• LAN Performance on Supermicro A1SRi-2758F-O with Pfsense 2.3.1

    2
    0 Votes
    2 Posts
    1k Views
    ?
    I am really struggling with this. I have a Supermicro A1SRi-2758F-O with 16GB of Ram on it running Pfsense 2.3.1. What is with version 2.2.6 64Bit? Did you also got summaries like this? This is with the defaults set on the mobo and no configuration on pfsense just a fresh install. One of the NICs is by default configured to be the WAN interface as a fail over acting one, it is shared together with the IPMI Port, so please be patient to ensure that this config is changed by you. The problem is the most I can push on this boards gig interfaces is the following IPERF3 = 455mb SCP = 540mb RSYNC = 500mb For throughput tests only the iPerf or NetIO tests would be counting in my eyes related to the circumstance, that all other peoples would be able to perform this test with identic hardware too at there lab or own network environment, to se if they get the same or similar results as you or another user. The test should be running through the pfSense box likes, PC as iPerf server –- pfSense box ---- PC as iPerf client I get 980mb from a VM I have running on an Intel D-1540 which is plugged into the same switch. This is then only telling us that the switch is not the bottleneck in that test! Does anyone have any special LAN parameters that are needed to get the performance up on these LAN ports? You can try out to high up the mbuf size of your NICs to 1000000 and see if this problem will be existing any more or you install the version 2.2.6 (64Bit) and try it out once more again. If I install Centos7 on this same board I can push around 950mb so I dont think its the hardware but I cant seem to get pfsense/freebsd to go any faster than 50% of the capacity of the port. So ok the Switch and this hardware will be then capable to realize this line speed for sure, but Linux is not really FreeBSD and vice versa, please accept this. Nice to know it, but for your problem totally irrelevant.
  • 0 Votes
    10 Posts
    2k Views
    ?
    There are often two ends of a line! That means that in the US are existing export regulations and in some other countries are import restrictions for cryptography. As an example here in Germany you it is aloowed to import cryptographic products, either in software or hardware, but "strong arm" is not allowed for any part. But there are often no rules without any exceptions related to the todays given crypto abilities of the hardware such as AES-NI inside of the Intel Core i7 or Xeon CPUs. It would be the best to consult a transporter company to realize that export and import part, they are familiar with that stuff and are doing it for many greater companies or wholesaler.
  • Sharing Printer across multiple subnets

    18
    0 Votes
    18 Posts
    6k Views
    D
    Don't see why you need a second pfSense box at all if you have a physical link to the second subnet (Vlan or not). In the end you can either explicitly allow GRE traffic to/from the second subnet on the main pfSense box, or if required build a tunnel for the devices that need it across the link.
  • Importing / Restoring from a Backup

    7
    0 Votes
    7 Posts
    1k Views
    jahonixJ
    @divsys: "Config History" section … While it won't document what you did in your bulk change file ... Sure it does. Choose two config files and hit the "diff" button. Displays the difference(s) between the two selected files.
  • Importing captive portal users into pfsense

    10
    0 Votes
    10 Posts
    4k Views
    K
    @Derelict: Add the client and the secret to the RADIUS server and it will work. Did you restart the RADIUS server after making the changes? If it's based on FreeRADIUS shut it down and run it with the -X flag. That will show what it's doing in the foreground. Run a test using Diagnostics > Authentication and post the results. I restarted the radius and it did work :) , Thanks to muswellhillbilly and Derelict
  • Newbie question on gui

    7
    0 Votes
    7 Posts
    1k Views
    P
    Ok thanks for all the advice. I will see how it goes and post my progress or lack of. Lots of fun anyway.
  • DR Design - Local interface and phase 2 remote on same "network"

    1
    0 Votes
    1 Posts
    514 Views
    No one has replied
  • Pf v2.3.1 –> Interface Statistics --> Errors Out

    2
    0 Votes
    2 Posts
    747 Views
    R
    Misconfigured switch (duplexity), bad cabling.
  • Notifications stopped working

    4
    0 Votes
    4 Posts
    998 Views
    johnpozJ
    I just got notification as the system was rebooting on upgrade from 2.3 to 2.3.1 And just did a test from 2.3.1, and that worked.  Also after the upgrade I got an email from service watchdog that it restarted freerad, which was after the upgrade.  It uses the same notifications settings, etc. Now what would be slick, maybe 2.4??  Would be the ability to list what generates notifications and to pick and choose what you get and maybe even add things.. [image: notificatoins.png] [image: notificatoins.png_thumb]
  • VIA Padlock, OpenSSL, OpenVPN help needed

    10
    0 Votes
    10 Posts
    4k Views
    A
    @vbentley: @dotdash: Padlock is pretty legacy these days, there are much better alternatives available. There is a reason it is not in FreeBSD anymore, it is widely believed that it is compromised. See Snowden, etc. There are much better alternatives IF you have the funding to obtain them. If not, and you already have Padlock equipped devices then all is not lost. I got that VIA based router (https://www.google.de/search?q=lex+3v700d&source=lnms&tbm=isch) off of ebay for 15,- Euro including shipping. I had to add a CF card and RAM from spare parts. The proposed ALIX based solution would have cost us about 200,- Euro. But with Padlock running out of support i will have to look for something different for future purchases.
  • PfSense running on Windows Azure?

    22
    0 Votes
    22 Posts
    9k Views
    J
    @covex: i can see pfsense in the azure marketplace now! gonna test it is it 2.2.5? Yes, because thats how long ago we started this process, and updating the image would have derailed things even more. It will update to 2.3.1 soon. here are a few hints on how to get started: https://forum.pfsense.org/index.php?topic=112072.0;topicseen
  • Pfsense 2.3.1 Cannot Change Config

    4
    0 Votes
    4 Posts
    1k Views
    C
    @bsu3338: I found the problem. The permission User - Config: Deny Config Write was added during upgrade to my group It wasn't added, that didn't change. It's now being obeyed in some cases where it should have been but wasn't previously.
  • PfSense 2.3.1 PHP errors

    14
    0 Votes
    14 Posts
    5k Views
    S
    A clean install followed by a restore of all except packages seems to have worked a charm.  Luckily I don't use more than two or three packages.  Thanks again for the assistance!
  • DHCP Leases Hostname for OS X clients missing

    1
    0 Votes
    1 Posts
    468 Views
    No one has replied
  • Unknown entry in system log: nginx

    2
    0 Votes
    2 Posts
    2k Views
    K
    https://forum.pfsense.org/index.php?topic=111140.0
  • [opt2] IFACE: Adding IPv4 address to pppoe0 failed

    1
    0 Votes
    1 Posts
    441 Views
    No one has replied
  • OSSIM+PFSENSE ZONE LAN

    22
    0 Votes
    22 Posts
    5k Views
    johnpozJ
    Oh 12 is out wow.. Missed that. Dude put your management interface in the host only network..  What interface are you sending the logs too in ossim??  If it was in host only network pfsense would not be able to talk to the management interface IP As for ossim to see traffic, did you create the monitor/sniffing interface.. Did you put that vmnet in promiscuous mode?
  • PfSense 2.3 and PPPoE WAN dialing

    1
    0 Votes
    1 Posts
    570 Views
    No one has replied
  • Reporting on forwarded connections to nginx

    1
    0 Votes
    1 Posts
    450 Views
    No one has replied
  • Pfsense 2.3.1 use more ram than 2.3.

    5
    0 Votes
    5 Posts
    1k Views
    A
    Hello, I also see states have more "NO_TRAFFIC:SINGLE" and "SINGLE:NO_TRAFFIC". This only zero packets and bytes.Is it normal status. In the 2.3 version.I unusual see these two states.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.