Recommendations for OPNsense box?

Started by loganx1121, September 29, 2019, 03:05:18 AM

Previous topic - Next topic
So I need a firewall for my home lab and settled on OPNsense. I got a Dell recoverpoint box from work. 4 NICS, 12GB of RAM, 2x Six Core E5-2620, 2x 300GB HDD. I had planned on using this as the OPNsense box...but...I feel like it's overkill. I also feel like it's going jack my electric bill up.

So, I'm looking for recommendations. I was going to buy an appliance, but everyone keeps telling me I can build something better for the same money. Been browsing around newegg but I honestly have no idea what I need for what I want to do. If it was a normal server build I could spec it myself but it kind of isn't so looking for some insight.

Here's what I'd like to do:

Gig throughput for traffic (routing) + Gig throughput NAT

I'm probably going to want to play with the IPS features too, i.e have IPS turned on and still be able to achieve the above speeds

IPSEC VPN <-- 100 Mbps to 200Mbps is fine. This is more convenience for friends and myself to access my NAS, etc.

So it looks like some of the pfsense appliance that claim to be able to route a gig are $400-600. I've been looking at some Xeon processors that are in the 200-250 range like this https://www.newegg.com/p/N82E16819117616

But I honestly don't have a clue what I need. I've built dozens of desktops off newegg for myself and others but never tried anything like this.

Any help is appreciated! Thanks in advance.

While I agree that box is overkill, if you got it free from work you've already saved the costs of any electricity bill hike for quite a while.  The noise may or may not be a factor for you.

How about this idea:  install your hypervisor of choice on that box, and run OPNsense plus other projects as VMs on it.

Qotom-Q555G6-S05  $377.13

Basic Information
Audio:No
AES-NI:Yes
Size:187x111x50mm
Power Consumption:TDP 15W
Operating Temp.: 0~50 Degrees Celsius
Non-Operating Temp.: -20~80 Degrees Celsius
Onboard LAN:6 x Intel I211-AT Gigabit LAN
Integrated Graphics:Intel HD Graphics 620
Onboard CPU:Intel 7th Gen Core i5-7200U Kaby Lake SOC Dual Core Processor, 3M Cache, 2.5GHz, up to 3.1GHz
Memory:Support DDR4 RAM, 1 x DDR4 SO-DIMM Socket (Up to 16G, 2133MHz)
Hard Disk:Support mSATA SSD - Support 2.5" SATA HDD/SSD
Wireless:Support USB WiFi (Only for USB Device)

Front I/O:
1 x Power on/off Button
2 x USB 3.0 Port
2 x USB 2.0 Port
1 x HD Video Port
1 x COM Port (RS-232)
Internal Connectors:
1 x Minipcie Port (For mSATA SSD)
1 x Minipcie Port (For USB Device)
1 x DDR4 SO-DIMM Memory Slot
1 x SATA Port
1 x SATA Power Connector
1 x SIM Card Slot
1 x Automatically Boot Jumper
1 x GPIO Header (Optional)
1 x VGA Header (Optional)
Rear I/O:
1 x DV 12V DC Input
1 x HDD LED
1 x Power LED
6 x Intel RJ45 Port for Gigabit LAN

Package Included:
1 x Mini PC
1 x Screws
1 x VESA Mount Bracket
1 x Power Adapter with Cable

Please Note:
Mini-PCIE cann't be supported WiFi and 3G/4G module at the same time in this computer. Half-length Mini-PCIE is only for WiFi, full-length Mini-PCIE is only for 3G/4G. It is Half-length Mini-PCIE by default.

Warranty:
1) Warranty is one year from you purchase.
2) Customization or printed logo can be acceptable.
3) This device fits for a LAN or WAN router, firewall, proxy, WiFi access point, VPN appliance, DHCP Server, DNS Server, IDS/IPS, etc.


here is something cheaper

https://www.apu-board.de/produkte/apu4c4.html 155€

greeting k0ns0l3 8)
"The quieter you become, the more you are able to hear...."

- OS:Debian GNU/Linux sid
- IPU662 System