LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 05-01-2008, 06:38 PM   #1
Cacciari
LQ Newbie
 
Registered: Jan 2007
Distribution: Debian
Posts: 7

Rep: Reputation: 0
Slow speeds when going LAN -> Debian Firewall -> WAN


Greetings,

Perhaps one if you can help me.

I´ve googled, LQ'ed and found nothing like the problem i'm having. Perhaps im looking with wrong keywords or else. My problem is that I resurrected a Toshiba Satellite 335CDS. It's configuration is clearly not cutting-edge:

Pentium 233 MMX
64 RAM
4GB HD
No native NICs.

I've installed two NICs on it to construct my firewall.

On eth0: Encore 10/100Mbps (WAN)
On eth1: Xircom 10Mpbs (LAN) 192.168.119.0/24

My distro is Linux Debian Etch 2.6.18-6-486

Notes
* Configured 1 for IP forwarding
* 50% of RAM filled, Swap at 0%, +-5% CPU time
* Running dhcpd, nagios, sshd.
* Configured routes as this:

Code:
Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent
permitted by applicable law.
Localhost:~# route
Kernel IP routing table
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface
192.168.119.0   *               255.255.255.0   U     0      0        0 eth1
189.34.32.0     *               255.255.248.0   U     0      0        0 eth0
link-local      *               255.255.0.0     U     1000   0        0 eth0
link-local      *               255.255.0.0     U     1000   0        0 eth1
default         bd222001.virtua 0.0.0.0         UG    0      0        0 eth0
default         192.168.119.254 0.0.0.0         UG    0      0        0 eth1
Also, configured iptables, as this site instructs:

Code:
   # Delete and flush. Default table is "filter". Others like "nat" must be explicitly stated.
   iptables --flush            - Flush all the rules in filter and nat tables
   iptables --table nat --flush
   iptables --delete-chain     - Delete all chains that are not in default filter and nat table
   iptables --table nat --delete-chain

   # Set up IP FORWARDing and Masquerading
   iptables --table nat --append POSTROUTING --out-interface eth0 -j MASQUERADE
   iptables --append FORWARD --in-interface eth1 -j ACCEPT

   echo 1 > /proc/sys/net/ipv4/ip_forward             - Enables packet forwarding by kernel
I've read about 8 hours before posting this. I really wanted to avoid this but im very frustrated. My LAN cannot get speeds above 15KBs,20KBs to outside world. Listening to shoutcast is a torture.

wget things from firewall bash is like flying.. 512KBps Max.


Something must be very very wrong with my firewall. If you got through a problem like this, i would be very thankful if you expose your solution, or just give me a tip.

I hope it's just a "why dont you set blabla to 1" issue.

Thanks in advance.
 
Old 05-01-2008, 07:17 PM   #2
beadyallen
Member
 
Registered: Mar 2008
Location: UK
Distribution: Fedora, Gentoo
Posts: 209

Rep: Reputation: 36
I'm not sure if it's the problem, but why have you got the 10mbps card on the LAN side, with the faster on the WAN? I'd swap them over. With the current setup, all the other LAN machines have to downgrade to 10mbps, which will probably cause poor performance. Swapping them over means that the internal machines can go fast, and since the WAN doesn't get over 512KBps, the 10mbps card will do fine. I'd imagine that the firewall is getting web data too fast, and can't hand it off to the destination machine.
As I said, I don't know if it'll work, but it's worth a try.
 
Old 05-01-2008, 08:52 PM   #3
Cacciari
LQ Newbie
 
Registered: Jan 2007
Distribution: Debian
Posts: 7

Original Poster
Rep: Reputation: 0
I've tried it, but nothing.

Im testing only one host, listening to a shoutcast stream of 128Kbps. With such a small bandwidth occupation like that, it must be something wrong with linux, not with the NICs.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Very slow speeds with Ktorrent on Debian sunpascal Linux - Software 3 05-19-2006 08:31 PM
Fast WAN slow LAN Slack 9.x - 10.x Grunthos Slackware 5 09-28-2005 03:58 AM
Very slow transfer speeds via LAN TBomb Linux - Networking 6 07-26-2005 08:34 AM
(Debian) LAN Connectin Good, WAN Bad Krikee Linux - Networking 1 05-08-2004 10:05 AM
LAN to WAN Connection MNF Mandrake Firewall? aaziz Linux - Networking 0 02-16-2004 02:25 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 07:44 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration