I have a ER-X wth version 1.9
I got two problems:
1. After rebooting, the pppoe configuration is erased when using redirect. I have to reapply the pppoe configuration again to get pppoe to connect (everything except the description is removed)
2. When I get back all the configuration back in, it seems my interactive-bulk-d is not matching traffic and it should, I am 100% the match for the ip should get hits but I am not seeing those with "show queueing input ifb1"
Configuration with PPPoE before reboot:
set firewall all-ping enable set firewall broadcast-ping disable set firewall group network-group NAT description 'hosts included for nat' set firewall group network-group NAT network 192.168.2.0/24 set firewall group network-group NAT network 192.168.0.0/24 set firewall ipv6-receive-redirects disable set firewall ipv6-src-route disable set firewall ip-src-route disable set firewall log-martians enable set firewall receive-redirects disable set firewall send-redirects enable set firewall source-validation disable set firewall syn-cookies enable set interfaces ethernet eth0 duplex auto set interfaces ethernet eth0 speed auto set interfaces ethernet eth0 vif 550 description 'vlan 550' set interfaces ethernet eth0 vif 550 mtu 1500 set interfaces ethernet eth0 vif 550 pppoe 0 default-route none set interfaces ethernet eth0 vif 550 pppoe 0 mtu 1492 set interfaces ethernet eth0 vif 550 pppoe 0 name-server auto set interfaces ethernet eth0 vif 550 pppoe 0 password a,X6gf8D set interfaces ethernet eth0 vif 550 pppoe 0 user-id credit-coll set interfaces ethernet eth1 duplex auto set interfaces ethernet eth1 speed auto set interfaces ethernet eth1 vif 1043 description Claro set interfaces ethernet eth1 vif 1043 mtu 1500 set interfaces ethernet eth1 vif 1043 pppoe 2 default-route none set interfaces ethernet eth1 vif 1043 pppoe 2 mtu 1492 set interfaces ethernet eth1 vif 1043 pppoe 2 name-server auto set interfaces ethernet eth1 vif 1043 pppoe 2 password creditcollectionclaro set interfaces ethernet eth1 vif 1043 pppoe 2 redirect ifb1 set interfaces ethernet eth1 vif 1043 pppoe 2 traffic-policy out interactive-bulk-u set interfaces ethernet eth1 vif 1043 pppoe 2 user-id creditcollectionclaro set interfaces ethernet eth2 duplex auto set interfaces ethernet eth2 speed auto set interfaces ethernet eth3 address 192.168.2.3/24 set interfaces ethernet eth3 description pbx set interfaces ethernet eth3 duplex auto set interfaces ethernet eth3 speed auto set interfaces ethernet eth4 address 74.85.xxx.xxx/30 set interfaces ethernet eth4 duplex auto set interfaces ethernet eth4 speed auto set interfaces input ifb1 traffic-policy out interactive-bulk-d set interfaces loopback lo set interfaces switch switch0 address 192.168.0.1/24 set interfaces switch switch0 mtu 1500 set interfaces switch switch0 switch-port interface eth2 set interfaces switch switch0 switch-port vlan-aware disable set protocols static interface-route 0.0.0.0/0 next-hop-interface pppoe0 distance 20 set protocols static interface-route 0.0.0.0/0 next-hop-interface pppoe2 set service dhcp-server disabled false set service dhcp-server hostfile-update disable set service dhcp-server shared-network-name lan authoritative disable set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 default-router 192.168.0.1 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 dns-server 8.8.8.8 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 dns-server 8.8.4.4 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 lease 86400 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 start 192.168.0.100 stop 192.168.0.200 set service dhcp-server use-dnsmasq disable set service gui http-port 80 set service gui https-port 443 set service gui older-ciphers enable set service nat rule 5001 description antenna set service nat rule 5001 log disable set service nat rule 5001 outbound-interface pppoe0 set service nat rule 5001 type masquerade set service nat rule 5002 description claro set service nat rule 5002 log disable set service nat rule 5002 outbound-interface pppoe2 set service nat rule 5002 protocol all set service nat rule 5002 source group network-group NAT set service nat rule 5002 type masquerade set service ssh port 22 set service ssh protocol-version v2 set system host-name ubnt set system login user ubnt authentication encrypted-password '$6$VH1KDi9YJsD$MRzcI5coGxgRAk6EvRJ4flzz8bgpeZGhH2iFvFVgli9NWMq8lrHVZSMqkQreL1VfSoMrxteC7RvYdMLqLkkUh/' set system login user ubnt authentication plaintext-password '' set system login user ubnt full-name '' set system login user ubnt level admin set system ntp server 0.ubnt.pool.ntp.org set system ntp server 1.ubnt.pool.ntp.org set system ntp server 2.ubnt.pool.ntp.org set system ntp server 3.ubnt.pool.ntp.org set system syslog global facility all level notice set system syslog global facility protocols level debug set system time-zone UTC set traffic-policy shaper interactive-bulk-d bandwidth 5mbit set traffic-policy shaper interactive-bulk-d class 10 bandwidth 5% set traffic-policy shaper interactive-bulk-d class 10 burst 2.5k set traffic-policy shaper interactive-bulk-d class 10 ceiling 30% set traffic-policy shaper interactive-bulk-d class 10 match FROM-SIPWISE ip source address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-d class 10 match RTP ip dscp 46 set traffic-policy shaper interactive-bulk-d class 10 match RTP-IPv6 ipv6 dscp 46 set traffic-policy shaper interactive-bulk-d class 10 priority 7 set traffic-policy shaper interactive-bulk-d class 10 queue-limit 10 set traffic-policy shaper interactive-bulk-d class 10 queue-type fair-queue set traffic-policy shaper interactive-bulk-d class 20 bandwidth 5% set traffic-policy shaper interactive-bulk-d class 20 burst 2.5k set traffic-policy shaper interactive-bulk-d class 20 match TO-SIPWISE ip destination address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-d class 20 match VOIP-SIP ip dscp 24 set traffic-policy shaper interactive-bulk-d class 20 priority 4 set traffic-policy shaper interactive-bulk-d class 20 queue-limit 10 set traffic-policy shaper interactive-bulk-d class 20 queue-type fair-queue set traffic-policy shaper interactive-bulk-d default bandwidth 90% set traffic-policy shaper interactive-bulk-d default burst 2.5k set traffic-policy shaper interactive-bulk-d default ceiling 100% set traffic-policy shaper interactive-bulk-d default priority 2 set traffic-policy shaper interactive-bulk-d default queue-limit 13 set traffic-policy shaper interactive-bulk-d default queue-type fair-queue set traffic-policy shaper interactive-bulk-u bandwidth 5mbit set traffic-policy shaper interactive-bulk-u class 10 bandwidth 5% set traffic-policy shaper interactive-bulk-u class 10 burst 2.5k set traffic-policy shaper interactive-bulk-u class 10 ceiling 30% set traffic-policy shaper interactive-bulk-u class 10 match FROM-SIPWISE ip source address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-u class 10 match RTP ip dscp 46 set traffic-policy shaper interactive-bulk-u class 10 match RTP-IPv6 ipv6 dscp 46 set traffic-policy shaper interactive-bulk-u class 10 priority 7 set traffic-policy shaper interactive-bulk-u class 10 queue-limit 10 set traffic-policy shaper interactive-bulk-u class 10 queue-type fair-queue set traffic-policy shaper interactive-bulk-u class 20 bandwidth 5% set traffic-policy shaper interactive-bulk-u class 20 burst 2.5k set traffic-policy shaper interactive-bulk-u class 20 match TO-SIPWISE ip destination address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-u class 20 match VOIP-SIP ip dscp 24 set traffic-policy shaper interactive-bulk-u class 20 priority 4 set traffic-policy shaper interactive-bulk-u class 20 queue-limit 10 set traffic-policy shaper interactive-bulk-u class 20 queue-type fair-queue set traffic-policy shaper interactive-bulk-u default bandwidth 90% set traffic-policy shaper interactive-bulk-u default burst 2.5k set traffic-policy shaper interactive-bulk-u default ceiling 100% set traffic-policy shaper interactive-bulk-u default priority 2 set traffic-policy shaper interactive-bulk-u default queue-limit 13 set traffic-policy shaper interactive-bulk-u default queue-type fair-queue
Configuration right after reboot:
set firewall all-ping enable set firewall broadcast-ping disable set firewall group network-group NAT description 'hosts included for nat' set firewall group network-group NAT network 192.168.2.0/24 set firewall group network-group NAT network 192.168.0.0/24 set firewall ipv6-receive-redirects disable set firewall ipv6-src-route disable set firewall ip-src-route disable set firewall log-martians enable set firewall receive-redirects disable set firewall send-redirects enable set firewall source-validation disable set firewall syn-cookies enable set interfaces ethernet eth0 duplex auto set interfaces ethernet eth0 speed auto set interfaces ethernet eth0 vif 550 description 'vlan 550' set interfaces ethernet eth0 vif 550 mtu 1500 set interfaces ethernet eth0 vif 550 pppoe 0 default-route none set interfaces ethernet eth0 vif 550 pppoe 0 mtu 1492 set interfaces ethernet eth0 vif 550 pppoe 0 name-server auto set interfaces ethernet eth0 vif 550 pppoe 0 password a,X6gf8D set interfaces ethernet eth0 vif 550 pppoe 0 user-id credit-coll set interfaces ethernet eth1 duplex auto set interfaces ethernet eth1 speed auto set interfaces ethernet eth1 vif 1043 description Claro set interfaces ethernet eth1 vif 1043 mtu 1500 set interfaces ethernet eth2 duplex auto set interfaces ethernet eth2 speed auto set interfaces ethernet eth3 address 192.168.2.3/24 set interfaces ethernet eth3 description pbx set interfaces ethernet eth3 duplex auto set interfaces ethernet eth3 speed auto set interfaces ethernet eth4 address 74.85.xxx.xxx/30 set interfaces ethernet eth4 duplex auto set interfaces ethernet eth4 speed auto set interfaces input ifb1 traffic-policy out interactive-bulk-d set interfaces loopback lo set interfaces switch switch0 address 192.168.0.1/24 set interfaces switch switch0 mtu 1500 set interfaces switch switch0 switch-port interface eth2 set interfaces switch switch0 switch-port vlan-aware disable set protocols static interface-route 0.0.0.0/0 next-hop-interface pppoe0 distance 20 set protocols static interface-route 0.0.0.0/0 next-hop-interface pppoe2 set service dhcp-server disabled false set service dhcp-server hostfile-update disable set service dhcp-server shared-network-name lan authoritative disable set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 default-router 192.168.0.1 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 dns-server 8.8.8.8 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 dns-server 8.8.4.4 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 lease 86400 set service dhcp-server shared-network-name lan subnet 192.168.0.0/24 start 192.168.0.100 stop 192.168.0.200 set service dhcp-server use-dnsmasq disable set service gui http-port 80 set service gui https-port 443 set service gui older-ciphers enable set service nat rule 5001 description antenna set service nat rule 5001 log disable set service nat rule 5001 outbound-interface pppoe0 set service nat rule 5001 type masquerade set service nat rule 5002 description claro set service nat rule 5002 log disable set service nat rule 5002 outbound-interface pppoe2 set service nat rule 5002 protocol all set service nat rule 5002 source group network-group NAT set service nat rule 5002 type masquerade set service ssh port 22 set service ssh protocol-version v2 set system host-name ubnt set system login user ubnt authentication encrypted-password '$6$VH1KDi9YJsD$MRzcI5coGxgRAk6EvRJ4flzz8bgpeZGhH2iFvFVgli9NWMq8lrHVZSMqkQreL1VfSoMrxteC7RvYdMLqLkkUh/' set system login user ubnt authentication plaintext-password '' set system login user ubnt full-name '' set system login user ubnt level admin set system ntp server 0.ubnt.pool.ntp.org set system ntp server 1.ubnt.pool.ntp.org set system ntp server 2.ubnt.pool.ntp.org set system ntp server 3.ubnt.pool.ntp.org set system syslog global facility all level notice set system syslog global facility protocols level debug set system time-zone UTC set traffic-policy shaper interactive-bulk-d bandwidth 5mbit set traffic-policy shaper interactive-bulk-d class 10 bandwidth 5% set traffic-policy shaper interactive-bulk-d class 10 burst 2.5k set traffic-policy shaper interactive-bulk-d class 10 ceiling 30% set traffic-policy shaper interactive-bulk-d class 10 match FROM-SIPWISE ip source address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-d class 10 match RTP ip dscp 46 set traffic-policy shaper interactive-bulk-d class 10 match RTP-IPv6 ipv6 dscp 46 set traffic-policy shaper interactive-bulk-d class 10 priority 7 set traffic-policy shaper interactive-bulk-d class 10 queue-limit 10 set traffic-policy shaper interactive-bulk-d class 10 queue-type fair-queue set traffic-policy shaper interactive-bulk-d class 20 bandwidth 5% set traffic-policy shaper interactive-bulk-d class 20 burst 2.5k set traffic-policy shaper interactive-bulk-d class 20 match TO-SIPWISE ip destination address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-d class 20 match VOIP-SIP ip dscp 24 set traffic-policy shaper interactive-bulk-d class 20 priority 4 set traffic-policy shaper interactive-bulk-d class 20 queue-limit 10 set traffic-policy shaper interactive-bulk-d class 20 queue-type fair-queue set traffic-policy shaper interactive-bulk-d default bandwidth 90% set traffic-policy shaper interactive-bulk-d default burst 2.5k set traffic-policy shaper interactive-bulk-d default ceiling 100% set traffic-policy shaper interactive-bulk-d default priority 2 set traffic-policy shaper interactive-bulk-d default queue-limit 13 set traffic-policy shaper interactive-bulk-d default queue-type fair-queue set traffic-policy shaper interactive-bulk-u bandwidth 5mbit set traffic-policy shaper interactive-bulk-u class 10 bandwidth 5% set traffic-policy shaper interactive-bulk-u class 10 burst 2.5k set traffic-policy shaper interactive-bulk-u class 10 ceiling 30% set traffic-policy shaper interactive-bulk-u class 10 match FROM-SIPWISE ip source address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-u class 10 match RTP ip dscp 46 set traffic-policy shaper interactive-bulk-u class 10 match RTP-IPv6 ipv6 dscp 46 set traffic-policy shaper interactive-bulk-u class 10 priority 7 set traffic-policy shaper interactive-bulk-u class 10 queue-limit 10 set traffic-policy shaper interactive-bulk-u class 10 queue-type fair-queue set traffic-policy shaper interactive-bulk-u class 20 bandwidth 5% set traffic-policy shaper interactive-bulk-u class 20 burst 2.5k set traffic-policy shaper interactive-bulk-u class 20 match TO-SIPWISE ip destination address 74.85.156.17/32 set traffic-policy shaper interactive-bulk-u class 20 match VOIP-SIP ip dscp 24 set traffic-policy shaper interactive-bulk-u class 20 priority 4 set traffic-policy shaper interactive-bulk-u class 20 queue-limit 10 set traffic-policy shaper interactive-bulk-u class 20 queue-type fair-queue set traffic-policy shaper interactive-bulk-u default bandwidth 90% set traffic-policy shaper interactive-bulk-u default burst 2.5k set traffic-policy shaper interactive-bulk-u default ceiling 100% set traffic-policy shaper interactive-bulk-u default priority 2 set traffic-policy shaper interactive-bulk-u default queue-limit 13 set traffic-policy shaper interactive-bulk-u default queue-type fair-queue