LAN network poor network performance post-Wifi Network change

Started by davbot, August 27, 2024, 05:15:45 PM

Previous topic - Next topic
After changing our wifi network to be a guest network, we began to have poor performance on our LAN network. I decided to roll back the configuration to what it was previously, but that unfortunately didn't help. I did do some googling, but that didn't yield much, other than trying to change the Firewall optimization under Firewall-> Settings-> Advanced-> Firewall Optimization -> Conservative. (from Normal) .

I feel like the something is wrong with the default deny, but I'm just a bit of a noob

Does anyone have any suggestions?

Thanks!




Hmmm... I'm completely at a loss about what those screenshots are supposed to illustrate. Was hoping for some networking diagram or something, having hard time figuring out how's guest WiFi related to OPNsense. How's WAN firewall rules supposed to have any effect here? What does" poor performance on our LAN network" mean exactly?

Sorry, I of gave up on uploading the more maybe useful screenshot of the LAN configuration. (Now attached)
As for the LAN performance, when browsing the internet in general, sites tend to take a long time to load when browsing to them for the first time, but once they load they tend to function for 30seconds- a couple minutes. Then they tend to do something to the effect of showing a page not responding error from Chrome. Sometimes the sites take >1min to load, but other times they take a normal couple of seconds.

If I didn't know any better, I would think there was network congestion, but that doesn't seem to be what's happening. (Network has very light load, 5-10 pcs doing very basic web browsing and email) Paying for 50+Mbps down, and that is reflected in a speed test, so I don't think it's an ISP problem. (Ping is <40ms)

As for the Guest WiFi, It was set up using this guide excluding the vouchers. (https://docs.opnsense.org/manual/how-tos/guestnet.html) The SBC box (PC Engines) that is running opnsense has a built-in wifi card that we wanted to change from being an employee network to a guest network.

This all started happening after I had changed the WiFi settings.

Once just about everything started behaving really slowly, I restored the config to what it was prior to making the changes but am just not certain what went wrong.

Thanks for having the patience to look at this.

EDIT: I had read some posts about DNS causing problems and verified that hosts on the LAN have 8.8.8.4 and 8.8.4.4 at the top of the resolver list

Quote from: davbot on August 27, 2024, 10:46:50 PM
The SBC box (PC Engines) that is running opnsense has a built-in wifi card that we wanted to change from being an employee network to a guest network.

You will waste endless amounts of time, then end up purchasing  proper access points anyway. Do NOT use FreeBSD for access point functionality.

Your suggested solution worked! Real APs and everything seems to be hunky-dory. Thanks for the help.