Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Doubts Hardware for Gigabit Throughput

    Scheduled Pinned Locked Moved General pfSense Questions
    15 Posts 6 Posters 1.5k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Cool_CoronaC Offline
      Cool_Corona
      last edited by

      You wont hit 1gbit with that hardware in a VM nor directly on hardware.

      What packages are you planning to run?

      1 Reply Last reply Reply Quote 0
      • AndyRHA Offline
        AndyRH
        last edited by

        My old desktop (Gen 1 i3) with a 4 port Intel NIC easily routes faster than 1Gb. (takes all four NICs) I am not running any packages that might affect speed I have a few dozen rules.

        So the HW will route at 1 Gb, but it may not be able to depending on what other work it has to do.

        o||||o
        7100-1u

        Cool_CoronaC 1 Reply Last reply Reply Quote 0
        • Cool_CoronaC Offline
          Cool_Corona @AndyRH
          last edited by

          @andyrh A router is a different thing. A FW needs a lot more power to inspect packets at wirespeed

          JKnottJ 1 Reply Last reply Reply Quote 0
          • M Offline
            Maico Vanzo
            last edited by

            I will try to explain my idea.
            I have a 600 mbps internet and a 35mbps backup. My idea is to put the 600mbps pppoe on PFsense routing the WAN, and a card giving dhcp on the LAN to the other equipment on the network (approximately 40 computers).
            Because today I have a loadbalace that manages only 300mbps, but when I perform the speed tests it is only giving 150mbps. Because I believe that comsiga manages only 150mbps per WAN port.
            So my idea was to put PFsense to manage all network traffic at 600mbps. Or put another equipment type microtik or uquikiti gateway. Because I thought that changing the network card by placing an intel pro / 1000 could manage 1gbps in pfsense and I like pfsense, I would not like to put another device on the network.
            I don't know that I was able to explain, but that's the idea.

            1 Reply Last reply Reply Quote 0
            • AndyRHA Offline
              AndyRH
              last edited by

              Most of my traffic is encrypted so there is not much to inspect.

              o||||o
              7100-1u

              B 1 Reply Last reply Reply Quote 0
              • B Offline
                biggsy @AndyRH
                last edited by

                @andyrh

                My pfSense (2.4.5_P1) is running on 2 vCPUs under ESXi 6.7U3. (Yeah, a bit behind the times.) No packages that require any heavy packet inspection.

                Hardware is an E3-1265Lv2 (4 cores @ 2.5GHz) using an Intel i340-T4.

                I have no problem pulling 1Gb/s through that. Your 3.3GHz CPU should do it easily.

                M 1 Reply Last reply Reply Quote 0
                • JKnottJ Offline
                  JKnott @Cool_Corona
                  last edited by

                  @cool_corona said in Doubts Hardware for Gigabit Throughput:

                  @andyrh A router is a different thing. A FW needs a lot more power to inspect packets at wirespeed

                  These days, routers generally include firewalls. For example, I have a Cisco router here that does. That said, I suspect my Qotom mini PC could handle it. It has an i5 CPU, 4 GB memory and 4 Ethernet ports. However proper routers often have custom hardware to improve performance.

                  I agree running in a VM will kill performance.

                  PfSense running on Qotom mini PC
                  i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                  UniFi AC-Lite access point

                  I haven't lost my mind. It's around here...somewhere...

                  1 Reply Last reply Reply Quote 0
                  • M Offline
                    Maico Vanzo @biggsy
                    last edited by

                    @biggsy So if I put at least one new network card, one similar to yours has the possibility of reaching 1gb/s.

                    JKnottJ B 2 Replies Last reply Reply Quote 0
                    • JKnottJ Offline
                      JKnott @Maico Vanzo
                      last edited by JKnott

                      @maico-vanzo

                      My understanding is Intel is the best choice. My Qotom computer has 4 Intel Ethernet ports and here are my speedtest results. CPU usage didn't exceed 5%.

                      PfSense running on Qotom mini PC
                      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                      UniFi AC-Lite access point

                      I haven't lost my mind. It's around here...somewhere...

                      1 Reply Last reply Reply Quote 0
                      • B Offline
                        biggsy @Maico Vanzo
                        last edited by

                        @maico-vanzo

                        Yes, as JKnott says, Intel is the best choice.

                        Just be aware that there are fake Intel cards being sold. Here is a link to a long thread about those and how to identify them:

                        https://forums.servethehome.com/index.php?threads/comparison-intel-i350-t4-genuine-vs-fake.6917/

                        JKnottJ 1 Reply Last reply Reply Quote 0
                        • JKnottJ Offline
                          JKnott @biggsy
                          last edited by

                          @biggsy

                          My Qotom computer has the Ethernet ports built into the mom board, so no chance of a fake card.

                          PfSense running on Qotom mini PC
                          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                          UniFi AC-Lite access point

                          I haven't lost my mind. It's around here...somewhere...

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.