Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Netgate 2100 Max CPu pings 100% when download large files

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    41 Posts 5 Posters 4.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SteveITS Galactic Empire @northernsky
      last edited by

      @northernsky The 2100 can do around/roughly 600 Mbps without additional packages. You could try disabling Clam and/squid (which is deprecated anyway) and testing. The web GUI not responding seems like it’s really overloaded? Try “top” at a command line.

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote 👍 helpful posts!

      N 2 Replies Last reply Reply Quote 0
      • N
        northernsky @Gertjan
        last edited by

        @Gertjan Thank you! I took your advice and removed the packages you suggested. I did not disable the gateway action and will do some research in limiters to see if I even need them and if not I will disable the gateway action.

        Thanks - Scott

        dennypageD 1 Reply Last reply Reply Quote 0
        • N
          northernsky @SteveITS
          last edited by

          @SteveITS I will putty in and run top when I test it again. I appreciate the guidance on this forum.

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            Yup, that. Try without the webgui connected at all.

            The usage page you showed though has all the CPU usage in passing traffic as you'd expect for a large file maxing out the WAN bandwidth.

            This was something that just started happening lately? Anything changed? You updated pfSense maybe?

            N 1 Reply Last reply Reply Quote 0
            • N
              northernsky @stephenw10
              last edited by

              @stephenw10
              Nope no changes not since I updated to the latest patch a few days after it came out.

              1 Reply Last reply Reply Quote 0
              • dennypageD
                dennypage @northernsky
                last edited by

                @northernsky said in Netgate 2100 Max CPu pings 100% when download large files:

                I took your advice and removed the packages you suggested. I did not disable the gateway action and will do some research in limiters to see if I even need them and if not I will disable the gateway action.

                @Gertjan gave some excellent advice. Removing clamav and squid (and anything associated with squid) was an excellent decision.

                FWIW, I would like to second the recommendation to disable the Gateway Monitoring Action. You have a single WAN, so there is usually no downside to doing this. All the monitoring action ends up doing is restarting a bunch of processes that usually don't need to be restarted in a single WAN configuration, which can result in a cascade failure as @Gertjan described.

                1 Reply Last reply Reply Quote 0
                • N
                  northernsky @SteveITS
                  last edited by

                  @SteveITS so I deleted the Clam and squid packages and I ran the download closed out of the webgui with just putty running and the cpu looks fine. Unless someone sees something i don't.
                  0ab08597-cbf2-46b2-9ac0-94e8979113a0-image.png

                  I also ran it again with the download going with the webgui up and putty overlayed with steam capped at 60 megs. I was able to reload the webgui without issues or it giving me the 50x error message, but the cpu on that stills pings at 100% but in reality top is saying 17% for system. I guess don't believe the dashboard widgets? Also capping steam helps from saturating my pipe.
                  1c92cf70-b816-46b5-9942-8349834ea46d-image.png

                  dennypageD 1 Reply Last reply Reply Quote 0
                  • dennypageD
                    dennypage @northernsky
                    last edited by

                    @northernsky said in Netgate 2100 Max CPu pings 100% when download large files:

                    @SteveITS so I deleted the Clam and squid packages and I ran the download closed out of the webgui with just putty running and the cpu looks fine. Unless someone sees something i don't.
                    0ab08597-cbf2-46b2-9ac0-94e8979113a0-image.png

                    Your CPU is still 100% pegged. 76% in interrupt, which seems really high to me... @stephenw10, does this seem high to you?

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      Yeah it's showing 0% idle, so 100% used. You need to use top -HaSP to see everything using CPU cycles there.

                      That seems very high usage if it's 60Mbps. It's in the ball park if that's 60MBps.

                      N 1 Reply Last reply Reply Quote 0
                      • N
                        northernsky @stephenw10
                        last edited by

                        @stephenw10 Ok So here is the top again with the switch and the MB/s.

                        b7804f14-4684-42ed-bed7-862f31061a9f-image.png

                        Steams cap setting:
                        d585cc01-9c89-4279-8d83-1eb688b81b56-image.png

                        Stream download:
                        21751a1f-a251-4873-bb72-7f582f48ef7c-image.png

                        S 1 Reply Last reply Reply Quote 0
                        • S
                          SteveITS Galactic Empire @northernsky
                          last edited by

                          @northernsky try 50000.

                          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                          Upvote 👍 helpful posts!

                          N 1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            The switch on top gives you all the info in the table below the header there. It should show what's actually using that.

                            1 Reply Last reply Reply Quote 0
                            • N
                              northernsky @SteveITS
                              last edited by northernsky

                              @SteveITS So 50000 had the same result. When I went down to 40000 then 30000 I was seeing a lot more cpu idle so it was not 0% all the time but just fluctuated around and looked better.

                              Is something wrong with my firewall or the configs or is it just at its limit with the bandwidth it can handle before getting stressed out?
                              bca96179-8a6a-43d9-a721-a5f2a3d3507a-image.png

                              Thats back at 50000.

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                It depends what's shown in the full top output. If it's all NIC loading then you probably are hitting the hardware limit with whatever config you have running.

                                With a basic config I expect to see something ~650Mbps LAN to WAN through a 2100 so ~80MBps

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Oh you edited. So you can see netstat is using quite a bit. You have bandwidhd or traffic totals installed? Try disabling it as a test.

                                  N 1 Reply Last reply Reply Quote 0
                                  • N
                                    northernsky @stephenw10
                                    last edited by

                                    @stephenw10 I don't have those installed. Should I? I dont have anything crazy going on here as far as I know. I did run through some netgate forums on best practices when I got the 2100 Max a couple years ago.

                                    1 Reply Last reply Reply Quote 0
                                    • stephenw10S
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      Does that netstat line remain there constantly at 30% use?

                                      What packages do you have installed?

                                      N 1 Reply Last reply Reply Quote 0
                                      • N
                                        northernsky @stephenw10
                                        last edited by

                                        @stephenw10 These are all I haved left. I had some others but earlier in this thread I was advised to removed them. I dont know why I have that aws-wizard unless it was there out of the box.

                                        3c833d39-705f-4bcb-908f-3553de5b742f-image.png

                                        N 1 Reply Last reply Reply Quote 0
                                        • stephenw10S
                                          stephenw10 Netgate Administrator
                                          last edited by

                                          Yup those wizards are installed by default.

                                          It could have been netstat showing momentarily. Or it could be a continuous 30% usage which would be worth digging into.

                                          1 Reply Last reply Reply Quote 0
                                          • N
                                            northernsky @northernsky
                                            last edited by northernsky

                                            @northernsky ok I just saw something odd. I was watching top -HaSP and was sitting on the system/package manager/Installed packages screen while I had a download going at 50000 mb/s and the cpu sits here:
                                            ab328856-92ae-40cb-96b9-3963d348e804-image.png

                                            When I move to the dashboard....:
                                            96276777-f317-4bbc-9596-2d4202382be1-image.png

                                            And when I moved to ANY other page other then the dashboard the CPU idle came back to life hovering around 40-55% idle. Crazy.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.