From owner-freebsd-questions@FreeBSD.ORG Fri Mar 6 13:27:35 2009 Return-Path: Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 14BFE1065677; Fri, 6 Mar 2009 13:27:35 +0000 (UTC) (envelope-from smithi@nimnet.asn.au) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [220.233.188.227]) by mx1.freebsd.org (Postfix) with ESMTP id 84DEC8FC12; Fri, 6 Mar 2009 13:27:34 +0000 (UTC) (envelope-from smithi@nimnet.asn.au) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id n26DRVlc089666; Sat, 7 Mar 2009 00:27:32 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Sat, 7 Mar 2009 00:27:31 +1100 (EST) From: Ian Smith To: Sebastian Mellmann In-Reply-To: <5431.62.206.221.107.1236336345.squirrel@anubis.getmyip.com> Message-ID: <20090306234700.F71460@sola.nimnet.asn.au> References: <5431.62.206.221.107.1236336345.squirrel@anubis.getmyip.com> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-ipfw@freebsd.org, questions@freebsd.org Subject: Re: ipfw: Can't see other flows in pipe X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 Mar 2009 13:27:36 -0000 On Fri, 6 Mar 2009, Sebastian Mellmann wrote: [.. after merciless snippage ..] > $cmd pipe 500 config bw $bottleneck_bandwidth > $cmd add pipe 500 all from any to any via $in_if > > $cmd pipe 510 config bw $bottleneck_bandwidth > $cmd add pipe 510 all from any to any via $out_if > ipfw pipe show gives me the following: > > 00510: 100.000 Mbit/s 0 ms 50 sl. 1 queues (1 buckets) droptail > mask: 0x00 0x00000000/0x0000 -> 0x00000000/0x0000 > BKT Prot ___Source IP/port____ ____Dest. IP/port____ Tot_pkt/bytes > Pkt/Byte Drp > 0 tcp 192.168.5.4/47753 192.168.7.1/22 610244 609078476 2 > 104 1 > 00500: 100.000 Mbit/s 0 ms 50 sl. 1 queues (1 buckets) droptail > mask: 0x00 0x00000000/0x0000 -> 0x00000000/0x0000 > BKT Prot ___Source IP/port____ ____Dest. IP/port____ Tot_pkt/bytes > Pkt/Byte Drp > 0 tcp 192.168.5.4/47753 192.168.7.1/22 609337 607754332 2 > 1552 0 > Why do I only see ONE connection inside the 500/510 pipe? > I thought I could see any connection going through that pipe. With no masking specified, all flows use the same bucket (0) so totals shown are of all packets through that pipe. src/dest addr/ports shown are those of the first packet using that bucket, not the most recent. You may also find http://info.iet.unipi.it/~luigi/ip_dummynet/ helpful. cheers, Ian