Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    3100 will reach "End of Life" in 5 days

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    48 Posts 17 Posters 13.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • U
      uzumaki @jwt
      last edited by

      @jwt Sorry if I am mistaken, the only place I could find 3100 numbers were on the netgate Amazon product page. The 2100 numbers are from netgate.com.

      J 1 Reply Last reply Reply Quote 0
      • J
        jwt Netgate @keyser
        last edited by

        @keyser the circumstances are literally iperf3 through the box.

        1 Reply Last reply Reply Quote 0
        • J
          jwt Netgate @uzumaki
          last edited by

          @uzumaki likely one of the two is "old" then. I'll have someone in marketing find it and clean it up. thanks.!

          U 1 Reply Last reply Reply Quote 0
          • U
            uzumaki @jwt
            last edited by

            @jwt Those were IMIX numbers in case you’re mistaking them for iperf3.

            S 1 Reply Last reply Reply Quote 0
            • S
              SteveITS Galactic Empire @uzumaki
              last edited by

              @uzumaki for reference for that comparison/difference, per https://shop.netgate.com/products/2100-base-pfsense :

              Firewall (10k ACLs)
              IPERF3 Traffic: 964 Mbps
              IMIX Traffic: 249 Mbps

              Also just for reference the 3100 was around $50 more expensive than the 2100, MSRP, IIRC, with half the RAM.

              I mean I get it, because we have one and have eight-ish clients with one. But, the world moved on from 32 bit a while ago. We just moved a client last week who went from cable to gigabit fiber and I suggested they get a 4100 for the new office...they did not and kept the 3100. Just have to eval each situation I'd say...the ones that use VPN and/or 500+ Mbps and/or Suricata may be a better fit for the 4100. At least the 3100s will not just stop working.

              In general I'd say Netgate has done a pretty good job keeping up older hardware...the SG-1000 for instance was "EOL" in 2019 but had updates through v22.05.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote 👍 helpful posts!

              1 Reply Last reply Reply Quote 0
              • gweemposeG
                gweempose
                last edited by

                How easy is it to transition from a 3100 to a 4100? I'm assuming you can just save your configuration and then use the .xml file to load the old settings onto the new device?

                And one more question about the 4100. It looks like it has four 2.5 Gbps LAN ports, but the WAN port is only 1 Gbps. So even if I had a 2 Gbps feed coming from my ISP, the devices on my network would still only see about half that speed. Is this correct?

                jimpJ johnpozJ 2 Replies Last reply Reply Quote 0
                • jimpJ
                  jimp Rebel Alliance Developer Netgate @gweempose
                  last edited by jimp

                  @gweempose said in 3100 will reach "End of Life" in 5 days:

                  How easy is it to transition from a 3100 to a 4100? I'm assuming you can just save your configuration and then use the .xml file to load the old settings onto the new device?

                  Since the 3100 has switched ports it can be a little trickier but TAC can convert the config for you, then all you'd have to do is import the adjusted config.

                  And one more question about the 4100. It looks like it has four 2.5 Gbps LAN ports, but the WAN port is only 1 Gbps. So even if I had a 2 Gbps feed coming from my ISP, the devices on my network would still only see about half that speed. Is this correct?

                  The labels on the ports are just labels reflecting the default assignments, you can reassign them any way you like. You can use any of the 2.5G "LAN" ports as WANs, you just need to change the interface assignments/config to match what you want.

                  Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  gweemposeG 2 Replies Last reply Reply Quote 1
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @gweempose
                    last edited by johnpoz

                    @gweempose you can use any interface for wan. Just because port is "label" wan on the case doesn't mean you can't setup any other port as wan if you want.

                    I do believe there is some more too moving to 4100 from 3100.. The 3100 had switch ports, the 4100 has 6 discrete interfaces. So it would be a bit more than just import config - since the interfaces wouldn't be able to match up.

                    I do believe TAC would help you..

                    edit: hahah Jim beat me too it ;)

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    1 Reply Last reply Reply Quote 0
                    • M
                      mer @johnpoz
                      last edited by

                      @johnpoz said in 3100 will reach "End of Life" in 5 days:

                      Until it actually dies, or they no longer provide updates too it, I have no plans on replacing it ;)

                      I've got a SG-2440 that is in the same boat. I do have it sitting as a spare right now, but it still runs strong.

                      1 Reply Last reply Reply Quote 0
                      • gweemposeG
                        gweempose @jimp
                        last edited by

                        @jimp said:

                        Since the 3100 has switched ports it can be a little trickier but TAC can convert the config for you, then all you'd have to do is import the adjusted config.

                        @johnpoz said:

                        I do believe TAC would help you..

                        Forgive my ignorance, but what is TAC?

                        S 1 Reply Last reply Reply Quote 0
                        • S
                          SteveITS Galactic Empire @gweempose
                          last edited by

                          @gweempose said in 3100 will reach "End of Life" in 5 days:

                          Forgive my ignorance, but what is TAC?

                          Netgate’s support. Go.netgate.com. To be clear if you’re moving to a Netgate appliance it’s a free support ticket for them to convert the config. Just have to say what interface goes where, VLANs, etc.

                          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                          Upvote 👍 helpful posts!

                          1 Reply Last reply Reply Quote 0
                          • gweemposeG
                            gweempose @jimp
                            last edited by

                            @jimp said in 3100 will reach "End of Life" in 5 days:

                            The labels on the ports are just labels reflecting the default assignments, you can reassign them any way you like. You can use any of the 2.5G "LAN" ports as WANs, you just need to change the interface assignments/config to match what you want.

                            Ah. That makes sense. I'm currently only using two ports on my 3100. My cable modem goes into the WAN port, and then one of the LAN ports goes to a 2.5 Gbps network switch. So I guess on the 4100 I would make one of the four 2.5 Gbps ports the WAN port, and make one of the other 2.5 Gbps ports the LAN port. I would then have a full 2.5 Gbps capable network. Is this correct?

                            S 1 Reply Last reply Reply Quote 0
                            • N
                              netplumbers @jimp
                              last edited by

                              @jimp said in 3100 will reach "End of Life" in 5 days:

                              The 23.09 release will include support for the 3100 yet since it's based on FreeBSD 14 which still has 32-bit ARM support, but it may be the last release. Hard to predict if we may need a 23.09.x point release for example which could still target the 3100.

                              We do usually put out patches for PHP/shell script type issues via the system patches package for some previous releases but we don't have a set schedule for those types of fixes.

                              FreeBSD is dropping 32-bit ARM support upstream in FreeBSD 15 so not a lot we can do there, the 3100 is Netgate's last 32-bit ARM system.

                              Thank you for the clarification. In recognition of this update, when is a realistic last responsible moment to target to retiring the 3100 with the understanding the security updates are critical for any device that remains in production? For personal deployments, the replacement is not inexpensive.

                              stephenw10S 1 Reply Last reply Reply Quote 0
                              • S
                                SteveITS Galactic Empire @gweempose
                                last edited by

                                @gweempose said in 3100 will reach "End of Life" in 5 days:

                                I would then have a full 2.5 Gbps capable network. Is this correct

                                As far as the connections yes. The store shows for the 4100:

                                Firewall(10k ACLs)
                                IPERF3 Traffic: 4.09 Gbps
                                IMIX Traffic: 1.40 Gbps

                                Usually I find speed tests are about halfway in between those numbers (speaking in general) so you should be OK but remember Suricata or other packages that interfere with or inspect packages will take CPU time and hence could slow things a bit once you get to the limit of your 2.5 Mbps Internet connection.

                                @netplumbers said in 3100 will reach "End of Life" in 5 days:

                                when is a realistic last responsible moment to target to retiring the 3100 with the understanding the security updates are critical

                                I'm not with Netgate but not every pfSense release has security fixes, so I don't know there is a direct answer to your question. Sometimes, they have backported PHP-code security patches via the System Patches packages, for instance I think they did that for 2.6 after 23.01 released but before 2.7 was out. You may just have to review release notes for future versions.

                                Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                Upvote 👍 helpful posts!

                                1 Reply Last reply Reply Quote 1
                                • adamwA
                                  adamw @jimp
                                  last edited by

                                  @jimp
                                  Are there any drop in replacements for 3100 in the making?
                                  E.g. 3164 with a 64 bit CPU? :)

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator @netplumbers
                                    last edited by

                                    @netplumbers said in 3100 will reach "End of Life" in 5 days:

                                    when is a realistic last responsible moment to target to retiring the 3100

                                    Yes, it's hard to put a fixed date on that but I run a 3100 here and am looking at replacing it when the next release happens which should be 24.03. Before then if there's an issue that requires a point release we can rebuild against the current branch. As mentioned we usually back port patches for some time so really it would be acceptable to run a 3100 until a vulnerability is discovered after 24.03 is released that cannot be patched at runtime IMO.

                                    Steve

                                    1 Reply Last reply Reply Quote 1
                                    • D
                                      dan2112 @jimp
                                      last edited by

                                      @jimp I have a 3100 I was going to put up on ebay, but with this news I am reluctant to put it up for sale a when I know it ill not receive updates. I can not in good conscience sell it. I would rather give it back to Netgate for recycling/lab use. Is this possible?

                                      Dan

                                      1 Reply Last reply Reply Quote 2
                                      • S SteveITS referenced this topic on
                                      • N netplumbers referenced this topic on
                                      • MaxK 0M MaxK 0 referenced this topic on
                                      • S SteveITS referenced this topic on
                                      • gweemposeG
                                        gweempose
                                        last edited by

                                        With the 4200 now available for pre-order, I'm assuming this would be the most logical unit to replace my EOL 3100?

                                        S 1 Reply Last reply Reply Quote 0
                                        • S
                                          SteveITS Galactic Empire @gweempose
                                          last edited by

                                          @gweempose In terms of specs/capability the 2100 is a step down and the 4200 a step up. What’s your use case, bandwidth, packages, VPN, etc.?

                                          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                          Upvote 👍 helpful posts!

                                          gweemposeG 1 Reply Last reply Reply Quote 0
                                          • gweemposeG
                                            gweempose @SteveITS
                                            last edited by gweempose

                                            @SteveITS I get over a gig down from my cable company, and I have a 2.5 Gbps network, so I definitely want something that can take full advantage of that. I don't currently use a VPN on my router, but that seems like something that could come in handy. I also don't currently run any packages, although there are a few I find intriguing.

                                            S 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.