field being used for 4 months before I took it 
out of production to make it my hot spare.

Nothing appears in the Firewall logs to tell me it’s refusing traffic, in fact 
when I tell it to log all outgoing packets in the log they show up as OK.

Please let me know whatever else you need. I’m at my wits end on this right now 
and I would love to nip this in the bud once and for wall.

Thanks!

—
Ryan
_______________________________________________
List mailing list
[email protected]
https://lists.pfsense.org/mailman/listinfo/list

Reply via email to