This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Hardware suggestion for Sophos UTM Home Edition

My license(s) on my Zyxel USG110 is expiring, and I`m thinking of switching to Sophos UTM Home Edition rather than renewing.

I would appreciate some hardware suggestion for a fanless/very silent build that has performance close to/better than SG135(w).

This is for home use with few users, my bandwidth is 1Gbps up/down and I`ll mostly be using it for

IPS & AV. Not VPN. I don`t need 1Gbps performance, but I`d prefer to have at least 350Mbps of AV&IPS troughput.

I also have a R7000 and a GS1900-8 to use with it.

 

Can anyone recommend a build that will work and be stable? My budget is up to $800, but I`d prefer to stay below $500 if possible. I`d also prefer buying a complete prebuilt hardware appliance if there are any lower cost alternatives to a SG 135.

 

Are there any Zotac models, such as the Zotac ZBOX MI531 or CI323, that will work without problems, and satisfy my requirements for throughput?



This thread was automatically locked due to age.
  • Hi,

    a zotac CI 323 can be used.. utm will run on it.. just need to update the bios to the latest. there are some threads here with ppl discussing about it and how to install it.

    WLAN cant be used...

    better hardware is in the CI 545 model ... but not sure if it is supported by UTM installer (maybe driver problem for ethernet-ports..).. search for ppl using this model with utm..

     

     

    greets

    zaphod
    ___________________________________________

    Home: Zotac CI321 (8GB RAM / 120GB SSD)  with latest Sophos UTM
    Work: 2 SG430 Cluster / many other models like SG105/SG115/SG135/SG135w/...

  • Hi Zaphod,

     

    Thanks for the tip. The Cl545 is a bit expensive, and the only reference I found to it and sophos was one where there was an ethernet problem, as you mentioned. 

    The Cl323 has a very attractive price. Do you have any idea what kind of throughout I can expect with it?

     

    Too bad the WLAN cant be used. That would have been nice. 

    Any thoughts on the Zotac M-series?

  • I'm thinking you may need to custom build something using a CPU with as high as clock-frequency as you can afford. Especially when using IPS, you will need really high clockspeed (For a 200Mbps line a fast i3 will work quite well, but for 350+ Mbps I suspect you may need more.

    More RAM is only necessary if you enable a lot of features and at the same time have more than a few users. Usually in most home environments 8GB will suffice.


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

  • Agreed with the above comments. With a fast quad-core i5, you should be able to use 1GB with three or four simultaneous users.  The CPU in the 135 is far too underpowered for your bandwidth requirements.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Yeah, I think you are both right. From what I read in these and other forums, the CI323 will not have satisfactory througput.

    I did some testing today, and my USG110 gives me ~500Mbps up/down with IPS, AV and SSL inspection, so I would prefer not downgrading the throughput.

     

    I`ll probably go for an i5 build with SSD and 8GB ram. 

     

    Thanks for the input, all of you!

  • In case you are not aware, be sure whatever you select has a vga port as utm does not recognise HDMI ports. I made this mistake and worked around it by installing a cheap graphics card to enable the installation and then removed the card after installation was complete.

     

     

     

    Regards,

     

    Steve