• fitlet-XA10-LAN NIC freeze / Working setup anyone?

    1
    0 Votes
    1 Posts
    288 Views
    No one has replied
  • Intel I219-V on ASRock H370M-ITX/ac not recognized

    17
    0 Votes
    17 Posts
    3k Views
    stephenw10S

    No problem. Thanks for reporting the issue. The memstick should boot both UEFI and legacy, we are looking into it now.

    Steve

  • SG-3100 what setting for cryptographic hardware?

    1
    0 Votes
    1 Posts
    476 Views
    No one has replied
  • PfSense 2.4.3_1 on Zotac CI327 Nano

    13
    0 Votes
    13 Posts
    3k Views
    T

    @obloned No problem, glad to hear it worked!

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    46 Views
    No one has replied
  • J1900 Quad Will not boot pfSense

    10
    0 Votes
    10 Posts
    947 Views
    J

    SATA lead is binned now.

    What got my head in a spin with this was it would install PF to the drive but really slowly (In hindsight it took that long i should have twigged on at that point something was wrong). Once installed it just wouldn't boot from the new install. This box makes for a really good PF bar the None AES-NI CPU. However the VPNs still max out my 80/20 connection happily.

    Thanks for all your input on this one.

  • Is it possible to install pfsense on fortiwifi60b

    Moved
    21
    0 Votes
    21 Posts
    4k Views
    stephenw10S

    Nothing too exciting to see there. Very unlikely you could ever get pfSense running on there. It's not x86 and probably doesn't have enough RAM to operate usefully anyway.
    If you want to experiment with it I'd look at openwrt/LEDE as a suitable target OS.

    Steve

  • SSD boot time

    4
    0 Votes
    4 Posts
    770 Views
    SammyWooS

    @areynot Well I sure hope so, 'cuz otherwise they've been lying to us of all these benefits of solid state drives. Now whether 30 seconds is that important to you... but pfsense doesn't need a big SSD, am running on a 16G that cost me usd$10, was no brainer, now if you are running on a VM... ur decision.

  • 0 Votes
    8 Posts
    2k Views
    L

    We have a similar (probably the same) problem - plagueing us for a while now. We use IKEv2 EAP-Radius with aes256-gcm on an SG-8860 on a 1gb fiber uplink.

    When one of our users (he is on 100mbit fiber) tries e.g. speedtest.net while on the VPN, the pfsense box reliably crashes after a few seconds of upload (download works fine). When I try this at home on a 100mbit/40mbit DSL link, I can create all the traffic I'd like and can't get the box to crash.

    I now switched algorithms to AES-256 with SHA512 (still with AES-NI, I didn't disable that) and it seems the crashes have either gone away or we weren't yet able to reproduce them today.
    Kind regards,
    Lukas

  • Riverbed Steelhead EXA-00560-B010

    14
    0 Votes
    14 Posts
    2k Views
    stephenw10S

    On the Silicom site, yes. See: https://forum.netgate.com/topic/72769/silcom-peg4i-82571eb-based

    Do you not see the PEG part number on a label?

    But as I said they list only a driver for the bypass relays not NICs and those should always be connected.

    What does the output of pciconf -lv at the command line show?

    Steve

  • How to check for pfsense bottlenecks/issues.

    6
    0 Votes
    6 Posts
    2k Views
    M

    @thenarc Thanks! I will give iperf a shot and see how it affects Load numbers and check throughput.
    The "Load Average" numbers from "System Information" are typically lower than the following:
    Load average 0.36, 0.34, 0.28
    The VM has 3gigs of ram but am receiving two 8 gig sticks for the QNAP today so I will probably bump it up to 4 gigs.

    Thanks again for the responses.

  • High CPU usage on interrupt processing

    5
    0 Votes
    5 Posts
    1k Views
    S

    @stephenw10 said in High CPU usage on interrupt processing:

    Hmm, is the firewall actually idle? No traffic at all?

    Yeah, firewall is idle. The server is located in a small subnet and no one is currently connected to it.
    There’s some occasional broadcast traffic (e.g. DHCP requests) form other devices/servers on the network, but I doubt it can cause any trouble.

    I think you’re right about RAID.
    I moved /tmp and /var to RAM but still there’s a lot of interrupts on mfi0 device, yet gstat shows no disk IO except some rare writes.

    I’ll try remotely tinker with RAID-related settings in BIOS, maybe I find something I missed.
    Thank you for suggestions!

  • Sierra Wireless MC7750?

    11
    0 Votes
    11 Posts
    2k Views
    stephenw10S

    Ok some further reading later....

    The MC7750 is a CDMA only card and it appears DIP does not support CDMA hence the MC7750 cannot work in DIP mode.
    I vaguely remember knowing that at one time previously but I seemed to have forgotten. 🙄

    It appears you may be out if luck here. There is no support for QMI mode in FreeBSD/pfSense.

    I suggest looking at a different card. 😞

    Steve

  • Firewall based on Supermicro X11DPH-TQ X550NIC thoughts?

    2
    0 Votes
    2 Posts
    568 Views
    stephenw10S

    You are adding 24 10GbE ports to the firewall in order to save power? 😕

    As opposed to running a 24 port 10GbE switch?

    If so then definitely forget that and use a switch!

    You would only do that if you need 24 separate subnets or filtering between all of them.

    What sort of VPN speed do you need here? You won't fill 20G of WAN with VPN traffic with any hardware.

    Steve

  • Help identify lcd display on Smoothwall SWG700 [Edit: Portwell EZIO]

    59
    0 Votes
    59 Posts
    16k Views
    stephenw10S

    Sure here you go.

    But you can use fmertz's driver directly now via lcdproc if you want.
    See: https://forum.netgate.com/topic/115071/ezio-driver-for-lcdproc

    Steve

    pfsense.hex.txt

  • Caswell/Portwell LCD setup.

    5
    0 Votes
    5 Posts
    1k Views
    stephenw10S

    Ha, looks like fmertz and I posted the same thing simaltaneously.

    The info is in that thread.

    Get the driver by either using the 2.4.4 dev package or uploading the attached driver from that thread into 2.4.3.

    Then edit lcd.conf to include those lines shown on the first post.

    Start/restart the service and it should load that. However if you make any changes from the gui it will be overwritten.

    Steve

  • ZBOX CI547 users here?

    13
    0 Votes
    13 Posts
    2k Views
    P

    @stephenw10 said in ZBOX CI547 users here?:

    @pvn Was that post here? Did it get deleted?

    I don't get what are you asking. The copy-pasted post clearly is not deleted.

  • Intel G5400T.. thoughts?

    2
    0 Votes
    2 Posts
    827 Views
    W

    The CPU has AES-NI at 3.10 GHz

    https://ark.intel.com/products/129949/Intel-Pentium-Gold-G5400T-Processor-4M-Cache-3_10-GHz

    Should be more than adequate for your needs.

  • POE 24 port Ethernet GB Switch

    7
    0 Votes
    7 Posts
    992 Views
    stephenw10S

    Good result then. ☺
    Thanks for updating.

    Steve

  • Hardware thoughts?

    7
    0 Votes
    7 Posts
    1k Views
    stephenw10S

    I've got the v1 of that switch and..... 😬

    Works fine as an unmanaged switch.

    Steve

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.