From owner-freebsd-pf@FreeBSD.ORG Wed Jun 1 09:19:51 2005 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 6CF7516A41C for ; Wed, 1 Jun 2005 09:19:51 +0000 (GMT) (envelope-from dhartmei@insomnia.benzedrine.cx) Received: from insomnia.benzedrine.cx (insomnia.benzedrine.cx [62.65.145.30]) by mx1.FreeBSD.org (Postfix) with ESMTP id C6CAF43D48 for ; Wed, 1 Jun 2005 09:19:50 +0000 (GMT) (envelope-from dhartmei@insomnia.benzedrine.cx) Received: from insomnia.benzedrine.cx (dhartmei@localhost [127.0.0.1]) by insomnia.benzedrine.cx (8.13.3/8.12.11) with ESMTP id j519JmVT018935 (version=TLSv1/SSLv3 cipher=DHE-DSS-AES256-SHA bits=256 verify=NO); Wed, 1 Jun 2005 11:19:49 +0200 (MEST) Received: (from dhartmei@localhost) by insomnia.benzedrine.cx (8.13.4/8.12.10/Submit) id j519JmQH001036; Wed, 1 Jun 2005 11:19:48 +0200 (MEST) Date: Wed, 1 Jun 2005 11:19:48 +0200 From: Daniel Hartmeier To: "Constant, Benjamin" Message-ID: <20050601091948.GA15431@insomnia.benzedrine.cx> References: Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.5.6i Cc: freebsd-pf@freebsd.org Subject: Re: ALTQ on carp + pfsync? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 01 Jun 2005 09:19:51 -0000 On Wed, Jun 01, 2005 at 10:44:49AM +0200, Constant, Benjamin wrote: > - Pfsync is using internal interface (don't have 3 nic in the box) to > exchange data. > - ATLQ is enabled on external interface (em1). > - CARP is in use on both interface (in failover mode). > > I'm currently using CBQ scheduler for the traffic shaping and as I've no > specific rule for carp and pfsync protocols, > I think this traffic is falling in the default (mandatory) cbq child queue > (which of course doesn't have the biggest priority). If you have ALTQ enabled only on the external interface, and pfsync uses only the internal interface, the pfsync traffic is not queued at all (i.e. not using up any bandwidth in any queue on the external interface), and the problem just doesn't exist. Or what did I misunderstand? CARP doesn't itself generate significant traffic, you don't need to worry about that (unless the external interface is so saturated that CARP traffic can't get through at all, causing failovers). You could simply give CARP traffic the highest priority (using a top-level priority queue, possibly) in that case. Daniel