1
21.1 Legacy Series / Re: Weird port forward issue behind potential double nat?
« on: March 04, 2021, 10:26:15 am »
Just a quick bump so it doesn't get lost in the forums!
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
800Mb is good in my opinion, for a 1G network
but indeed, with some tuning you could achieve more
the upload/download ratio is huge BTW
also, I would try using http://www.dslreports.com/speedtest so you have bufferbloat information too
Sometimes the servers from speedtest are slower than 1G
BTW: looks like you have TCP timestamps disabled?
try executing
[root@myfw ~]# sysctl net.inet.tcp.rfc1323
net.inet.tcp.rfc1323: 1
there's really few data in that capture, do
- start the capture
- run speedtest, or download a big file
- stop the capture
I suggest to insert
- 0 as "count"
- "72" as Packet Length, so only the headers are grabbed
https://workupload.com/file/ycKxSmB3fzh
I would start observing the top command output when doing the speed test
Other thing that comes in my mind: packet fragmentation? maybe take a capture of the WAN traffic on the OPNsense box
Interfaces : LAN : mss to 1300 for a first test