Thought everyone should know a issue I found.
Installing fail2ban -- caused a raised condition where pfSense was not shaping the voip traffic properly. pfSense version 1.2.3 RC2 -- does not shape properly that it does not ignore the TOS settings as set in the rule when creating it.
What happens is installing fail2ban somehow starts marking the packets differently even if you set this option in asterisk.. thus the traffic don't get shaped. Now using version 1.2.1 RC4 is fine.
I found removing fail2ban when using pfSense 1.2.3 RC2 -- allowed the settings set by Asterisk to be seen by pfSense and then my calls were shaped correctly again.
This came when a client called complaining that customers couldn't hear them... so I looked at the traffic queues and during a call the outbound call leg wasn't getting shaped... stopping fail2ban finally resolved it. I pulled my hair out making every change I could to the conf files but the packet capture showed that the values were not changing.. it was only after hours did I realize the last change to this customer was fail2ban.
I stopped fail2ban - iptables and made a test call and bam.. now calls are shaped right ! OMG -- talk about frustration.
If you want to use fail2ban -- it would be easier to just use pfSense 1.2.1 RC4
That is my two cents.
JD
Member Since:
2006-09-27