This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

*Unofficial* Hardware Compatibility List (HCL)

Update: There is no longer an official Sophos HCL for the UTM, but the XG HCL is 99% the same for UTM.


The OFFICIAL Sophos / Astaro UTM HCL is currently at http://www.sophos.com/en-us/support/knowledgebase/118185.aspx
As it does not contain all possible hardware, I've created this thread...

Please don't post questions like "will X work?" here. Open a new thread if you have a question about buying hardware not already mentioned here.
Open a new thread if you have an installation or other question.


Update: This thread is for system configurations. If you'd like to mention a single component such as a NIC or RAID controller, please post in https://community.sophos.com/products/unified-threat-management/astaroorg/f/52/t/27166

If you are having trouble with installation, please open a new thread unless you are sure that the hardware is incompatible, and if it is incompatible, be specific, e.g. "fails to detect disk", etc. Know how to use ALT-F3 etc. Ask questions in a new thread if you're not sure.


I propose that we post here with our tested system configurations, Astaro versions, and success or problems, using this template:

Template for copying/pasting:
Status: [Working|NOT Working], currently using at [Home|Work|Client]
Astaro Version(s) tested: 
System OR Motherboard: 
BIOS version: 
CPU:
RAM: 
Disk Controller 1: 
Disk Controller 2: 
Network Interfaces: 
VLAN support: (unknown|untested|no|working)
Video Controller: 
Hard Disk: (optional but please at least specify SATA/PATA/SCSI/SAS)
Optical Drive: (optional)
Case/Chassis: (optional)
Power Supply:  (optional)
What's not working: e.g. SATA doesn't work but IDE does
Total Power Consumption (in Watts, if known): [measured|estimated based upon...] please do not use the power supply rating
Total Cost: (optional, please specify currency, retail|used, and date)
Comments / Notes: (please include your Internet connection speed)


Note I used 'lscpi' to get the controllers information.
Note that one can EDIT their post later to add changes/corrections instead of posting a 'correction' post.

Also see IPS Throughput benchmarks at: https://community.sophos.com/products/unified-threat-management/astaroorg/f/52/t/29110


Please don't post questions like "will X work?" here. Open a new thread if you have a question about buying hardware not already mentioned here.


Thanks!
Barry



updated
[edited by: FloSupport at 1:32 AM (GMT -7) on 8 Jun 2021]
  • Status: Working currently using at Home
    Astaro Version(s) tested: 9.351-3
    System OR Motherboard: Dell OptiPlex 7010
    BIOS version: A20
    CPU: Intel(R) Core(TM) i3-3220 CPU @ 3.30GHz
    RAM: 8GB DDR3 1600
    Disk Controller 1: 7 Series/C210 Series Chipset Family 6-port SATA Controller [AHCI mode]
    Disk Controller 2:
    Network Interfaces: eth0 Intel Corporation 82574L Gigabit Network Connection
    Network Interfaces: eth1 Intel Corporation 82574L Gigabit Network Connection (Ethernet Bridge)
    Network Interfaces: eth2 Intel Corporation 82579LM Gigabit Network Connection (Ethernet Bridge)
    VLAN support: Untested
    Video Controller: Built In.
    Hard Disk: SATA 120GB OCZ-AGILITY3 SSD
    Optical Drive: HL-DT-ST DVD+-RW GT80N
    Case/Chassis: SFF
    What's not working: none
    Total Power Consumption unknown
    Total Cost: About £40-£50 quid for 2 LAN cards, the rest I had laying around and unused for a few years.
    Comments / Notes: Sky Fibre 80/20(Mbps)

    Regards Simon

    UTM - 9.411-3 | Intel(R) Core(TM) i5-3550 CPU @ 3.30GHz
    8GB Memory | Samsung EVO 850 120GB SDD | Intel GB Ethernet x3

  • Status: Working: Home Stable overall
    Astaro Version(s) tested: 9.350, 9.352-6
    System OR Motherboard: Intel NUC NUC5PPYH
    BIOS version:
    CPU: Intel N3700, 2.4Ghz Quad Core
    RAM: 4Gb DDR3L SODIMM
    Disk Controller 1: SATA 3
    Disk Controller 2:
    Network Interfaces: 1 Internal Realtek Gb / 1 USB Realtek Gb
    VLAN support: working
    Video Controller: Intel HD Graphics
    Hard Disk: SATA 64Gb SSD
    Optical Drive: None
    Case/Chassis: NUC
    Power Supply: External
    What's not working:
    Total Power Consumption (in Watts, if known): 8 - 13 watts depending on load
    Comments / Notes: Total cost: $210; Initial setup used an Anker Unibody Aluminum USB 3.0 to RJ45 Gigabit Ethernet Adapter Supporting 10/100/1000 Mbps Ethernet [RTL8153 Chipset] that had random disconnects after about 3 weeks of use. Anker NIC ran very hot before failure. Currently using Fenvi Unibody Aluminum USB 3.0 to RJ45 Gigabit Ethernet Network Adapter Supporting 10/100/1000 Mbps Ethernet for Windows and MAC System [RTL8153 Chipset]. Fenvi appears to run much cooler. Using Unifi access point with a few VLANs including a Sophos Guest portal and a few wired Gb VLANs. Hopefully, the USB NIC will survive long term. If current configuration is stable long term, the cost is minimal for all the features available. Minor issues installing from USB Stick.
  • Status: Working-stable, using in home environment
    Astaro Version(s) tested: UTM Home 9.3550-1 plus several earlier versions
    System OR Motherboard: SuperMicro X10SLM+LN4F-O
    BIOS version: R 3.0
    CPU: Intel Core i3 4170 (SilverStone NT07-115x Super Slim Profile CPU Cooler)
    RAM: 32GB 8GBx4 Crucial(Micron) CT2KIT102472BD160B
    Disk Controller 1: onboard
    Disk Controller 2: onboard
    Network Interfaces: Quad Intel i210AT
    VLAN support: Yes, not using
    Video Controller: BMC integrated Aspeed AST2400
    Hard Disk: Samsung SATA SSD
    Optical Drive: Pioneer-temp only for Sophos installation
    Case/Chassis: SilverStone ML04B
    Power Supply:  SeaSonic SSR-360GP 360W
    What's not working: So far everthing I've used is working
    Total Power Consumption (in Watts, if known): Going off memory, but I think 30-40 watts, roughly
    Total Cost:  $600+ retail, late 2015
    Comments / Notes: Solid as a rock after proper setup/burn-in.  Overkill for my use case and the hardware use/graphs reflect that, but it was purchased with expansion in mind.  I'm writing this up well after the fact, but I recall the Sophos installation being seamless and not having run into too many hurdles getting this going.  My internet connection speed is 100/10Mbit and I get every bit of that as far as I've seen, most features enabled.  Runs super quiet, but had to set fan thresholds via IPMI tool.  Added 2 Noctua NF-R8 fans to the case for airflow.

  • Status: Working, currently using at Home
    Astaro Version(s) tested: 9.355-1
    System OR Motherboard: SuperMicro E200-9B containing X11SBA-LN4F Mainboard
    BIOS version: 1.0
    CPU: Intel® Pentium® Processor N3700 (SOC), Quad-Core (6W, 4C); Socket FCBGA 1170
    RAM: 2 x Kingston KVR16LS11/4 RAM 4 GB 1600 MHz DDR3L Non-ECC CL11 SODIMM 1.35 V, 204-Pin Memory Module
    Disk Controller 1: SATA 3.0 (6Gbps) from Intel® SoC
    Disk Controller 2:
    Network Interfaces: Quad Gigabit Ethernet LAN ports, Intel® I210-AT
    VLAN support: unknown
    Video Controller: Aspeed AST2400 BMC
    Hard Disk: Plextor PX-128M6M 128GB mSata Solid State Drive
    Optical Drive: None
    Case/Chassis: CSE-101S Mini-ITX (19.5cm wide x 19.5cm deep x 4.5cm high)
    Power Supply: DC-DC board with external 60W DC Power Supply
    Total Power Consumption: Estimated 10 - 15 Watts
    Total Cost: £424.63 (Bare E200-9B = £350, RAM = £29.24, mSATA = £45.39 all retail)
    Comments / Notes: This Server/Board has a dedicated IPMI interface (similar to HP ILO) in addition to the 4 NICs.
    Install of UTM was done remotely using IPMI console redirection with virtual media pointing to local ISO on remote machine.
    All hardware was recognised with no issues.
    Broadband Line Rate - Upstream: 9999 Kbps, Downstream: 39999 Kbps

  • Asrock H110m-ITX does not work with UTM 9.2,9.3 or 9.4 but does work XG 15.

    Fails after the NIC detection, just sits.

    I also have an MSI 150 that does the same thing. Rats another upgrade fails.

    Ian,

    home UTM 9.x running in ESXi 6 e3-1275v2

    AP55c and AP10 (courtesy Astaro)

    Three other UTMs, SUM and SFM in hibernation

    XG 15.x MR3 in hibernation

  • Status: [Working], currently using at [Home]
    Astaro Version tested: 9.404-5.1 & 9.405-5
    Motherboard: Gigabyte GA-N3150N-D3V (88€)
    BIOS version: F3
    CPU: Intel Celeron N3150 (4* 1.6GHz - 2.08GHz) onboard
    RAM: 8GB DDR3L Transcend TS1GSK64W6H (31€)
    Disk Controller: Intel Corporation Device 22a3 (said 'lspci', need to look at 'lshw' output closer)
    Network Interface 0 WAN: Realtek RTL8111/8168/8411 onboard
    Network Interface 1 LAN: Realtek RTL8111/8168/8411 onboard
    VLAN support: (unknown|untested|no|working) untested
    Video Controller: Intel HD Graphics onboard
    Hard Disk: Kingston UV400 120GB SSD (42€)
    Case/Chassis: inter-tech Q-6 Silver (incl. PSU) (61€)
    Power Supply: 60W
    What's not working: nothing
    Total Power Consumption: [measured] 13.5W

    Total Cost: 222€ (88€+31€+42€+61€)
    Shipping: 7€ (6€+1€)
    Comments / Notes: Setup problems using a USB-Key (needed to "mount /dev/sdb1 /install" and complete the names of 6 files in /install/rpm/)

    EDIT1: added BIOS & Disk Controller; EDIT2: added Power Consumption (0.12kWh in 9 hours) & added costs for components and shipping; EDIT3: dropped WLAN & changed SSD & corrected Power Consumption after longer measurement; EDIT4: added tested Version

  • Status: [Working|, currently using at [Home]
    UTM Version: 9.404-5

    Motherboard:    Gigabyte GA-J1900N-D3V (Mini ITX)
    Processor:     Intel Celeron J1900 (2.0 GHz) (On-board)
    RAM: Corsair 8GB (2x4GB) 1600MHz PC3-12800 204-Pin DDR3
    Network Interfaces:    Onboard RTL8111/8168/8411 + RTL8169 PCI
    VLAN support: Yes, currently 3 working
    Hard Disk: Seagate SSHD (SATA)
    Comments / Notes: Comcast xFinity Blast Pro, Redundant information not listed because it's on-board (graphics, sata controller)

  • Status: Working, currently using at Home

    Sophos Version(s) tested: UTM 9.4x
    System OR Motherboard: Zotac Zbox CI323 Nano
    BIOS version: 1.0
    CPU: Intel N3150 Quadcore with AES-NI
    RAM: 4 GB (use only 1 DIMM!!!)
    Disk Controller 1:  Intel Corporation Device 22a3 (rev 21) (SATA)
    Disk Controller 2: Intel Corporation Device 2294 (rev 21) (SD Card)
    Network Interfaces: 2x  Realtek Semiconductor Co., Ltd. RTL8111/8168/8411 PCI Express Gigabit Ethernet Controller (rev 0c)
    VLAN support: working
    Video Controller: Intel HD Graphics (in CPU)
    Hard Disk: 32 Gb SSD
    Optical Drive: no
    Case/Chassis: passive cooling
    Power Supply:  external
    Total Power Consumption (in Watts, if known): ~10 Watt estimated based upon CPU TDP (6 Watt) and CPU load

    Total Cost: ~200 Euro, Retail, Q1/2016

    Comments / Notes: WIFI not tested. Internet Bandwidth 120 MBit/s, CPU is with all options on (IPS,...) at around 20-30% maximum at full download speed
    THere are problems reported, if both DIMM slots are used (intermittendly crashes)

  • Status: Working, currently using at Home
    Astaro Version(s) tested: 9-408
    System OR Motherboard: Fujitsu D3400-B     70.-€
    BIOS version: R1.13.0
    CPU: INTEL Celeron G3900 2,8GHz  40.-€
    RAM: Kingston 8GB DDR4   60.-€
    Disk Controller 1: 
    Disk Controller 2: 
    Network Interfaces: internal Realtek + INTEL PRO/1000 PT Dual Port  20.-€
    VLAN support: untested
    Video Controller: 
    Hard Disk:KingDian S200 60GB SSD   26.-€
    Optical Drive: (optional)
    Case/Chassis: AeroCool cs-101 Slim M-ATX  39.-€
    Power Supply:  Leicke 12V 5A  20.-€ + picoPSU-90   33.-€
    What's not working: normal installation (see comments)
    Total Power Consumption (in Watts, if known): measured  ~16W
    Total Cost: (optional, please specify currency, retail|used, and date) ~310€ incl. all shipping
    Comments / Notes: (please include your Internet connection speed)

    Installation always stops at: "Detecting other devices".
    Board has only display port and DCI, so I bought a VGA-adapter that didn't help.Finaly I installed on another computer and changed SSD and nics.

    Works perfect. I have only slow DSL, but all features enabled. CPU-load around 4%.

    cu
    Walter

  • Status: Currently building, getting this reserved for tomorrow when I inevitably run into problems :)
    Astaro Version(s) tested: 9.409
    System OR Motherboard: Gigabyte GA-H170N-WIFI Rev v1.0
    BIOS version: 
    CPU: Core i3-6100
    RAM: 2x 4GB G-SKILL DDR4 2133 (PC4 17000)
    Disk Controller 1: Onboard SATA
    Disk Controller 2: 
    Network Interfaces: 2x Intel Onboard 10/100/1000 NICs (1 isn't compatible), 1x Intel i350 T4V2 4-Port GbE Adapter
    VLAN support: unknown
    Video Controller: 
    Hard Disk: Kingston SSDNow UV400 120GB
    Optical Drive: LG SATA Blu-Ray Burner (only stays in case build sticking doesn't work, then is moving to my main computer)
    Case/Chassis: RAIDMAX Element ATX-101B
    Power Supply: Thermaltake Litepower 350W
    What's not working: Cannot detect both onboard Intel NICs
    Total Power Consumption (in Watts, if known): What is the best way to measure?
    Total Cost: $457 + $20 for expedited shipping
    Comments / Notes: I'm hoping that processor - went with the i3 for the higher clock speed since I know Snort rules are single-threaded - will deliver solid speeds for my 1Gbps home connection, FTTP. If it fails to deliver, I'll jump all the way to a Core i7.

    UPDATE: The install wouldn't work because it can't recognize one of the two onboard NICs. I tried to make sure the motherboard I chose had Intel NICs, but it's just freaking impossible to find out exactly which specific chip is running the NICs. It turns out, the Gigabyte board I chose had two different chips and one isn't compatible. The Intel i350 T2 and T4 cards come up consistently as winners in this list, so I'm just getting one of them. Ebay has them for FAR cheaper than you'll find them elsewhere. Once it arrives, I'll try again!

    UPDATE 2: I finally got everything to work by just installing over ESXi. It's running fairly smoothly, but it limits me to about 300 Mbps from the 600 Mbps - 800 Mbps I could get without anything in place. That's obviously not the end of the world, but I was hoping that before I actually started doing full monitoring I would be getting almost the full pipe and it would only slow down after I started turning on more features.