• Which Network Card Do I Choose?

    2
    0 Votes
    2 Posts
    501 Views
    stephenw10S
    That board appears to have only one PCIe slot so that first NIC, which is PCI, is right out.  ;) The Pro1000 CT card should work fine. You might want to choose a dual port card since you only have one slot though. Unless you know for sure you will only ever need 3 interfaces. Steve
  • Hardware Reco?

    5
    0 Votes
    5 Posts
    1k Views
    T
    Oh, and to confirm to the OP, yes you'll definitely be able to max out 1Gbit WAN connection with this hardware even with an IDS enabled on the interface(s).  In fact, the system is capable of even more than that based on some limited 10Gbit testing that I've done.  Of course don't expect to get 1Gbit/s with a single OpenVPN connection.
  • Hardware for small business

    Locked
    20
    0 Votes
    20 Posts
    3k Views
    O
    @VAMike: @oxhey: @jahonix: CPU: TDP 54 W That thing burns 54 Watts with only two (physical) cores. Nice heating and not really the top pick in 2018. That doesn't bother me that much as there is a tight budget for this. I guess at some point we could always upgrade to a G4560T which only has a TDP of 35 W. The TDP is irrelevant unless you're building something that's cooling constrained. All the TDP number means is "you need to be able to dissipate this much heat". It does not mean "it uses this much power all the time" even though some people act like it does. At idle both CPUs will draw about the same (close to nothing). The main difference is that you pay more for a T series CPU that's throttled to prevent it from getting too hot. What does this mean? If you need more CPU when you're under load, the non-T can give it to you and the T can't. Don't get the T series, you don't need it. I agree  :)
  • PfSense 2.4.1 and Intel Atom 3858 - 3958

    15
    0 Votes
    15 Posts
    5k Views
    jimpJ
    C3000 support won't be ready for general public use until we put out a pfSense release based on FreeBSD 11.2, which will probably happen in a few months. There is some early support for our new SG-7100 devices that is based on C3000 in our factory images for 2.4.3, but that is only available to those who have purchased the hardware from us.
  • Problem with Huawei E3372 / VMware ESXi 6.5 / pfSense

    10
    0 Votes
    10 Posts
    5k Views
    R
    @stephenw10: Ah, so just use 'Z' as the init string should work from where you are then. Steve It works, thank you very much. He helped init string Z in pfSense
  • Hardware builds: Two devices for two sites

    8
    0 Votes
    8 Posts
    1k Views
    K
    Good to hear. Thank you. /Kim
  • I found a ebay 1u server would this work with pfsense?

    22
    0 Votes
    22 Posts
    2k Views
    DerelictD
    Jeeze dude. How many NICs? What is the technology they use to "bond" ADSL lines? Can their modem be bridged to another router interface?
  • MOVED: Sg4680 won't boot

    Locked
    1
    0 Votes
    1 Posts
    299 Views
    No one has replied
  • 0 Votes
    3 Posts
    1k Views
    valnarV
    Well if the SoftEther people are to be believed, then it's much faster than OpenVPN.  We should try to get that implemented in pfSense.
  • Dual ISP failover plus VPN tunnels on SG-4860

    2
    0 Votes
    2 Posts
    321 Views
    stephenw10S
    Yes. However… What sort of bandwidth do you need over the VPNs? What sort of VPN? Do you want to run any packages, Snort, Squid etc? I would expect the SG-4860 to be capable whatever you were trying to do with 100Mbps max single connection limit though. Thanks, Steve
  • Asus N3050I-C for OpenVPN (100MBIT WAN)

    44
    0 Votes
    44 Posts
    21k Views
    stephenw10S
    If you are seeing CPU usage at 50% overall then it's likely at least one of your 4 CPU cores is at 100%. To see the full break down of cpu usage across cores run at the command line: top -aSH If one core is at 100% it should be running in Turbo mode. Specifically which A10 CPU were you looking at? As far as I know most of those support AES instructions. AMD have been shipping processors that will be supported in 2.5 since 2010. https://www.netgate.com/blog/pfsense-2-5-and-aes-ni.html Without seeing te exact settings you're running it's hard to comment further. It seems likely you should be able to see more bandwidth from that CPU though. In the thread you linked Pippom reports 160Mbps from that same CPU with higher encryption settings. Steve
  • Firebox watchguard x750e reliability lan seems to go to sleep

    4
    0 Votes
    4 Posts
    463 Views
    stephenw10S
    Mmm, good point. My box was, relatively, stable for a while after I disabled powerd. You might try that if it's enabled. Steve
  • PfSense TouchScreen

    16
    0 Votes
    16 Posts
    2k Views
    B
    Hmm… I was hoping to make it a bit harder than that, and more custom but that'll do for now. I need the 3D Printer before I do anything more. And study up on electrical engineering. My pfSense box won't be online until April :( Stupid bills :( Thanks for all the responses guys. I really appreciate it. Your responses have sparked some crazy ideas in my head. I'll be writing them down in my "Stuff to do to my own House" book. :)
  • Pfsense + Clon PC + Virtual Box

    5
    0 Votes
    5 Posts
    550 Views
    R
    Do you plan on using pfsense to protect the windows 7 client, or is it only to run the pfsense on virtual box?  If only for pfsense, I would not recommend your setup.  If windows 7 gets bsod, or exploit, your pfsense box is down. If you need both, please look at a free esxi license.  (Vmware) Then run pfsense and windows as virtual clients. Else, most secure is to install the pfsense direct to the box.
  • PfSense on a Celestix S-X MSA 4000

    61
    0 Votes
    61 Posts
    22k Views
    K
    @fmertz: Actually, looking at the Linux device, it suggests it is a raw device. Maybe the character device is not needed. Maybe it needs to be initialized read/write: exec 3<> /dev/ukbd1 [2.3.5-RELEASE][root@pfSense.geek.local]/: exec 3<> /dev/ukbd1 Missing name for redirect.
  • MOVED: SG-3100 : internal flash storage : suited for cache?

    Locked
    1
    0 Votes
    1 Posts
    284 Views
    No one has replied
  • Low throughput on Esxi 6.0 update 3

    26
    0 Votes
    26 Posts
    2k Views
    stephenw10S
    Yeah you should be running 6.5 but as johnpoz says it may work fine in 6.0. If you are seeing ICMP work but not TCP it is often an asymmetric routing issue. Is there some other path between those VLANs? It could also be packet size issue. Try pinging with much larger packets. Steve
  • Mellanox ConnectX-2 drivers

    4
    0 Votes
    4 Posts
    2k Views
    F
    Hi Folks, new bie too, I am trying the same/similar  here , with Infiniband ConnectX-2 dual QSFP+ on fiber NIC card in one of the PCIe slots of my new PFSense 2.4 physical box install (from an older recycled HP workstation) with an extra  4 ports 1GB/s NiC card , trying to bridge the Ethernet and Infiniband network, to hook up my homelab ESXI 6.5 server ( host for all VMs ) + NAS at a blazing speed. I guess there are existing FreeBSD / OFED drivers but how can we get these installed  and PFsense box to recognize the Mellanox Infiniband card on its PCIe slots. thanks for your help, and to all for their advised comments on this thread. Best,
  • SMART Error: Unknown USB bridge

    4
    0 Votes
    4 Posts
    7k Views
    T
    @johnkeates: USB flash disks rarely have useful smart data, just ignore it. Is that a fact? Or simply your opinion? Sweeping statements like that can be dangerous for people that don't know any better.
  • 4g modem DLINK DWR910

    15
    0 Votes
    15 Posts
    2k Views
    L
    Okay, I'll check these cases and monitor … Thanks again!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.