This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

new pc for home edition

hi guys, i have a question, now i'm using an apu1d4 with 30gb msata for my sophos utm. it's work perfectly with utm.

now i have a new fiber 100mbps download and 50mbps upload and apu1d4 is slower for new line (with advance  threat and ips i take 30mbps) and i'm searching a new hardware for sophos xg/utm. i'm using openvpn and IPsec, from laptop sometime and i want to you use it always active on my android device

i see many post about this things (saying zbox ci 320 etc but noone ci323) and i want to know if this choose is good for me.

i need an little box fanless, my big problem is that i'm italian (you see from my bad english.. sorry for that xD) and if i buy out europe i will pay too much taxes

i see this Zbox CI323 nano (2 nics, celeron n3150 (with aes encryption) 4 gb 1600mhz and 30gb ssd, does anyone knows if the wifi chipset is compatible?) it take 190euro only box (30euro ssd 35euro 4gb ram), is ti good choise for me?

thanks for your time and sorry again for my english



This thread was automatically locked due to age.
Parents
  • Hi,

    In general, wireless chips are not supported.

    The Celeron n3150 is a Braswell Silvermont chip, which is the new 'Atom' architecture... generally it is designed for very low power rather than performance.
    I don't know if it'll run well at 100mbps. Maybe. (I do know that a fast i3 will work great.)

    Note the IPS is typically the bottleneck for the CPU. Tuning the rulesets and using the ruleset aging can help a bit.

    Barry

  • I mostly concur...:)  fast I-3 and at least 8 gigs of ram.  I have seen growing memory usage on UTM so I am looking at going to 12 or even 16 gigs of ram depending on usage.  a good i-3 will draw not much more power on average than the atom and will hit 100 megabits easily without having to worry about tuning snort.  The aging works ok I personally do not use it based on my philosophy of having enough hardware and ram means you do not need to remove(or age out rules) if you have enough cpu and ram.  There's plenty of "old threats" out there that are still highly active.  I would highly suggest fully utilizing the tools UTM gives you..this means network visibility, application controls,. web proxy with dual a/v scanning and content filtering along with IPS.  Properly configured nothing is going to get by the edge that you do not allow.  You do to monitor the system for changes and also maintain it for the ever changing threat landscape but a good initial configuration will go a long way towards adding a very large amount of peace of mind to your network.

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

Reply
  • I mostly concur...:)  fast I-3 and at least 8 gigs of ram.  I have seen growing memory usage on UTM so I am looking at going to 12 or even 16 gigs of ram depending on usage.  a good i-3 will draw not much more power on average than the atom and will hit 100 megabits easily without having to worry about tuning snort.  The aging works ok I personally do not use it based on my philosophy of having enough hardware and ram means you do not need to remove(or age out rules) if you have enough cpu and ram.  There's plenty of "old threats" out there that are still highly active.  I would highly suggest fully utilizing the tools UTM gives you..this means network visibility, application controls,. web proxy with dual a/v scanning and content filtering along with IPS.  Properly configured nothing is going to get by the edge that you do not allow.  You do to monitor the system for changes and also maintain it for the ever changing threat landscape but a good initial configuration will go a long way towards adding a very large amount of peace of mind to your network.

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

Children
No Data