Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Any new hardware planned for 2021?

    Scheduled Pinned Locked Moved Netgate Announcements
    23 Posts 13 Posters 9.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • keyserK
      keyser Rebel Alliance @SteveITS
      last edited by

      @steveits The switch is a switch - so like with alle other switches:

      1: If the switch is not in VLAN 801.2q mode, The ports acts as accessports by default and the traffic is just switched - no need to pass it into the CPU/uplink unless it’s destined for other devices (off current L2).

      2: If you configure them as “discrete ports”, and put the switch in 802.1q mode, the ports are each configured as accessports in a given VLAN (usually unique) that is tunneled to the SOC on the uplink. (Note, you can have more than one port in the same VLAN tunnel), and all frames will have to pass through the uplink to be evaluated and routed across VLAN’s.

      There is a performance difference between 4 switched ports (backed by a 2.5Gbps uplink port to the SOC), and four real NIC discrete ports. Not only is 2.5Gbps the theoretical throughput of routed traffic to/from the 4 switched ports - as opposed to 4Gbit for 4 individual interfaces but:
      More importantly, small pfSense appliances does not have powerfull enough CPU cores to have a single core evalutate pfFilter rules (simple firewall rules) at Gbit wirespeed.
      Since a interface queue is not properly multithreaded, the single CPU core performance becomes the bottleneck for throughput on each interface (aka - the switch uplink in this case).

      FX: The SG-1100 that only has switched ports (All ports are seen on one uplink) has a max pffilter throughput of about 460Mbit.
      The SG-2100 which has the same CPU as the SG-1100, but has a discrete NIC, and 4 switched ports through a Uplink, will do about 680Mbit in pfFilter if the traffic is passed from a switch port to the real NIC. This is because it has 2 queues - each can use its own CPU core, whereas the SG-1100 has only one Queue (the uplink), and is therefore mostly limited to one CPU core.

      Love the no fuss of using the official appliances :-)

      1 Reply Last reply Reply Quote 1
      • CreationGuyC
        CreationGuy @audian
        last edited by

        @audian Hi, do you have any announcements yet?

        S 1 Reply Last reply Reply Quote 0
        • S
          SteveITS Galactic Empire @CreationGuy
          last edited by

          @prtonguy77 Well there was the 6100...

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote 👍 helpful posts!

          1 Reply Last reply Reply Quote 1
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.