Example 1 – modifying the penalty box

As an example of how we can change rules generated by the pfSense traffic shaper wizard to suit our needs, let's revisit the penalty box rule. As you might recall, the traffic shaper wizard lets us assign a single IP address to the low-priority queue (qOthersLow). Suppose we want to make two modifications to the penalty box:

  • Instead of a single IP address, we want to ban a range of IP addresses.
  • The only traffic we want to penalize is from a video streaming application that uses the Real-time Transport Protocol (RTP). RTP in turn uses UDP, so we only want to block UDP traffic.

The traffic shaper wizard does not allow us to do this. Fortunately, changing the existing penalty box rule is relatively easy ...

Get Mastering pfSense now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.