I just recently got a new ISP and new internet speed 1200/600, my current firewall with opnsense can not handle the speed (AMD GX-412TC SOC), I have been looking for a new firewall (opnsense + 2.5 Ethernet) and found several with the Intel N100 CPU (2023).

I was wondering if this CPU is good enough to handle the Internet speed and if there is overhead?

Possibly linux
link
fedilink
English
2
edit-2
10M

Honestly I’m a big fan of openWRT as it can give very good performance on cheap and used hardware.

I’ve never used it on amd64 but it may be worth a shot.

Spaz
link
fedilink
English
210M

Is there a good gui suggestion?

Possibly linux
link
fedilink
English
110M

It comes with a fairly extensive GUI

Spaz
link
fedilink
English
110M

Last time I used Luci gui was like 12 years ago. How has it improved since?

Possibly linux
link
fedilink
English
110M

I haven’t been using it for 12 years but right now the Luci GUI is the most extensive router GUI I’ve used.

@JonnyJaap@lemmy.world
creator
link
fedilink
English
210M

I used devices from gl iNet, the devices are good, but I find the UI of opnsense way better (compared to advance ui of openWRT) and updates are directly from opnsense.

I still have them for smaller network tests but for some reason I never got close to it. Probably another reason is that my brother uses opnsense too, if we have any issues we can ask each other for help.

@cookie@sh.itjust.works
link
fedilink
English
410M

I’m using a virtualized opnsense on an n100 and it handles my 1.5gb line fine.

@JonnyJaap@lemmy.world
creator
link
fedilink
English
110M

That you very much for the answer.

Can I ask why you are doing your firewall virtualized? I never understood why people do it, for me using bare metal has more advanced.

Lemmy Tagginator
bot account
link
fedilink
-210M

deleted by creator

poVoq
link
fedilink
English
1010M

The problem is Opnsense, as the BSD kernel used is doing single thread network routing. So the APU can saturate 1gbit with multiple connections/threads or if you switch to a firewall with a Linux kernel like OpenWRT.

That said, a N100 probably does have enough single thread performance to do 1.2 Gbit. Not sure about the full 2.5gbit though.

@JonnyJaap@lemmy.world
creator
link
fedilink
English
310M

Thank you for the answers. I enjoy opnsense, it’s easier to use then openwrt for me personally.

I was thinking to do some testing of the new device before I replace the old one. But I wanted to hear if anyone has experiences.

I looked at CPU benchmark net, and saw that N100 is about 8 times faster then the AMD SOC. I’m not sure if this is linear with performance increase. Currently max download is about 600-700 while upload is 300-400.

@dutchkimble@lemy.lol
link
fedilink
English
1
edit-2
10M

How are you measuring your speeds? I think cloudflare speed tests were more accurate for me then ookla, but in the end downloading a large file over usenet gives me the best picture

Edit- and that made me realise my ssd was a bottleneck, replacing that helped me go from 500-600 to about 900-950 on my gigabit connection

Spaz
link
fedilink
English
310M

Which is why tests like these should be done in ram.

@JonnyJaap@lemmy.world
creator
link
fedilink
English
110M

I tested with seedtest-cli, libre speed test and downloading a big file (with a combination of different devices). The CPU immediately goes to 100%

When I use the ISP box directly I get full speed.

I would try pfsense. Definitely no need for new hardware.

@Potatofish@lemmy.world
link
fedilink
English
-16
edit-2
10M

Yes.

Edit: How pathetic. It’s software. Keep trying to convince him to buy new hardware when he doesn’t need it.

@AtariDump@lemmy.world
link
fedilink
English
1210M

Again, no.

Not when they’re hostile to their end users and other projects for no reason.

Yes.

Found the Pfsense employee lol

@AtariDump@lemmy.world
link
fedilink
English
110M

Why?

Create a post

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

  • 1 user online
  • 125 users / day
  • 420 users / week
  • 1.16K users / month
  • 3.85K users / 6 months
  • 1 subscriber
  • 3.68K Posts
  • 74.2K Comments
  • Modlog