Project

General

Profile

Actions

Bug #4856

closed

Traffic Shaper blocks traffic when the config is otherwise changed

Added by Michael Knowles almost 9 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
Traffic Shaper (ALTQ)
Target version:
-
Start date:
07/20/2015
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
All
Affected Architecture:
All

Description

When changing a firewall or NAT rule, or converting a NAT rule to loadbalancer (or potentially other firewall-related issue), I have seen the traffic shaper block the relevant traffic.

The workaround is to delete the traffic shaper from the interfaces and re-create it with the same settings. Only once this has occurred will the relevant traffic be allowed to pass (with absolutely everything else config-wise remaining identical).

I have about 20 pfSense instances in customer sites and have seen this on many instances and versions, all v2.x, and last experienced this yesterday with a v2.2.3 when changing a NAT rule for SMTP into a rule for the loadbalancer.

One thing all the instances have in common is that they are all virtualised on VMware (various versions from 4.1 to 5.5U2)


Files

rules.debug (21.2 KB) rules.debug Wayne Huang, 10/19/2015 10:51 AM
Actions

Also available in: Atom PDF