Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Hardware and Performance
»
traffic between untagged vlan and a tagged vlan basically dies
« previous
next »
Print
Pages: [
1
]
Author
Topic: traffic between untagged vlan and a tagged vlan basically dies (Read 2797 times)
yolocoffee
Newbie
Posts: 6
Karma: 0
traffic between untagged vlan and a tagged vlan basically dies
«
on:
February 03, 2022, 11:17:06 pm »
I am scratching my head on how to solve this.
I have one primary untagged LAN (60_LAN) and 3 VLANs (70_VLAN/80_VLAN/90_VLAN). No VLAN is allowed to access the primary lan but primary lan can access all other VLANs.
My speeds from primary LAN to any other tagged LAN (60_LAN -> 70_VLAN) are atrocius. Connections can be established in the case of accessing a web page or starting a remote desktop session but the performance is very spotty. In other cases, I cannot establish a connection at all. iperf3 basically dies after getting to 2 Mbps. rsync won't work at all.
If I disable pf (from the GUI or the shell), everything works correctly with the expected speed and performance. As soon as I enable pf, all traffic from primary lan to other vlans goes to shit. All traffic between the tagged VLANs is fine with pf enabled.
I have disabled all hardware filtering etc.
I do not have any intrusion detection turned on.
I do not have any trafffic shaping/QoS rules.
I have a single WAN configuration.
I installed the vendor realtek driver (the card does not have issues passing traffic between tagged VLANs or between the tagged and untagged vlan if i disable pf)
What gives?
Logged
Patrick M. Hausen
Hero Member
Posts: 6826
Karma: 573
Re: traffic between untagged vlan and a tagged vlan basically dies
«
Reply #1 on:
February 03, 2022, 11:28:16 pm »
Don't run tagged and untagged traffic over the same interface.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
franco
Administrator
Hero Member
Posts: 17661
Karma: 1611
Re: traffic between untagged vlan and a tagged vlan basically dies
«
Reply #2 on:
February 04, 2022, 09:00:09 am »
> As soon as I enable pf, all traffic from primary lan to other vlans goes to shit.
https://bugs.freebsd.org
Good luck,
Franco
Logged
pes
Newbie
Posts: 4
Karma: 0
Re: traffic between untagged vlan and a tagged vlan basically dies
«
Reply #3 on:
September 07, 2022, 08:55:22 am »
Quote from: pmhausen on February 03, 2022, 11:28:16 pm
Don't run tagged and untagged traffic over the same interface.
WHY NOT??
Logged
Patrick M. Hausen
Hero Member
Posts: 6826
Karma: 573
Re: traffic between untagged vlan and a tagged vlan basically dies
«
Reply #4 on:
September 07, 2022, 09:16:12 am »
Because it doesn't work in unexpected ways?
It's a "deficiency" - if you want to call it that - of the FreeBSD network stack and nothing that can easily and quickly be fixed, so it's going to stay that way for the foreseeable future.
FreeBSD is not a switch so neither is OPNsense. The invention of the "native VLAN" in the 802.1q specification is problematic in my opinion. I never use untagged frames on trunk ports, not even on my Cisco switches.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Hardware and Performance
»
traffic between untagged vlan and a tagged vlan basically dies