OPNsense Forum

English Forums => Hardware and Performance => Topic started by: shmerl on November 24, 2022, 01:46:13 AM

Title: Firewall throughput vs port to port firewall throughput?
Post by: shmerl on November 24, 2022, 01:46:13 AM
Official Opnsense hardware like DEC750 lists two metrics: firewall throughput (10 Gbps for it) and firewall port to port throughput (8.5 Gbps for it). What exactly is the difference and what does it mean?
Title: Re: Firewall throughput vs port to port firewall throughput?
Post by: Patrick M. Hausen on November 24, 2022, 08:27:29 AM
Firewall throughput is maximum aggregate throughput across all ports.
Title: Re: Firewall throughput vs port to port firewall throughput?
Post by: shmerl on November 24, 2022, 08:56:14 AM
It's still not very clear.

Let's say I have such scenario:

* One 10 Gbps SFP+ on DEC750 is connected to WAN.
* Another 10 Gbps SFP+ port is connected to a switch (that supports 10 Gbps).

Some device is connected to that switch as well.

What would be the total throughput between that device and WAN if firewall is active?
Title: Re: Firewall throughput vs port to port firewall throughput?
Post by: Patrick M. Hausen on November 24, 2022, 09:08:01 AM
8.5 Gbps. If you have another pair of of 10G ports the total throughput across all 4 ports will not exceed 10 Gbps.

All according to specs. In reality as always your mileage may vary.
Title: Re: Firewall throughput vs port to port firewall throughput?
Post by: shmerl on November 24, 2022, 09:15:38 AM
I see, thanks.
Title: Re: Firewall throughput vs port to port firewall throughput?
Post by: shmerl on August 05, 2024, 01:13:18 AM
Do you think some version of Ryzen embedded (may be something based on new Zen 5?) will be able to handle  full 10 Gbps port to port throughput in a lower power form factor like DEC750?