• Powerful Hardware Recommendation Please

    14
    0 Votes
    14 Posts
    3k Views
    V

    @wallacebw:

    <snip>Assuming I want to be able to run at / near line-rate, is the Xeon-D (1541) enough? 
    I am specifically looking at to leverage existing SFP+ ports and migrate to a LACP dot1q trunk of the above 3 'lans' onto the 'core' switch , which leads me to the server listed earlier (adding a SFP+ card) or looking at the over the top (1018D-FRN8T)

    https://www.supermicro.com/products/system/1U/1018/SYS-1018D-FRN8T.cfm

    The 1018D is getting into the cost territory of a HPE DL360 class server (replace with your preferred flavor), but cooling and noise in the 'LAN closet' (which is close to accurate) is also a consideration, which leads to the Xeon-D options.  I 'could' build my own
    M-ATX/ITX solution, but a commercial solution and rack mount form-factor is preferred

    Thoughts?</snip>

    Your requirements mirror what I have in production right now.  A few months ago I went with the Supermicro 5018D-FN8T and it's definitely more than able to handle that kind of load you mentioned.
    It can also easily saturate my 250 Mbps upload using IPSec (haven't tried OpenVPN yet…) with plenty of CPU power to spare.
    We had a thread going on there: https://forum.pfsense.org/index.php?topic=128646.15

  • TP-LINK Smart Switches anyone?

    239
    0 Votes
    239 Posts
    182k Views
    B

    Thanks guys.  I now see the distinction between Port Trunking and Ethernet Trunking.  In a sense one is the inverse of the other?

    And Derelict, I will give your test suggestion a work out as soon as I can.

  • Is it a "must do" for using me_cleaner to patch a BOIS rom of a firewall

    4
    0 Votes
    4 Posts
    874 Views
    N

    @marjohn56:

    It's not a 'must', but anything that reduces risk is worth doing.

    We have just carried this out on the Qotom G355G4, see the Qotom thread.

    Yes. Greatly appreciate this message: "anything that reduces risk is worth doing".

    I have a Qotom G355G4 too, and a Atom D525 box will be changed to C3xxx or 7th or 8th generation i3/i5 when pfsense 2.5 is available.

  • Sg-4860 powers itself off: worth investigating, fixing?

    9
    0 Votes
    9 Posts
    2k Views
    B

    I've opened a case and I hope Netgate support can provide some advice.

    I agree it looks like it's power-related, but I wonder if it's just a failing power brick (which I can replace), or a more serious issue with the 4860 board as has been implied earlier in the thread.

  • Serial port connection between two computers [SOLVED]

    3
    0 Votes
    3 Posts
    523 Views
    P

    The cable just arrived and it worked like a charm. I had to restart pfSense though. Thank you!

  • How to enable speedstep in bios on minisys box

    9
    0 Votes
    9 Posts
    1k Views
    stephenw10S

    Looks like you missed part of the difference between those lines. It should be:

    sysctl dev.cpu.0.freq_levels

    The output from the other sysctl looks good though. It lists valid Wattage numbers next to each step at least. The driver is ceratinly loading and attaching correctly.

    Steve

  • J3355 and i350 performance

    1
    0 Votes
    1 Posts
    693 Views
    No one has replied
  • New Build Listed: What am I missing?

    4
    0 Votes
    4 Posts
    914 Views
    W

    @arrdoggsxne:

    I had looked at using a USB flash drive to boot from and then use a RAM disk but am not opposed to a cheap SSD.

    Thanks

    If you're gonna boot from USB flash drive, might as well use 2 and take advantage of ZFS mirroring of the root pool.  If you're like me you probably already have a couple that will work lying around anyway.  Also it's dirt simple to move pfSense to different storage thanks to the monolithic config file if you decide to go SSD in the future.

  • ECS KBN-I/2100 AMD APU E1-2100 ITX board

    29
    0 Votes
    29 Posts
    15k Views
    pttP

    Please Check the Docs –> https://doc.pfsense.org/index.php/Tuning_and_Troubleshooting_Network_Cards#MSI.2FMSIX

  • ZFS or UFS for single SSD

    7
    0 Votes
    7 Posts
    4k Views
    JailerJ

    Yup that's one of the more wonderful things about pfSense, recovering from a failure is trivial as long as you have your config backed up.

  • PF Sense 2.4 with Asrock J3455-ITX

    20
    0 Votes
    20 Posts
    7k Views
    K

    You can leave the entry in /boot/loader.conf.local, the update/upgrade procedure won't touch the file in any way.

  • Method to keep Wireless Modem on-line

    1
    0 Votes
    1 Posts
    417 Views
    No one has replied
  • NIC for PFSense

    16
    0 Votes
    16 Posts
    6k Views
    ?

    I ordered a bunch of Intel NICs (actually Desktop PCI adapters) a while back, some had the mark, some didn't, yet they all were identical (except production date).
    It seems some older cards were produced around the time the YottaMark was introduced and that's why some simply don't have that sticker.

  • Cheap hardware for homelab

    12
    0 Votes
    12 Posts
    5k Views
    R

    i have a qotom J1900 with 4 intel nics and 4gb ram for sale. i moved to a rackmount system.
    PM me if interested. I am from germany.

  • 0 Votes
    6 Posts
    1k Views
    ?

    We did a basic ME_Cleaner on the Qotom firmware in the Qotom hardware topic, works fine (both IME firmware strip as well as HAP bit). So there's one way to get a low-risk reduction of attack surface.

  • New Hardware Selection Help

    20
    0 Votes
    20 Posts
    2k Views
    ?

    is it better to buy a bare bone Device and add RAM & SSD or buy a configured complete Set ?

    If you will find something that is really matching to your needs take it, if not you are able to sort this with other
    hardware you will be able to get for cheap or they are matching better to your needs.

    Get a small Intel i3 or Core i5 with dual or quad cpu cores likes you like or need it.
    Intel® Core™ i5-5200U Processor 3M Cache, up to 2.70 GHz = 5th generation Intel Core i5 CPU
    QOTOM-Q355G4 2017

    DHL - shipping fee to Germany US $33.68 - time between 8-17 days - status: Available
    This item is in stock an will be sold from the Qotom flagship store on aliexpress.com
    They accept paypal, VISA and Master Card payment, if you prefer to order online they
    are able to provide you an amazon link, but you must ask them before placing the order
    because this will be not even able to realize, as I understood it!!!

    I would get it with 8 GB RAM and an Intel 60 GB mSATA.

  • Did Newer Intel based FW's just get a direct hit in the EngineRoom ?

    4
    0 Votes
    4 Posts
    745 Views
    bingo600B

    And the older CPU's might be affected by the Intel AMT bug from may-2017
    That might be "disabalabe" in the bios (atleast on my Lenovo)

    But i dont think i saw disable in the Qotom Bios.

    /Bingo

  • MOVED: SG-3100 - which cellular module

    Locked
    1
    0 Votes
    1 Posts
    308 Views
    No one has replied
  • Xeon D-1521 board compatible?

    5
    0 Votes
    5 Posts
    1k Views
    T

    I have been using a Supermicro Xeon D-1518 based board with pfSense for about 8 months now and have had no issues (starting from 2.3.3 all the way to the current 2.4.2 version).

    https://www.supermicro.com/products/motherboard/Xeon/D/X10SDV-TP8F.cfm

    Hope this helps.

  • HP Pavilion a6242N for PFSense Machine

    21
    0 Votes
    21 Posts
    2k Views
    NollipfSenseN

    Just to follow up, NIC arrived and installed…had only two problems which had been resolved that was posted here: https://forum.pfsense.org/index.php?topic=140315.0

    So now, I am waiting for the processor (AMD Athlon 64 X2 6000+ 3.1GHz Dual-Core Processor 89W) to arrive. However, here's an insight of the performance after running Snort, Suricata, pfBlockerNG, and Squid. After the processor is installed, I'll continue with further fine tuning. I am extremely happy with results so far despite the machine will last just a year (AES-NI issue).

    ![Screen Shot 2017-11-22 at 3.48.48 PM.png](/public/imported_attachments/1/Screen Shot 2017-11-22 at 3.48.48 PM.png)
    ![Screen Shot 2017-11-22 at 3.48.48 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-11-22 at 3.48.48 PM.png_thumb)

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.