SG-3100 Question



  • I have another SG-3100 question. This time I am thinking about replacing a Supermicro 5018D-FN4T (aka XG-1541) with a SG-3100. The Supermicro is, obviously, massive overkill for this application. It's a home network with low to moderate use, mix of laptops, phones/ipads, a couple of Apple TV's and a bunch of Sonos Speakers. 200/20 Mb/sec service (Charter/Spectrum).

    I look at the memory usage (see below) and I am a little concerned that 2GB is going to be an issue. I'm not up on how BSD's do memory management but I think it's wired all that memory because it can, not because it needs to. The Supermicro has 32GB.

    Screen Shot 2019-05-21 at 09.14.40.png

    Screen Shot 2019-05-21 at 10.23.18.jpg

    Two packages are in use: NUT and pfblockerNG. Some of the tables from pfblocker are big, >12000 ip's (firehol lists).

    I would like to see zero swap usage on the 3100, is that unreasonable?

    Anyhow, any words of wisdom or experience will be appreciated.

    Thanks!

    BTW: that supermicro was originally bought for another purpose that never happened, was repurposed because I had no other use for it. It's really loud and sucks electricity. It needs to be replaced.



  • I was hoping someone from netgate would chime in and say either: No worries, your good to go OR that will work fine if lay off the enormous block lists.

    Anyone?


  • Netgate Administrator

    It will probably work fine either way but I've never tried running with such a huge list set. Certainly there is no problem running pfBlocker with smaller lists, I have that running here and have never seen an issue.

    ===[ DNSBL Domain/IP Counts ] ===================================
    
       23346 total
       19324 /var/db/pfblockerng/dnsbl/Easylist_Default.txt
        4018 /var/db/pfblockerng/dnsbl/Easylist_Privacy.txt
           4 /var/db/pfblockerng/dnsbl/Custom_List_custom.txt
    
    ====================[ Last Updated List Summary ]==============
    
    May 16	19:30	Spamhaus_drop
    May 21	00:00	pfB_NAmerica_v4
    May 21	00:00	Google
    May 21	00:00	Facebook
    
    IPv4 alias tables IP count
    -----------------------------
    102349
    
    IPv6 alias tables IP count
    -----------------------------
    0
    
    Alias table IP Counts
    -----------------------------
      102349 total
       94339 /var/db/aliastables/pfB_NAmerica_v4.txt
        7254 /var/db/aliastables/pfB_ASN_List.txt
         756 /var/db/aliastables/pfB_Spamhaus.txt
    
    pfSense Table Stats
    -------------------
    table-entries hard limit  1000000
    Table Usage Count         214572
    
    last pid: 83837;  load averages:  0.29,  0.18,  0.15                                               up 2+05:59:30  16:49:48
    59 processes:  1 running, 58 sleeping
    CPU:  0.8% user,  0.0% nice,  0.6% system,  0.0% interrupt, 98.6% idle
    Mem: 112M Active, 528M Inact, 275M Wired, 64M Buf, 1074M Free
    Swap: 
    
      PID USERNAME    THR PRI NICE   SIZE    RES STATE   C   TIME     CPU COMMAND
    60200 unbound       2  20    0   222M   128M select  0  21:57   0.00% unbound
    70480 root          1  52    0   100M 38560K accept  1   1:04   0.00% php-fpm
    84074 root          1  52    0   100M 37224K accept  0   1:07   0.00% php-fpm
    44473 root          1  34    0 98784K 35576K accept  1   1:03   0.00% php-fpm
     2769 root          1  34    0 98784K 35468K accept  1   1:02   1.09% php-fpm
    85411 root          1  52    0 98720K 34616K accept  1   0:02   0.00% php-fpm
      663 root          1  20    0 89368K 25520K kqread  0   0:06   0.00% php-fpm
    74860 root          1  20    0 44332K 31960K nanslp  1   1:26   0.05% php
    57636 root         73  20    0 38112K  8220K uwait   0   0:10   0.00% filterdns
    23687 root         17  52    0 35396K 16848K sigwai  0   1:00   0.05% charon
    69931 root          1  20    0 22096K  7280K kqread  0   0:32   0.05% nginx
    69978 root          1  20    0 22096K  7164K kqread  0   0:20   0.00% nginx
    69412 root          1  52    0 20048K  5872K pause   1   0:00   0.00% nginx
    59477 root          1  20    0 11604K  7392K piperd  0   0:00   0.00% sshg-parser
    79277 root          1  20    0 11172K  7308K select  0   0:00   0.01% sshd
    71697 root          1  20    0 11100K 11128K select  0   0:29   0.01% ntpd
    15913 root          1  20    0 10852K  6896K select  1   0:00   0.00% sshd
    79185 dhcpd         1  20    0 10092K  6288K select  0   0:23   0.01% dhcpd
     2027 root          1  20    0  8972K  5408K kqread  0   0:14   0.00% lighttpd_pfb
    

    Steve



  • Thanks!


Log in to reply