Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Prepurchase - Does a sg 2220 with 60GB SSD enough ooommppph to run Snort?

    Scheduled Pinned Locked Moved Hardware
    4 Posts 3 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mlevison
      last edited by

      If I want to use pfSense as a home firewall (15-20 devices in our house) and run Snort for Intrusion Detection? We've got a decent home internet connection 15 down, 10 up. We might eventually upgrade to 50 down, 10 up.

      Currently we only have one IoT device a Roku. Eventually there might be more.

      My primary goals are:

      • to make sure that our devices are secure at home
      • detect when devices that travel: phones, laptops etc have been infected

      Thoughts on the capacity of the SG 2220 for this task?

      Cheers
      Mark

      1 Reply Last reply Reply Quote 0
      • S
        SOUK
        last edited by

        @mlevison:

        If I want to use pfSense as a home firewall (15-20 devices in our house) and run Snort for Intrusion Detection? We've got a decent home internet connection 15 down, 10 up. We might eventually upgrade to 50 down, 10 up.

        Currently we only have one IoT device a Roku. Eventually there might be more.

        My primary goals are:

        • to make sure that our devices are secure at home
        • detect when devices that travel: phones, laptops etc have been infected

        Thoughts on the capacity of the SG 2220 for this task?

        Cheers
        Mark

        The pfsense install, snort, squid, pfBlockerNG, openvpn-client-export combined will take up around 2% of your 60GB SSD.  Then just use whatever size you from the remaining space for your squid cache.

        With regards to the  SG-2220 it seems to be on par with the N3150N which is good enough.

        1 Reply Last reply Reply Quote 0
        • M
          mlevison
          last edited by

          SOUK - thanks for the reply. I'm not thinking about the install size - its about snorts use of capacity: does the box have enough CPU to keep Snort happy (I think you implied yes) and is the SSD large enough for the logs that snort generates/needs (again I think you imply yes).

          Cheers
          Mark

          1 Reply Last reply Reply Quote 0
          • S
            Stewart
            last edited by

            That should handle 50Mbps just fine.  We've done 100 Mbps on an APU1D and it worked just fine.  You'll just be looking at longer boot times but once it's loaded you shouldn't have any issues with it.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.