Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Need advice on hardware that will support 1GB fiber full duplex

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    15 Posts 5 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • keyserK
      keyser Rebel Alliance @FrankZappa
      last edited by keyser

      @FrankZappa Perhaps try a quick synthetic test? Place a 1Gbe machine on the WAN link, and do a iPerf test through your pfSense to a client on the inside?

      Love the no fuss of using the official appliances :-)

      1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @FrankZappa
        last edited by

        @FrankZappa So when Netgate lists numbers like this for the 4100:

        L3 Forwarding
        IPERF3 Traffic: 8.15 Gbps
        IMIX Traffic: 3.24 Gbps

        Firewall (10k ACLs)
        IPERF3 Traffic: 4.09 Gbps
        IMIX Traffic: 1.40 Gbps

        IPsec VPN (AES-GCM-128 w/QAT)
        IPERF3 Traffic: 960 Mbps
        IMIX Traffic: 312 Mbps

        …based on experience and forum posts I find about halfway between the “firewall” numbers is an expected rate. As implied by the VPN numbers that decreases for CPU intensive activity such as Suricata.

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        1 Reply Last reply Reply Quote 1
        • GertjanG
          Gertjan @FrankZappa
          last edited by

          @FrankZappa

          Quick test from my PC, on a pfSense "1 Gbits" LAN network :

          800ffb4f-048b-4c8c-989e-c764b029c94f-image.png

          during this test several other PC's where also active, as it is monday morning and people tend to do 'things' with their PC right now.
          My ISP promised me 1 G bits symmetrical : if they have it available, I'll get it.

          My "4100" with some minor pfBlockerng DNSBL doesn't sweat at all (about 10 % CPU usage).
          ( Btw : I don't have anty snort, suricata bandwithd, ntop etc packages)

          Keep in mind : my box uses a
          Intel(R) Atom(TM) CPU C3338R @ 1.80GHz - 2 CPUs : 1 package(s) x 2 core(s)
          You have an i7 😊

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          F 1 Reply Last reply Reply Quote 0
          • F
            FrankZappa @Gertjan
            last edited by

            @Gertjan Thanks for all the info. I connected my laptop PC directly to my Unifi switch (via CAT6) and ran iperf (server hosted on pfSense box). It's pulling around 940Mbps (Close enough to 1GB). However, when I run a speed test (Ookla) I'm only pulling down around 540Mbps. I'm just wondering if the express card might be the limiting factor.

            I'll connect my laptop PC directly to the Cox modem next. Have to wait a bit on that one as the Internet in the house will go down and it tends to get loud in this house when that happens.

            Stay tuned.

            keyserK 1 Reply Last reply Reply Quote 1
            • keyserK
              keyser Rebel Alliance @FrankZappa
              last edited by

              @FrankZappa The best test would be to briefly connect your WAN (Expresscard) to your Unifi Switch, and assign the pfSense and iPerf Client static addresses so you can perform the exact same iPerf test as before - only this time using the Expresscard.

              Love the no fuss of using the official appliances :-)

              F 1 Reply Last reply Reply Quote 1
              • F
                FrankZappa @keyser
                last edited by

                @keyser So switch the LAN and WAN Interfaces? Right now my Express Card is connected to the Cox Modem. Internal LAN is connected to the switch. I'm 99% certain the express card supports 1GB (according to the manufacturer). However, I'm unsure if the computer (Dell Laptop) MOBO can simultaneously handle 1GB on internal LAN Port and 1GB on express card.

                All that said, I'll try your technique and report back.

                keyserK 1 Reply Last reply Reply Quote 0
                • keyserK
                  keyser Rebel Alliance @FrankZappa
                  last edited by

                  @FrankZappa Well switching interfaces will acomplish the same thing so yeah - that test will reveal if the expresscard is the bottleneck.
                  I’m certain your cpu can handle 2 Gbit traffic, But the labtop itself might have some badly designed connectivity that either cannot reach its actual potential, or might prevent other parts from doing so. A Very bad BIOS/UEFI might influence that too.
                  I’m only interested in seeing if the expresscard is the bottleneck, or if something Else is af play

                  Love the no fuss of using the official appliances :-)

                  F 1 Reply Last reply Reply Quote 0
                  • F
                    FrankZappa @keyser
                    last edited by

                    @keyser Ok. I'm om it, but might have to wait till no one in the house. Like I said before, when the Internet goes down in this house, there's panic at the disco.

                    Thanks for the advice.

                    1 Reply Last reply Reply Quote 1
                    • dennypageD
                      dennypage @FrankZappa
                      last edited by

                      @FrankZappa FWIW, I am on Cox cable with 2Gb down (only 100Mb up), which the Netgate 6100 handles well.

                      DOWNLOAD   Mbps 2203.15
                      UPLOAD     Mbps 106.11
                      
                      F 1 Reply Last reply Reply Quote 0
                      • F
                        FrankZappa @dennypage
                        last edited by

                        @dennypage Nice speeds. I'm hoping fiber will give me 1GB up and Down

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.