100 Mbps IPsec
-
Hello,
I'm looking at recommendations on a device that can do 100 Mbps IPsec. The device would also do some standard firewall stuff, and would like to run Suricada as well.
I'm not sure with that if something like an SG-3100 could do it, or if I'd need an SG-5100. I was also looking outside of netgate at the Protectli Vault 4-Port (FW4B).
I believe the biggest factor is CPU with increasing throughput? My company also has an HP DL380 G7 just lying around. I'm wondering if loading it on their would easily give me what I'm looking for. Just wouldn't be a energy conservative way to go.
Thoughts?
Thanks!
-
@mmicha said in 100 Mbps IPsec:
HP DL380 G7 is surely an overkill from the power consumption basis. a smaller pizza sized box with entry level xeon can do the trick. but also depends what internet bandwith u have.
-
100Mbps IPSec is not that hard to achieve (depending on traffic type, latency etc!). The 3100 will pass 300-350Mbps over IPSec as long as you're using an encryption supported by it's crypto hardware (AES-CBC).
Yeah I'm sure that HP would do it but you'd probably want to run pfSense virtualized to make more efficient use of the hardware with other things.Steve