Score:0

When PF firewal runs local network traffic is slowed

cn flag

OS FreeBSD-13.0p3

We have a gateway router (G) with three physical Ethernet interfaces. One (W1) is the WAN gateway. The other two (L1,L2) are connected to the same wire. L1 belongs to the 192.168.0.0/16 network. L2 belongs to our public routable network 123.123.123.0/25.

All single-homed internal hosts belong to one or the other networks exclusively. Some dual-homed hosts have one nic on L1 and the other on L2.

We use PF firewall on G.

If PF is not running then hosts on L2 can immediately connect to hosts on L1 and vice versa. If PF is running then there is a significant reduction in bandwidth which manifests itself with extremely long logon times and slow file transfers.

I was told that because L1 and L2 are on the same system that the OS network stack should route traffic between the two without the firewall being involved. But this seems not the case.

I realize that this is minimal information, however, in the event that someone recognizes the symptoms I am posting this here.

An explanation of what is going on is much appreciated.

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.