Trying to be concise here, please ask for more info if required. I am running an SG-1100 with a UniFi stack behind it. Created some VLANs in pfSense. Some VLANs are blocked off from the others by using the “Pass VLANxx.net except to RFC1918” rule.
Machines to all VLANs that have that rule enabled have web page loading speed issues. Some sites are good (e.d. apple.com), some are quite bad (citrix.com loads in 90 seconds).
This is consistent over several VLANs and computers, i.e. apple.com loads fast on all computers and citrix.com very slowly on all computers tested.
- reboot SG-1100, no change
- disable the !RFC1918 rule: no more problems
- create single block rules to / from each VLAN: no more problems
- WiFi and Ethernet, no difference
I have a firewall rule for all VLANs to pass traffic to “This firewall” port 53 (DNS)
I have pfBlocker running, Avahi mDNS, that’s it.
Any help is greatly appreciated!