hi,
in my home-setup i was trying to set up pfSense in a virtual machine with two virtual network interfaces. on the proxmox host itself is only one network available.
all in all the routing is working, local network is working and wan as well, everything is routed well.
but: the performance is absolutely low. from another virtual machine i get less than 100kb/s.
the proxmos host is a intel g4560 on an msi board, nothing really fast, but it is absolutely sufficient for 3 VMs (freepbx (vm), nextcloud (lxc), pfsense(vm)) and soe docker container. the load is always below 10%.
16gb of ram are installed. everything runs really fine, my wan-connection is 25mbit/s (down, up 5mbit/s) and i can use the whole bandwidth from pcs, server, vms.
the network structure is:
router1 (dsl modem) <-1-> router2 <-2-> lan
i was trying to remove router2, because i don't need it anymore (was used for time conditions for children and wlan access). the substitue should be pfsense (some kind of security, nat and time based access profiles).
all components are connected through a switch, router1 and pfsense communicating with ip subnet 192.168.1.0/24 and pfsense communicating with lan with ip subnet 10.0.0.0/24.
that works as mentioned before, the pfsense load is always below 10%.
i tested all virtual nic driver proxmox is offering, but all behave bad.
in my local network is very low traffic, most wlan devices might do the usual internet traffic, but nothing really using much bandwidth.
any idea, why this scenario is so slow?
i know that this kind of architecture is not really secure, that is not part of this question. I am just curious why it is not working as expected.
kind regards,
andre
edit: i already disabled hardware checksum offloading as well as tso ald lro. webgui of pfsense is quite fast, so i guess it has to do with wan connection.
edit2: pfsense version 2.4.3-RELEASE-p1 (amd64), proxmox 5.2-1
in my home-setup i was trying to set up pfSense in a virtual machine with two virtual network interfaces. on the proxmox host itself is only one network available.
all in all the routing is working, local network is working and wan as well, everything is routed well.
but: the performance is absolutely low. from another virtual machine i get less than 100kb/s.
the proxmos host is a intel g4560 on an msi board, nothing really fast, but it is absolutely sufficient for 3 VMs (freepbx (vm), nextcloud (lxc), pfsense(vm)) and soe docker container. the load is always below 10%.
16gb of ram are installed. everything runs really fine, my wan-connection is 25mbit/s (down, up 5mbit/s) and i can use the whole bandwidth from pcs, server, vms.
the network structure is:
router1 (dsl modem) <-1-> router2 <-2-> lan
i was trying to remove router2, because i don't need it anymore (was used for time conditions for children and wlan access). the substitue should be pfsense (some kind of security, nat and time based access profiles).
all components are connected through a switch, router1 and pfsense communicating with ip subnet 192.168.1.0/24 and pfsense communicating with lan with ip subnet 10.0.0.0/24.
that works as mentioned before, the pfsense load is always below 10%.
i tested all virtual nic driver proxmox is offering, but all behave bad.
in my local network is very low traffic, most wlan devices might do the usual internet traffic, but nothing really using much bandwidth.
any idea, why this scenario is so slow?
i know that this kind of architecture is not really secure, that is not part of this question. I am just curious why it is not working as expected.
kind regards,
andre
edit: i already disabled hardware checksum offloading as well as tso ald lro. webgui of pfsense is quite fast, so i guess it has to do with wan connection.
edit2: pfsense version 2.4.3-RELEASE-p1 (amd64), proxmox 5.2-1
Last edited: