This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG home edition - throughput capacity?

I am looking for a software based firewall for my edge gateway, I was originally planning to just use pfsense, but I saw the fuller feature set that Sophos offers for free with the home edition. This seems like a pretty good bargain but the big gotcha is 4 cores 6gb ram limitation.

The hardware that I already have in place is an intel 10th gen itx build. I haven't bought the processor yet, but I am leaning towards an i3-10320 being as it has the highest base and turbo clocks for a 4 core. Alternatively I could get a 10600k with a 4.1GHz base clock, so the 4 cores that the home edition uses will at least be fast enough.

I have 1gig fiber internet and that is the minimum throughput (preferably IPS throughput) that I'm trying to achieve. But the hardware will have an intel 4 port SFP+ card with at least 2 ports actually needing 10gig. I am still unsure if the cpu limitations will affect this desired throughput? Also, is 6gb enough to be running most of the offerred security features?


There wont be a ton of traffic volume going through, but a couple users at a time transferring large files / remote desktop activities necessitate more than 1gig of internal bandwidth. Coupled with normal internet traffic and some vpn activity, I hope I can strive for this goal with the home edition restrictions.
Is this possible? Or should I look elsewhere for a more powerfull software firewall?



This thread was automatically locked due to age.
Parents
  • Hi,

    using the current version of XG you would need a very fast CPU, not a i5 or something like that just fast with 4 real cores.

    I would be very surprised if t you ran out of memory, my system with 4 interfaces, 6gb of ram and something like 40 firewall rules with IP4 and IPv6 uses around 50%.

    Actual throughput will depend on how well you tune the IPS settings.

    Ian

    XG115W - v20 GA - Home

    XG on VM 8 - v20 GA

    If a post solves your question please use the 'Verify Answer' button.

  • Is the home edition limited to 4 physical cores or 4 cores and 2 threads per core? So a 4 core hyperthreaded cpu should have 8 total threads being used?

    I think 4 physical cores all clocked at 4GHz should be sufficient for low volume 10gig. Ill be doing some iperf testing to see the raw throughput capacity soon.

  • It is limited to 4 cores whether they be real or hyper threading. Hyperthreading will downgraded your system because they do not add a full cpu but shared memory, io paths etc.

    If you look at my hardware specifications they are similar to a top end Sophos hardware except I don't have a 10gb interface.

    At the moment the limitation is really around snort performance which is single threaded and also takes awhile to ramp up to full throughput. If you run multiple connections from different devices the throughput will ramp up to link speed.

    Ian

    XG115W - v20 GA - Home

    XG on VM 8 - v20 GA

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • It is limited to 4 cores whether they be real or hyper threading. Hyperthreading will downgraded your system because they do not add a full cpu but shared memory, io paths etc.

    If you look at my hardware specifications they are similar to a top end Sophos hardware except I don't have a 10gb interface.

    At the moment the limitation is really around snort performance which is single threaded and also takes awhile to ramp up to full throughput. If you run multiple connections from different devices the throughput will ramp up to link speed.

    Ian

    XG115W - v20 GA - Home

    XG on VM 8 - v20 GA

    If a post solves your question please use the 'Verify Answer' button.

Children
No Data