Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    New hardware

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    61 Posts 7 Posters 10.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • bingo600B
      bingo600 @JKnott
      last edited by

      @jknott said in New hardware:

      The Netgate takes a 12V 2A power supply, which means it runs less than 24W. The Qotom takes 15W, so there's not much difference.

      The CPU TDP is 15W

      0db78d15-f5da-47e4-b97d-6aa8b82b99b7-image.png

      The NIC's (Phy's) + other electronics also consumes

      My Qotom came w. a 12V/5A PSU

      /Bingo

      If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

      pfSense+ 23.05.1 (ZFS)

      QOTOM-Q355G4 Quad Lan.
      CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
      LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @bingo600
        last edited by

        @bingo600 said in New hardware:

        Other architectures have Crypto instructions too , but not AES-NI

        So, what does pfsense do with those Crypto instructions? Ignore them? I could be wrong, but I would assume software written for an ARM CPU would take advantage of the ARM instructions.

        It's been a while since I've written software, but I seem to recall compilers can link in appropriate libraries for the different target hardware.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        ? bingo600B 2 Replies Last reply Reply Quote 0
        • ?
          A Former User @JKnott
          last edited by

          @jknott said in New hardware:

          @bingo600 said in New hardware:

          Other architectures have Crypto instructions too , but not AES-NI

          So, what does pfsense do with those Crypto instructions? Ignore them? I could be wrong, but I would assume software written for an ARM CPU would take advantage of the ARM instructions.

          It's been a while since I've written software, but I seem to recall compilers can link in appropriate libraries for the different target hardware.

          There are some threads concerning that. To the best of knowledge it does ignore them at the moment.

          I have sent you a private message...

          1 Reply Last reply Reply Quote 0
          • bingo600B
            bingo600 @JKnott
            last edited by

            @jknott said in New hardware:

            @bingo600 said in New hardware:

            Other architectures have Crypto instructions too , but not AES-NI

            So, what does pfsense do with those Crypto instructions? Ignore them?

            If Netgate want their ARM boxes to perform decent w. crypto they probably have enabled the usage of any Crypto instructions available.

            I could be wrong, but I would assume software written for an ARM CPU would take advantage of the ARM instructions.

            On embedded programming you often have to make sure to use the correct libraries. It's usually done with a couple of compiler switches , that pulls in the correct linker library. Sometimes you even have to set a few bits in the MCU , in order to enable any "Crypto part in the MCU" , often "extensions" are disabled on POR , to minimize power usage.

            It's been a while since I've written software, but I seem to recall compilers can link in appropriate libraries for the different target hardware.

            Yepp , if being told to do so.

            But you were referring to AES-NI
            And i replied correctly it was an Intel extension.

            /Bingo

            If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

            pfSense+ 23.05.1 (ZFS)

            QOTOM-Q355G4 Quad Lan.
            CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
            LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

            JKnottJ 1 Reply Last reply Reply Quote 0
            • ?
              A Former User @JKnott
              last edited by

              @jknott said in New hardware:

              @jwj said in New hardware:

              What do you see as the lifespan of this device?

              Well, based on my other experience, until something significantly better comes along or it dies (as happened with my previous firewall). I'm not one to run out and buy the latest & greatest, unless it yields significant improvement. For example, if a pfsense update had required AES-NI, then I would have bought something that supports it, as the HP computer I was running didn't.

              Another example, my current desktop computer case originally had a 32 bit CPU. I've since replaced the mom board a couple of times. The case is so old it's cream coloured, not black (matches my IBM model M keyboard, but not much else). I also recently finally got an AP that support 5 GHz.

              BTW, that keyboard is built like a tank and old enough to not have a Windows key. šŸ˜‰

              I'm very much the same. For example, my 2015 VW Golf is just about broken in. I'll drive it until it has no value and then replace it.

              Buy nice things and use them, don't worry about the new things until your done with the ones you have ;)

              JKnottJ 1 Reply Last reply Reply Quote 0
              • JKnottJ
                JKnott @bingo600
                last edited by

                @bingo600 said in New hardware:

                My Qotom came w. a 12V/5A PSU

                How much does it actually consume? What does the label by the power connector say? The info I saw listed 12V 2A. It's good practice to over spec things like power supplies, provided you don't go overboard. Either way, both devices are in the same ballpark and will require far less power than the HP desktop computer that's being replaced.

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                bingo600B 1 Reply Last reply Reply Quote 0
                • bingo600B
                  bingo600 @JKnott
                  last edited by bingo600

                  @jknott said in New hardware:

                  @bingo600 said in New hardware:

                  My Qotom came w. a 12V/5A PSU

                  How much does it actually consume?

                  I haven't measured it yet , i might

                  Either way, both devices are in the same ballpark

                  I would expect the 2100 to use less than the Qotom.
                  Guesstimate ... Around half.

                  and will require far less power than the HP desktop computer that's being replaced.

                  I totally agree

                  If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                  pfSense+ 23.05.1 (ZFS)

                  QOTOM-Q355G4 Quad Lan.
                  CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                  LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                  1 Reply Last reply Reply Quote 0
                  • JKnottJ
                    JKnott @bingo600
                    last edited by

                    @bingo600 said in New hardware:

                    But you were referring to AES-NI

                    My original intent was to write AES-NI or equivalent, but I didn't bother.

                    PfSense running on Qotom mini PC
                    i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                    UniFi AC-Lite access point

                    I haven't lost my mind. It's around here...somewhere...

                    1 Reply Last reply Reply Quote 0
                    • JKnottJ
                      JKnott @A Former User
                      last edited by

                      @jwj said in New hardware:

                      I'm very much the same. For example, my 2015 VW Golf is just about broken in. I'll drive it until it has no value and then replace it.
                      Buy nice things and use them, don't worry about the new things until your done with the ones you have ;)

                      I'm driving a 2005 Ford Taurus and it's still going strong. I generally drive my cars until the wheels fall off. šŸ˜‰

                      PfSense running on Qotom mini PC
                      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                      UniFi AC-Lite access point

                      I haven't lost my mind. It's around here...somewhere...

                      1 Reply Last reply Reply Quote 0
                      • ?
                        A Former User
                        last edited by

                        No matter what it will soon be new hardware day. That's a happy occasion. Cheers!

                        JKnottJ 1 Reply Last reply Reply Quote 0
                        • JKnottJ
                          JKnott @A Former User
                          last edited by

                          @jwj

                          One other thing I just noticed about the Netgate box. It doesn't appear to have a video port. That's not critical, as I do have a USB serial port, but I have a 4 port HDMI/USB KVM, which I used to connect to my old firewall. I could just switch from my computer to my firewall as needed.

                          PfSense running on Qotom mini PC
                          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                          UniFi AC-Lite access point

                          I haven't lost my mind. It's around here...somewhere...

                          ? 1 Reply Last reply Reply Quote 0
                          • ?
                            A Former User @JKnott
                            last edited by

                            @jknott Yeah. The Qotom has a HDMI port and a serial port. I'm assuming you can select the HDMI in bios settings and that will work perfectly.

                            If I need to get at the console it's because something is very wrong. Last thing I want to do is mess around with a serial console cable and putty.

                            JKnottJ 1 Reply Last reply Reply Quote 0
                            • JKnottJ
                              JKnott @A Former User
                              last edited by

                              @jwj said in New hardware:

                              Last thing I want to do is mess around with a serial console cable and putty.

                              I've used serial ports enough times over the years, that's not an issue for me. I'd just need a gender bender, as that appears to be a male connector on it. I've made up enough of those and probably have a couple around here. I bought that adapter years ago, to configure telecom gear.

                              PfSense running on Qotom mini PC
                              i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                              UniFi AC-Lite access point

                              I haven't lost my mind. It's around here...somewhere...

                              bingo600B 1 Reply Last reply Reply Quote 0
                              • ?
                                A Former User
                                last edited by

                                So, pros and cons of each?

                                Shortly, summer, they'll be running the same version of pfSense, pfSense +.

                                I think the SG line will be "tuned" (system tunable, etc) out of the box, I'm not sure that's a big differentiator.

                                1 Reply Last reply Reply Quote 0
                                • bingo600B
                                  bingo600 @JKnott
                                  last edited by bingo600

                                  @jknott said in New hardware:

                                  @jwj said in New hardware:

                                  Last thing I want to do is mess around with a serial console cable and putty.

                                  I've used serial ports enough times over the years, that's not an issue for me. I'd just need a gender bender, as that appears to be a male connector on it. I've made up enough of those and probably have a couple around here. I bought that adapter years ago, to configure telecom gear.

                                  I'm using the Qotoms w. serial.
                                  You can set (in bios) "Console" as serial (Ie. VT100) , and then even the Bios settings can be accessed via "Putty".

                                  You need a (USB) Serial , and a NULL-Modem cable.

                                  /Bingo

                                  If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                                  pfSense+ 23.05.1 (ZFS)

                                  QOTOM-Q355G4 Quad Lan.
                                  CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                                  LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                                  fireodoF 1 Reply Last reply Reply Quote 0
                                  • fireodoF
                                    fireodo @bingo600
                                    last edited by fireodo

                                    @bingo600 said in New hardware:

                                    @jknott said in New hardware:

                                    @jwj said in New hardware:

                                    Last thing I want to do is mess around with a serial console cable and putty.

                                    I'm using the Qotoms w. serial.

                                    So do I here! Its not exactly a Qotom - I bought that Box from a Shop called Kettop - but looks like a Qotom. (I guess its a rebranded Qotom because dmidecode says: Product Name: Q3XXG4-P)
                                    I choose to add myself the RAM because I read that the RAM those boxes come with are not quite reliable.

                                    You can set (in bios) "Console" as serial (Ie. VT100) , and then even the Bios settings can be accessed via "Putty".

                                    You need a (USB) Serial , and a NULL-Modem cable.

                                    Exact! (I had a original serial cable and a machine with a real serial port - left over from Fido-Modem-Times 😊 )

                                    /Bingo

                                    Regards,
                                    fireodo

                                    Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
                                    SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
                                    pfsense 2.8.0 CE
                                    Packages: Apcupsd, Cron, Iftop, Iperf, LCDproc, Nmap, pfBlockerNG, RRD_Summary, Shellcmd, Snort, Speedtest, System_Patches.

                                    1 Reply Last reply Reply Quote 0
                                    • JKnottJ
                                      JKnott @JKnott
                                      last edited by

                                      @jknott

                                      I have just ordered the Qotom.

                                      PfSense running on Qotom mini PC
                                      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                                      UniFi AC-Lite access point

                                      I haven't lost my mind. It's around here...somewhere...

                                      noplanN JKnottJ 2 Replies Last reply Reply Quote 2
                                      • noplanN
                                        noplan @JKnott
                                        last edited by

                                        @jknott

                                        my folks are checkin this piece of hardware right now!
                                        thanks for reminder.
                                        brNP

                                        1 Reply Last reply Reply Quote 0
                                        • JKnottJ
                                          JKnott @JKnott
                                          last edited by JKnott

                                          @jknott

                                          The new computer has arrived. It took 1 week from Hong Kong to here, including 1 day wasted by DHL claiming I declined delivery when they didn't even come to my door.

                                          One thing I've noticed is pfsense shows the AES-NI instructions are available, but inactive. Will they become active, once I have my VPN set up?

                                          PfSense running on Qotom mini PC
                                          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                                          UniFi AC-Lite access point

                                          I haven't lost my mind. It's around here...somewhere...

                                          V JKnottJ 2 Replies Last reply Reply Quote 0
                                          • V
                                            Vollans @JKnott
                                            last edited by

                                            @jknott said in New hardware:

                                            One thing I've noticed is pfsense shows the AES-NI instructions are available, but inactive. Will they become active, once I have my VPN set up?

                                            Advanced settings, Misc, part way down select Cryptographic Hardware dropdown and choose AES-NI :)

                                            JKnottJ 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.