Goodbye PFsense, Hello Opnsense - eviltoast

After having issues with my Netgate 4100 (see this post) and knowing all the crap Netgate has pulled the last few years, I decided to build a new Firewall capable of 10 gig routing. Hopefully this fixes my issues. If not at least I no longer have to support PFsense.

Pictures:

https://imgur.com/lTmvj4K

https://imgur.com/iVdBMnu

Hardware:

X11SSH-F Motherboard

Xeon E3-1240 v5 CPU

32GB 2400mghz RAM

ZFS Mirrored 128gb SSDs

350W Gold Rated PSU

Connect X3 Dual SFP+ NIC

Should have it production ready by next week. Really not looking forward to reconfiguring all the HAProxy/ VPN stuff, but so far already found quite a few Aliases/Rules I can cleanup.

Thanks for stopping by!

  • DismalAssistance1736@alien.topB
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 year ago

    I’m in a similar boat. Have a Netgate 7100 and it’s garbage. My network is mostly 10gb with a few 25gb devices. The 25gb is on the same VLAN so the router doesn’t come into play there, but it does a bunch across the 10gb devices. The netgate can’t handle it. Just bought an r230 and started setting up vyos. If opnsense can handle the traffic I might just go with that. Having a GUI is nice and I’m already familiar with pfsense.

    • MachDiamonds@alien.topB
      link
      fedilink
      English
      arrow-up
      1
      ·
      11 months ago

      If pfsense can’t do it I doublt opnsense can on the same hardware.

      You can get pretty close if you throw more powerful hardware at it. I managed to route at least 1.4 million packets per second (~16.8Gb/s, 1500MTU concurrent upload and download summed together) using 4 alder lake P cores on pfsense+ 22.05.