UI performance with large number of interfaces

Started by multazimd, March 03, 2026, 02:17:14 AM

Previous topic - Next topic
Hi All,

We are currently have 60+ tunnels in our existing VPN software which we want to migrate to opnsense.

1) How many maximum number of VTIs can opnsense handle without performance issues in UI?
2) Is there a way to arrange the interfaces in groups so as make them not appear as a long list in UI?
3) How does search option at top right perform if i search an interface when count is 100+ ?

March 03, 2026, 04:36:34 AM #1 Last Edit: March 03, 2026, 05:15:16 AM by pfry
What platform? Or, in automotive terms, how fast do you want to spend?

Edit: Detail. So... 60 tunnels of what type and expected setup/teardown frequency,  on what hardware passing what traffic, with what type of filtering (basic, IPS)?

We are going to use Azure Image to setup shared VPN Gateway. It will have route based VPN setup for multiple customers. So it will be 60+ VPN tunnel interfaces.

I have no recent experience with shared computing services; I also haven't used VPNs much in the past 20 years or under OPNsense at all. But 60 tunnels doesn't seem like much. I was involved in testing VPN solutions for a product, mainly in 2004; the test program was for 1700 IPSEC tunnels, each with ~3Mb average bandwidth. Lots of tunnels by your standard; likely much less bandwidth. The Netscreen 5000 had plenty of en/decryption and forwarding performance, but the single PPC 603e (IIRC) control engine had real trouble with tunnel and session setup. A Juniper M20 with 4 ASPs had no trouble. Modern hardware should have no trouble, but software? We'll see if someone with a similar problem set to yours happens by.