We are using Sonifi to install ipTV at our property. They have a head end that we connect into our core and they utilize 2 dry vlans for iptv and chromecast. We had some initial speed bumps but have seemingly resolved any issues for multicast, free to guest channels and our custom menu. Documentation requierd us to not be an igmp querier and I have disabled igmp snooping on all edge switches/APs, whitelisted the querier, which is outside our network, and whitelisted it on the Virtual Smart Zone for APs. we are almost a pure Fortinet environment, just with Ruckus H550 APs in guest rooms, utilizing a Virtual Smart Zone. H550s have uplink port to AP and port1 for the tv connection ingress/egress igmp snooping disabled as well. As we're getting closer to completing the install, we've noticed pixelization on channels, though you can hear in real time. This is not widespread and only affects our most recent TVs. Any help would be greatly appreciated and I can provide more information as needed.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Based on you description it seems that somewhere a bottleneck is being created after adding more IP TVs. You need to check the link utilization especially in the uplinks. If it is not caused by link utilization than maybe the streaming source is reaching its limits or the multicast network is not properly configured and doesn't scale well.
I was thinking about the multicasting as well. From what I can tell, I'll try a dscp map to prioritize traffic and I'll update the thread on what I'm finding.
Do you think not having a LACP set up is also affecting performance here?
I got an update from Sonifi, saying that I would need to implement an ACL on the VLAN. Apparently, by default, LG TVs want to talk with each other. Since I'm pointing the VLAN to their DHCP server outside of our network, would enabling Blocking intra-VLAN traffic also accomplish the same thing? In my mind, wouldn't that create client isolation on my network and simply point them for communication outside my network?
Yes correct, if this is required you can block intra-VLAN traffic for the IP TV VLAN and technically you don't need to configure 'proxy-arp' at all if the goal is to prevent these TVs to communicate with each other. All other nodes reachable through routing/gateway will not be blocked.
it looks like blocking intra-vlan traffic is preventing the TVs from reaching outside our network to see the ipTV server. Any thoughts on the communication there? The server address is already whitelisted.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.