Project

General

Profile

Actions

Todo #16042

open

Feedback on pfSense® software Configuration Recipes — Configuring CoDel Limiters for Bufferbloat

Added by Daniel Marks 2 months ago.

Status:
New
Priority:
Very Low
Assignee:
-
Category:
Recipes
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:

Description

Page: https://docs.netgate.com/pfsense/en/latest/recipes/codel-limiters.html

Feedback: Suggestion regarding IPv6 in the "Create Floating Rule" section, I feel like the note about source matching should be expanded. I have noticed people are specifying "WAN" as the source for IPv6 address matching, when they really intended to match "LAN" addresses (attached screenshot). This common mistake means the actual source of most of their traffic (i.e. their LAN full of clients) will not have their traffic shaped. This is especially important when clients have publicly routable IPv6 addresses, as happy eyeballs will effectively bypass any rules you create on IPv4. I would probably go as far as creating a dedicated note at the bottom to remind users that have configured IPv6 that it is critical to implement traffic shaping over IPv6 if they have created rules for IPv4, as most endpoints on the internet that support IPv6 will use IPv6 by default.


Files

Screenshot 2025-02-10 at 7.46.00 PM.png (136 KB) Screenshot 2025-02-10 at 7.46.00 PM.png screenshot of example rules for dual stack networks Daniel Marks, 02/11/2025 01:06 AM

No data to display

Actions

Also available in: Atom PDF