pfSense hardware

rogerh

Guru
Joined
Apr 18, 2014
Messages
1,111

9C1 Newbee

Patron
Joined
Oct 9, 2012
Messages
485
Dating must really suck for you Arwen. You are constantly asking yourself "he only wants me for my internet connection".
 

cyberjock

Inactive Account
Joined
Mar 25, 2012
Messages
19,526

Arwen

MVP
Joined
May 17, 2014
Messages
3,611
Dating must really suck for you Arwen. You are constantly asking yourself "he only wants me for my internet connection".
<humor>How dare you assume he'd only want me for my Internet connection! It's obviously also for the beer
in the fridge, and ice cream in the freezer.</humor>

But back to reality, 1Gbps down/up is only as good as your ISP's POP, (Point Of Presence on the Internet). I
have had many times slow connection for trivial things, like a single HD video from Netflix, Vudu or Amazon
re-buffering. Or browsing common pages taking >30 seconds. All of this is wired in the house, (not WiFi), and
then fiber outside.
 

Ericloewe

Server Wrangler
Moderator
Joined
Feb 15, 2014
Messages
20,194
<humor>How dare you assume he'd only want me for my Internet connection! It's obviously also for the beer
in the fridge, and ice cream in the freezer.</humor>

But back to reality, 1Gbps down/up is only as good as your ISP's POP, (Point Of Presence on the Internet). I
have had many times slow connection for trivial things, like a single HD video from Netflix, Vudu or Amazon
re-buffering. Or browsing common pages taking >30 seconds. All of this is wired in the house, (not WiFi), and
then fiber outside.
That's an experience I know well, though only at ~100Mb/s bandwidths.

My old ISP's "fiber" (coax through and through, advertised as optical fiber - and yes, they are the local Comcast equivalent, how did you guess?) was horrible on some very rainy days, but pings to servers were generally consistent.
My new ISP's real fiber is an awesome last mile solution, but their routing is not quite as good, sometimes causing 50-100ms fluctuations in pings (European servers, so something around 50-70ms is the expected baseline).
 

Jailer

Not strong, but bad
Joined
Sep 12, 2014
Messages
4,977
My new ISP's real fiber is an awesome last mile solution, but their routing is not quite as good, sometimes causing 50-100ms fluctuations in pings

I would be ecstatic with 50 -100ms ping fluctuations. I've done the best to mitigate the problem with traffic shaping in pfsense and I still see upwards of 200-300ms swings. It's even worse without the shaping but unfortunately dial up is my only other option.
 

MtK

Patron
Joined
Jun 22, 2013
Messages
471

MtK

Patron
Joined
Jun 22, 2013
Messages
471
Joined
Mar 6, 2014
Messages
686
Thanks for these sources. I still don't get why so many pfsense builds use CPUs without AES.
 

MtK

Patron
Joined
Jun 22, 2013
Messages
471
Joined
Mar 6, 2014
Messages
686
so you can go for the C2758 @DataKeeper is using (~ €400) or the C2558 (~ €300)...
Thats a big price difference. You do get twice the amount of cores and cache for on third more of the price... But if i were building on a budget i'd go for the latter one.
 

Ericloewe

Server Wrangler
Moderator
Joined
Feb 15, 2014
Messages
20,194
Thats a big price difference. You do get twice the amount of cores and cache for on third more of the price... But if i were building on a budget i'd go for the latter one.
There's no pricing pressure, so Intel charges more or less whatever they want, then Supermicro, as the only manufacturer selling C2x58 boards, gets to add their own comfortable margin.
 

Jailer

Not strong, but bad
Joined
Sep 12, 2014
Messages
4,977
Thanks for these sources. I still don't get why so many pfsense builds use CPUs without AES.

If you have no plans to run a VPN then there really isn't much of a need for it.

Another good option to consider (and will likely be my next build) is the Supermicro X10 SBA-L if it's available in your area. Intel J1900 4 cores, 8GB max memory, 2 Intel NIC's and can be had around here for $136. A complete build with SSD should only draw around 12 to 15 watts or so.
 

diedrichg

Wizard
Joined
Dec 4, 2012
Messages
1,319
If you have no plans to run a VPN then there really isn't much of a need for it.
I DO plan to use VPN and I'd be the only user. I didn't see AES on that board, what's the hot hardware these days for VPN?
 

MtK

Patron
Joined
Jun 22, 2013
Messages
471
I DO plan to use VPN and I'd be the only user. I didn't see AES on that board, what's the hot hardware these days for VPN?
If you're not willing to read the whole thread, then at least take a look 6 messages up, where this part of the conversation started...
 

diedrichg

Wizard
Joined
Dec 4, 2012
Messages
1,319
If you're not willing to read the whole thread, then at least take a look 6 messages up, where this part of the conversation started...
I've been following it off and on. I have it as one of my subscribed threads that I've been very interested in. Sorry about that.
 

Jailer

Not strong, but bad
Joined
Sep 12, 2014
Messages
4,977
I DO plan to use VPN and I'd be the only user. I didn't see AES on that board, what's the hot hardware these days for VPN?

My first choice would be any of the 2x58 Avaton boards. Which one depends on your bandwidth needs.
 
Top