Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SG-3100 Question

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    4 Posts 2 Posters 517 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      A Former User
      last edited by A Former User

      I have another SG-3100 question. This time I am thinking about replacing a Supermicro 5018D-FN4T (aka XG-1541) with a SG-3100. The Supermicro is, obviously, massive overkill for this application. It's a home network with low to moderate use, mix of laptops, phones/ipads, a couple of Apple TV's and a bunch of Sonos Speakers. 200/20 Mb/sec service (Charter/Spectrum).

      I look at the memory usage (see below) and I am a little concerned that 2GB is going to be an issue. I'm not up on how BSD's do memory management but I think it's wired all that memory because it can, not because it needs to. The Supermicro has 32GB.

      Screen Shot 2019-05-21 at 09.14.40.png

      Screen Shot 2019-05-21 at 10.23.18.jpg

      Two packages are in use: NUT and pfblockerNG. Some of the tables from pfblocker are big, >12000 ip's (firehol lists).

      I would like to see zero swap usage on the 3100, is that unreasonable?

      Anyhow, any words of wisdom or experience will be appreciated.

      Thanks!

      BTW: that supermicro was originally bought for another purpose that never happened, was repurposed because I had no other use for it. It's really loud and sucks electricity. It needs to be replaced.

      1 Reply Last reply Reply Quote 0
      • ?
        A Former User
        last edited by

        I was hoping someone from netgate would chime in and say either: No worries, your good to go OR that will work fine if lay off the enormous block lists.

        Anyone?

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          It will probably work fine either way but I've never tried running with such a huge list set. Certainly there is no problem running pfBlocker with smaller lists, I have that running here and have never seen an issue.

          ===[ DNSBL Domain/IP Counts ] ===================================
          
             23346 total
             19324 /var/db/pfblockerng/dnsbl/Easylist_Default.txt
              4018 /var/db/pfblockerng/dnsbl/Easylist_Privacy.txt
                 4 /var/db/pfblockerng/dnsbl/Custom_List_custom.txt
          
          ====================[ Last Updated List Summary ]==============
          
          May 16	19:30	Spamhaus_drop
          May 21	00:00	pfB_NAmerica_v4
          May 21	00:00	Google
          May 21	00:00	Facebook
          
          IPv4 alias tables IP count
          -----------------------------
          102349
          
          IPv6 alias tables IP count
          -----------------------------
          0
          
          Alias table IP Counts
          -----------------------------
            102349 total
             94339 /var/db/aliastables/pfB_NAmerica_v4.txt
              7254 /var/db/aliastables/pfB_ASN_List.txt
               756 /var/db/aliastables/pfB_Spamhaus.txt
          
          pfSense Table Stats
          -------------------
          table-entries hard limit  1000000
          Table Usage Count         214572
          
          last pid: 83837;  load averages:  0.29,  0.18,  0.15                                               up 2+05:59:30  16:49:48
          59 processes:  1 running, 58 sleeping
          CPU:  0.8% user,  0.0% nice,  0.6% system,  0.0% interrupt, 98.6% idle
          Mem: 112M Active, 528M Inact, 275M Wired, 64M Buf, 1074M Free
          Swap: 
          
            PID USERNAME    THR PRI NICE   SIZE    RES STATE   C   TIME     CPU COMMAND
          60200 unbound       2  20    0   222M   128M select  0  21:57   0.00% unbound
          70480 root          1  52    0   100M 38560K accept  1   1:04   0.00% php-fpm
          84074 root          1  52    0   100M 37224K accept  0   1:07   0.00% php-fpm
          44473 root          1  34    0 98784K 35576K accept  1   1:03   0.00% php-fpm
           2769 root          1  34    0 98784K 35468K accept  1   1:02   1.09% php-fpm
          85411 root          1  52    0 98720K 34616K accept  1   0:02   0.00% php-fpm
            663 root          1  20    0 89368K 25520K kqread  0   0:06   0.00% php-fpm
          74860 root          1  20    0 44332K 31960K nanslp  1   1:26   0.05% php
          57636 root         73  20    0 38112K  8220K uwait   0   0:10   0.00% filterdns
          23687 root         17  52    0 35396K 16848K sigwai  0   1:00   0.05% charon
          69931 root          1  20    0 22096K  7280K kqread  0   0:32   0.05% nginx
          69978 root          1  20    0 22096K  7164K kqread  0   0:20   0.00% nginx
          69412 root          1  52    0 20048K  5872K pause   1   0:00   0.00% nginx
          59477 root          1  20    0 11604K  7392K piperd  0   0:00   0.00% sshg-parser
          79277 root          1  20    0 11172K  7308K select  0   0:00   0.01% sshd
          71697 root          1  20    0 11100K 11128K select  0   0:29   0.01% ntpd
          15913 root          1  20    0 10852K  6896K select  1   0:00   0.00% sshd
          79185 dhcpd         1  20    0 10092K  6288K select  0   0:23   0.01% dhcpd
           2027 root          1  20    0  8972K  5408K kqread  0   0:14   0.00% lighttpd_pfb
          

          Steve

          1 Reply Last reply Reply Quote 0
          • ?
            A Former User
            last edited by

            Thanks!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.