

I use LAG (but as you can guess, I don't need it since my nics are 1Gb/s and my slow internet is only 25% of that, so my 2Gb/s LAG is kinda pointless, was just testing) and not seen any problems, but did follow the history of the old b/w issues and again, appears they were addressed. (I didn't find this issue, I only have 250Mb/s and the problem didn't exist for anything under 2.5Gb/s) There were some high latency issues when it came to multi Gb connections (like a 20Gb/s fibre) but seems they have been addressed. If you are using Suricata heavily, then you will need more vCpu than one.

It does need "appropriate vCpu" for your use case. loading the damn dashboard!! I mean to say, if you put in on a VM with 1cpu and limit the crap out of it, then you will see spikes. Most of that was people looking at the dashboard (a web interface) and seeing a cpu spike the moment they hit the dashboard. If you are starting from scratch, this is not an issue for you.ĬPU spikes don't really exist. This book is the ideal companion for understanding, installing and setting up an OPNsense firewall.īuy online from Bod Buchshop or Amazon Īlso bundled with the OPNsense® Business Edition license as E-book.I've run both pfsense, and then switched to opnsense when Netgate took over, and reduced support for the community version (and made it "proprietary").īoth work, opnsense works perfectly fine, and actually (for me during switch over) wasn't too hard to learn the changes/differences. OPNsense accepts the challenge and meets these criteria in different ways. A firewall offers the highest level of protection if its functions are known, its operation is simple, and it is ideally positioned in the surrounding infrastructure. They protect against known and new threats to computers and networks. Firewalls are a component of the security concept. Even home networks, washing machines, and smartwatches are threatened and require a secure environment.

No network is too insignificant to be spared by an attacker. And OPNsense is a top player when it comes to intrusion detection, application control, web filtering, and anti-virus. Even the open-source domain is moving towards Next-Generation Firewalls. Simple packet filters are becoming a thing of the past. Available Now: The complete 3rd Edition of Practical OPNsense® by Markus Stubbig
