Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfsense 2.4.5 vmxnet3 with Snort 4.1.2_2 inline mode

    Scheduled Pinned Locked Moved IDS/IPS
    5 Posts 2 Posters 611 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      xayumi
      last edited by

      Hi all,
      pfsense 2.4.5 vmxnet3 with Snort 4.1.2_2 inline mode seems not support yet?
      Anyway to get this working?

      E100E can work, but seem not work best for 10G internet 💨

      7065a86b-9b33-4415-87a8-5ad86c0d9624-image.png

      1 Reply Last reply Reply Quote 0
      • bmeeksB
        bmeeks
        last edited by

        No, that interface is not supported for native netmap operation. It would run in emulated mode and that would be painfully slow (compared to native mode). If you want to use Inline IPS mode (which uses the FreeBSD netmap kernel device), then you will need to use the e1000 virtual hardware NIC in your virtual machine.

        1 Reply Last reply Reply Quote 0
        • X
          xayumi
          last edited by

          @bmeeks thanks! got ya , but e1000e just can 1Gbps ~~😢 !!

          bmeeksB 1 Reply Last reply Reply Quote 0
          • bmeeksB
            bmeeks @xayumi
            last edited by

            @xayumi said in pfsense 2.4.5 vmxnet3 with Snort 4.1.2_2 inline mode:

            @bmeeks thanks! got ya , but e1000e just can 1Gbps ~~😢 !!

            Understand, but with Inline IPS you will never get anything even close to approaching 10G throughput. In fact, a little over 1G is about the best you can expect even with a fully tuned system and a minimal rule set.

            X 1 Reply Last reply Reply Quote 0
            • X
              xayumi @bmeeks
              last edited by

              @bmeeks got ya !!

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.