ipfw - TRAFFIC SHAPER

alexus alexus at gmail.com
Fri Oct 9 17:22:29 UTC 2009


On Fri, Oct 9, 2009 at 12:57 PM, Brent Bloxam <brentb at beanfield.com> wrote:
> alexus wrote:
>>
>> I'm trying to fight with ipfw and unfortunately unsuccessfully...
>>
>> I created following rules
>>
>> ipfw pipe 1 config bw 1Mbit/s
>> ifpw add 8080 pipe 1 tcp from any to any src-port www
>> ifpw add 8080 pipe 1 tcp from any to any dst-port www
>>
>> yet I see peaks of my traffic is way higher them 1Mbit/s
>> i have following modules loaded through kldload
>>
>>  2    3 0xffffffff80cd3000 15db8    ipfw.ko
>>  5    1 0xffffffff80cec000 bbc8     dummynet.ko
>>
>> i even load
>>
>> 10    1 0xffffffff80e7d000 14df     ipdivert.ko
>>
>> and that still didn't help :(
>> can anyone help me?
>>
>
> Do you have an ipfw rule allowing www traffic before rule 8080?
> _______________________________________________
> freebsd-questions at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questions-unsubscribe at freebsd.org"
>

no, nothing related to www, in fact the only rules I have before that
one is followings:

00100 19704   3856110 allow ip from any to any via lo0
00200     0         0 deny ip from any to 127.0.0.0/8
00300     0         0 deny ip from 127.0.0.0/8 to any

that's it...

-- 
http://alexus.org/


More information about the freebsd-questions mailing list