OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of shmerl »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - shmerl

Pages: [1]
1
Hardware and Performance / Re: Firewall throughput vs port to port firewall throughput?
« on: August 05, 2024, 01:13:18 am »
Do you think some version of Ryzen embedded (may be something based on new Zen 5?) will be able to handle  full 10 Gbps port to port throughput in a lower power form factor like DEC750?

2
Hardware and Performance / Re: Is opnsense available in rasp pi 5?
« on: January 25, 2024, 02:05:47 am »
Well, hopefully something can change for the better. There are open source routers, but I haven't really seen open source switches, especially for home networks (not talking about datacenters) and even more so when it comes to 10 Gbps / SFP+ switches.

May be once AMD embedded CPUs will progress far enough to handle multiple 10 Gbps ports in a small form factor package, there won't be a need for any closed ASICs.

3
Hardware and Performance / Re: Is opnsense available in rasp pi 5?
« on: January 25, 2024, 12:22:31 am »
Quote from: cookiemonster on January 25, 2024, 12:09:52 am
This switch/router, depending on which version of OS you use like RouterOS / SwitchOS will behave as switch or router. That OS is optimised to use a discrete switch chip, in this case a Marvell 98DX3236. You see now the main difference, switches have a switch chip.The OS can offload switching packets duties to said chip.
OPN on the other hand is an OS that is not leveraging these chips in a general-purpose amd64 machine that doesn't have them, so it has to do all the switching/forwarding using the CPU as Patrick said.

I mean if Marvell 98DX3236 has open drivers, how hard is it to add support for it in FreeBSD / Opnsense? Or there are no chips with open drivers like that?

UPDATE:

I see this: https://lore.kernel.org/lkml/20170106041517.9589-1-chris.packham@alliedtelesis.co.nz/T/

4
Hardware and Performance / Re: Is opnsense available in rasp pi 5?
« on: January 25, 2024, 12:20:33 am »
Quote from: Patrick M. Hausen on January 25, 2024, 12:05:32 am
OPNsense does not support any proprietary switch hardware.

There are no open specs for ASICs that can do that kind of task? I.e. may be Deciso can develop one and then it can be supported by Opnsense.

5
Hardware and Performance / Re: Is opnsense available in rasp pi 5?
« on: January 24, 2024, 11:53:31 pm »
Quote from: Patrick M. Hausen on January 24, 2024, 06:57:23 am
It cannot. All packet forwarding is done by the main CPU.

How does it work on real swtiches (something like Mikrotik CRS305-1G-4S+IN), it uses extra hardware to offload the CPU?

6
Hardware and Performance / Re: Is opnsense available in rasp pi 5?
« on: January 24, 2024, 12:28:00 am »
What about managed switches? They run their own OS anyway. Can Opnsense work just for switching purposes or it's not optimized for it?

7
Hardware and Performance / Small form factor SFP+ switch by Deciso?
« on: January 21, 2024, 06:09:43 am »
While DEC750 - 850 are nice devices, they only have 2 SFP+ ports. Would you consider making a small form factor switch with 4 or more SFP+ ports?

It seems possible since Mikrotik made CRS305-1G-4S+IN which has 4 SFP+ ports and is using way lower end hardware than DEC750. It would be nice to have such kind of switch but running open source system like OPNsense.

Thanks!

8
Hardware and Performance / Re: Firewall throughput vs port to port firewall throughput?
« on: November 24, 2022, 09:15:38 am »
I see, thanks.

9
Hardware and Performance / Re: Firewall throughput vs port to port firewall throughput?
« on: November 24, 2022, 08:56:14 am »
It's still not very clear.

Let's say I have such scenario:

* One 10 Gbps SFP+ on DEC750 is connected to WAN.
* Another 10 Gbps SFP+ port is connected to a switch (that supports 10 Gbps).

Some device is connected to that switch as well.

What would be the total throughput between that device and WAN if firewall is active?

10
Hardware and Performance / Firewall throughput vs port to port firewall throughput?
« on: November 24, 2022, 01:46:13 am »
Official Opnsense hardware like DEC750 lists two metrics: firewall throughput (10 Gbps for it) and firewall port to port throughput (8.5 Gbps for it). What exactly is the difference and what does it mean?

Pages: [1]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2