Which Hardware to Choose For pfsense? Netgate VS Protectli, Qotom, Yanling, etc...

Ғылым және технология

lawrence.video/pfsense
Qotom Router Q750G5
amzn.to/3ElAAqE
Connecting With Us
---------------------------------------------------
+ Hire Us For A Project: lawrencesystems.com/hire-us/
+ Tom Twitter 🐦 / tomlawrencetech
+ Our Web Site www.lawrencesystems.com/
+ Our Forums forums.lawrencesystems.com/
+ Instagram / lawrencesystems
+ Facebook / lawrencesystems
+ GitHub github.com/lawrencesystems/
+ Discord / discord
Lawrence Systems Shirts and Swag
---------------------------------------------------
►👕 lawrence.video/swag
AFFILIATES & REFERRAL LINKS
---------------------------------------------------
Amazon Affiliate Store
🛒 www.amazon.com/shop/lawrences...
UniFi Affiliate Link
🛒 store.ui.com?a_aid=LTS
All Of Our Affiliates that help us out and can get you discounts!
🛒 lawrencesystems.com/partners-...
Gear we use on Kit
🛒 kit.co/lawrencesystems
Use OfferCode LTSERVICES to get 10% off your order at
🛒 lawrence.video/techsupplydirect
Digital Ocean Offer Code
🛒 m.do.co/c/85de8d181725
HostiFi UniFi Cloud Hosting Service
🛒 hostifi.net/?via=lawrencesystems
Protect you privacy with a VPN from Private Internet Access
🛒 www.privateinternetaccess.com...
Patreon
💰 / lawrencesystems
⏱️ Time Stamps ⏱️
00:00 pfsense hardware
02:00 Why Netgate Hardware
03:57 Protectli, Qotom & Other Hardware?
#pfsense #firewall #networking

Пікірлер: 325

  • @rockfreek13
    @rockfreek13 Жыл бұрын

    I’d support Netgate if their devices were even close to reasonably priced. I’m in Australia and paying 1k for 4100 BASE is way too much.

  • @ramosel
    @ramosel Жыл бұрын

    I ran pfSense on old hardware for years... But when I started to move to an "off grid" model at my home in the mountains I looked for low power consumption and reliability. I listened to Tom and bought a Netgate SG-4860. I've never regretted it. I had one problem with the first one and even though it was technically out of warranty, because it was a known issue at Netgate, they replaced it at no charge. That said, for the 9 days I was without my SG-4860 I had to fall back to a plastic box router... not the best scenario. The replacement has been trouble free for years now and I was able to pick up a backup off eBay that is the exact same model and features so I keep it updated and on a shelf - just in case. Couldn't be happier with Netgate products or support.

  • @sharedknowledge6640

    @sharedknowledge6640

    Жыл бұрын

    I also highly recommend the Jetway (a long standing legit company with offices in the US) N3160 box with 4 Intel Gbe ports. It’s rock solid, fanless, plenty fast, and only uses a couple of watts.

  • @RandomTechChannel
    @RandomTechChannel Жыл бұрын

    Another great video Tom! I'm glad to see other channels covering this topic. Keep up the great work!

  • @slip0n0fall
    @slip0n0fall Жыл бұрын

    REALLY appreciate you keeping these PF videos updated and relevant

  • @rjy8960
    @rjy8960 Жыл бұрын

    I started with a Netgate SG3100 about 7 or so years ago. It ran out of steam when I upgraded to 1Gbit WAN at home. I bough an old Dell R210MkII and a 4-port Intel NIC and it's been bombproof. I do keep the SG3100 in the rack as a standby and have the ports of the two Pfsense boxes brought out to a patch so can quite quickly switch between should I need to witch to the Netgate. Not exactly hot-swap, but it will suffice. I also have a Chinese fanless box that runs Pfsense for demonstrations to clients / exhibition use and that has been fine. I have needed support from Netgate and have always been impressed. If I were to implement a mission critical system, it would be based on Netgear hardware.

  • @timalbrecht5120
    @timalbrecht5120 Жыл бұрын

    I just set up pfsense at home on an old Sophos XG105 rev3 box that we had decommissioned. I did upgrade from 2 to 4 GB RAM and so far Im really happy with the performance. That said, if I were to ever deploy pfsense for a business, I would go with Netgate.

  • @PictureStrain
    @PictureStrain Жыл бұрын

    I used to run pfSense, for business use, on old hardware, but, for about 2 years I started to use SuperMicro SuperServer E300-9A-4C model for the main offices. Probably, in the future, I will use NetGate, due to all the great things they are doing. Thank you for your videos and opinions, Tom!

  • @runelarsen3412

    @runelarsen3412

    6 ай бұрын

    😂

  • @gh8447
    @gh8447 Жыл бұрын

    I bought a Netgate 6100 shortly after I started working from home during lock-down (I got the 6100 because I also wanted to experiment with 10G fibre). I'd previously had pfsense virtualised on a ESXi server along with my TrueNAS servers. Whilst that worked flawlessly, anytime I needed to shut down ESXi for whatever reason, I wouldn't have Internet access! The 6100 has been rock-solid.

  • @acerides1724

    @acerides1724

    Жыл бұрын

    I’m eyeing on that too. I now have 5gb and 2gb multi ISP on my house

  • @derekp6636
    @derekp6636 Жыл бұрын

    running on a qotom box myself and had a broken gigabit port for awhile now, been watching for a 2.5gbe version to replace with. you are exactly correct, it is enough for my homelab/home entertainment needs. I have a few simple traffic rules for game servers etc and it does what I need.

  • @steensadolin8749
    @steensadolin8749 Жыл бұрын

    I have used a SG-2100 since it came out and am very pleased. Yes the Netgate hw is not cheap, but it is reliable. I have only had one problem… the last update (23.01) failed but Netgate was very quick to submit an image for me to manually load on the box. So now I can also have an opinion about their service, which is exelent. I will for sure buy another netgate, but understand the people that find it expensive.

  • @antoniom.andersen6704
    @antoniom.andersen6704 Жыл бұрын

    Great vid. I really wanted to run pfSense but the boxes to run it on and the Netgate boxes are costly so I wound up buying a MikroTik router. This is for home use so it fine enough for what I do.

  • @KonjonoAwesome
    @KonjonoAwesome Жыл бұрын

    I've been running pfSense on Supermicro's 1U Atom based servers for years with great results. Started with d525 based systems, then moved to the c2000 and now the c3000 series. Work great and are solid enough for a production environment. I can also buy two of them and put them in fallover for what one Netgate appliance of the same capability would cost. I paid for pfSense Gold for years and also did their paid training when it was offered. I wish both of these things were still an option to support Netgate.

  • @TheWebstaff

    @TheWebstaff

    11 ай бұрын

    Manual was another way I supported them.

  • @wagnerj01
    @wagnerj01 Жыл бұрын

    I purchased 2x Protectli Vault FW4B - 4 Port, Firewalls for my primary residence and a vacation home. I installed one in my primary residence 1st and it would reboot 2-3 times during operational hours. I configured the 2nd one, same mess. Returned to Amazon and purchased 1x Netgate 2100 for primary residence and 1x Netgate 1100 for vacation home. I couldn't be happier. Not a single issue.

  • @James_Knott
    @James_Knott Жыл бұрын

    Initially, I ran pfSense on a refurb HP compact desktop computer. When it died, a couple of years ago, I got a Qotom mini PC, with i5 CPU (including AES-NI) 4 1 Gb Ethernet ports, 4 GB RAM and 32 GB SSD. It runs very well. I agree, however, what's good for a home user might not be good for business use.

  • @zaca211
    @zaca211 Жыл бұрын

    Have about 70 SG1100s in the wild. Absolutely love them. They realistically pull about 500mbps throughput which is still way more then what most of our customers can get through local ISPs. A thought on the Qotom, we deployed a couple of these. They will not turn on after a power failure and need to be manually started. Occasionally get calls about them.

  • @megamaser

    @megamaser

    9 ай бұрын

    The power issue is annoying. I tried walking someone through the process of configuring the bios to auto boot over the phone, and he wasn't exactly thrilled about hooking up the router to a monitor and keyboard. Turns out the bios version was too old and didn't support it. When I told him his options were a bios upgrade or installing a jumper cable to the motherboard, he decided to buy a ups.

  • @echoztrip
    @echoztrip Жыл бұрын

    I've had pfsense running at 100+ locations using PCengines hardware over the last 10-15 years - very reliable, but good to see what is out there

  • @krishnaprasad8978
    @krishnaprasad8978 Жыл бұрын

    Thank you for the post and your insights. Your sharing the knowledge is much appreciated! We deploy our SaaS retail/pos/erp software for small businesses and looking at a network-in-a-box type of solution with bench tested devices so it can be supported quickly. We are in Canada and some our customers are in remooote locations!. We had instances where the DSL goes down in the dead of winter and only option is the LTE failover Would appreciate your input on a couple if use cases 1. Netgate vs Sophos? - know the answer- but a bit of insight would be great 2. Dual firewall deployment for fail over with LTE modem on each 3. Worst case scenario - an additional windows device with cellular LTE to get into the network when everything else fails (we do this currently)

  • @RobertGallop
    @RobertGallop Жыл бұрын

    I had just clicked on order for a 6100 right before this came out. I got nervous maybe I’d messed up. But even though I’m a “home” user, I do work form home 100% of the time, and just like the “always works” nature of the netgate devices. I have a 3100 now, but will be getting > 1GB internet, I almost went 4100 for the 2.5, but thought maybe, someday I’ll have even faster internet, and these things are not cheap! So buy once cry once, hopefully I get a good 5-10 years out of this one, and will leave my 3100 around as a backup device just in case. Thanks for the videos!

  • @charleswp71
    @charleswp71 Жыл бұрын

    Been running pfsense on a HP SFF PC for over 6 years, works great and has never once crashed, trying to my company to add netgate appliances in our product stack we offer.

  • @Calauu
    @Calauu Жыл бұрын

    I use also PCEngines APU 4D4 as hardware for pfSense and I have tens of boxes and no one of them broke, and previously I was using PCEngines ALIX and I still have some in production after more than 10 years. If the performance fit’s the purpose I recommend them as really reliable hardware.

  • @nickcalladine
    @nickcalladine11 ай бұрын

    Great technical insight from a person who is unbiasted honesty review and allowing someone like me making a entry level a generalised understanding, but does not have a everyday hands of use and real time / long term view of what works and what doesnt, espscially who hasnt got the biggest bank balance :( Would like the latest bells and whistles top end reviewed hardware being reviewed.. but in reality cant afford or scared that I will screw it up as a first step on the ladder approach / dip my toe in aproach rather than being overwhealmed with information overload / the "real life" or "my scenario" platform rather than just sighing and then giving up! Tech by "real tech people" explained in simplistic short bites and layman terms :) Great Stuff. Thank you and keep doing what you are doing !

  • @Juncti
    @Juncti Жыл бұрын

    We actually just went with a Netgate 6100. Haven't installed it yet since we're waiting on a fiber install, but hoping it'll be a good workhorse for many years to come. Probably would have been fine with the 4100, but since we tend to run equipment for a long time once installed I figured I'd get the next model up to give us a little more room to grow in the future as well as perform great now. Once we get that up and running I'll need to deep dive your tailscale videos to get that integrated as well. Just installed a pair of Unifi AP6 Pros. Basically doing a full network overhaul this year. Only thing I've yet to decide on is new switches, and possibly a new network card for the on-premises server. I've been deep diving your videos which have helped a lot so far in deciding on a solid network backbone. Being a non-profit we don't get much budget to work with, so when I do get the approval to upgrade something I have to make sure it's something that can last a good while.

  • @elliotzorn

    @elliotzorn

    Жыл бұрын

    Highly recommend the unifi switches, best bang for your buck and you can actually buy them today!

  • @Juncti

    @Juncti

    Жыл бұрын

    @@elliotzorn Any specific model? I've got a pair of 24 port old netgears which have done the job but sorely need to get replaced. I'm thinking something with a fiber port to match the Netgate 6100, I'm thinking of getting a fiber switch to help the traffic move between switches. One on one floor, one on the other so each floor gets a high speed backbone.

  • @ravenseyeimages
    @ravenseyeimages Жыл бұрын

    Informative video, I switched last year from wireless ISP to gigabit fibre and am considering putting a pfsense appliance in place of the ISP supplied router so I can move my IOT devices etc. onto VLAN, implement a good firewall etc. With my wireless ISP I always used a dd-wrt router, with a couple of my older dd-wrt routers set up as access points and wireless bridge access points. I did not get as far as setting up vlans or subnets for guest networks, IOT devices etc. I'm a database guy though, not a network guy, so my knowledge of all things network is rudimentary. Is pfsense worth my while or can I accomplish the same thing with dd-wrt equipped routers?

  • @viaujoc
    @viaujoc Жыл бұрын

    The Protectli or Qotom appliances are using consumer grade components, Celeron and Intel I-series CPUs as an example. The Netgate mid and high-end appliances are equipped with Atom C-Series and Xeon processor which are designed for the server market that are supposed to provide higher reliability and lifespan. Given all that, I think that Netgate appliances are the logical choice for any commercial or production scenario. The hard part is usually to convince the client that the extra few hundred dollars spent on the Netgate appliance will be a sound investment and avoid many other costs of maintenance, repair and remplacement down the line.

  • @NORULERUST
    @NORULERUST Жыл бұрын

    Great video lad, do you know how to connect pf sense to a ubuntu server and route traffic through it for a game server ? Using wireguard or any alternative you think would be good. Thanks for the video .😃

  • @viaujoc
    @viaujoc Жыл бұрын

    For my home, I use a pcEngine APU2. Performance wise, it ranks somewhere between the Netgate 2100 and 4100, but at a significant lower cost for me (I am located in Canada). The BIOS is open source and can be updated from pfSense (in CLI). Interestingly, the APU2/APU4 used to be sold by Netgate as an official supported appliance, before Netgate started developing their own.

  • @johaneliasson5185

    @johaneliasson5185

    Жыл бұрын

    I agree on that PC Engines is a good choise for home-use. I am on my second device, using them for the last 8 years. Stable, low cost, good documentation

  • @stephenxs8354

    @stephenxs8354

    Жыл бұрын

    Bios is overlooked especially since its a security device but yet all of these unverified motherboards we have no issue with.

  • @DMStern

    @DMStern

    Жыл бұрын

    Protectli also offers Coreboot as a firmware option for most of their devices, which is IMO a good reason to buy from them instead of sourcing the OEM hardware from Aliexpress or wherever. The big question about PC Engines is what happens once they can no longer source the AMD SoC they're using. According to what info I could find on the net, the last order date is 2023Q4, and last shipment date 2024Q2. Since the company refuses to use any newer x86 devices because of integrated security features that require closed firmware, I don't know if there's any future for them once they run out of stock. Maybe there's some ARM or RISC-V device that fills their requirements for open source?

  • @Martimus98
    @Martimus98 Жыл бұрын

    I'm still running pfSense on an old Check Point T180 firewall. It's big and clunky but works just fine! 👍

  • @mrsalamander9246
    @mrsalamander9246 Жыл бұрын

    It was because of you that I purchased netgate 6100 for home use!

  • @keetam_worth82
    @keetam_worth82 Жыл бұрын

    I have been using for home networking a device virtually identical to the one in the video (except for the motherboard whose brand is not easy to figure out, but same CPU and same NICs) for two years and everything works perfectly at gigabit bandwidth with 5 vLan and quite a lot of stuff going on. Fingers crossed.

  • @Shadow_Banned_Conservative
    @Shadow_Banned_Conservative10 ай бұрын

    I've had good luck running my own hardware. I started out with a HP thin client T-620, moved to a T-630, and currently on a Lenovo M720q tiny, 1L PC with an I3-8300T and 8gb of memory along with a 4 port Intel i-350 NIC. All have been rock solid, and pretty low power consuming devices.

  • @theflyingjapman5771

    @theflyingjapman5771

    7 ай бұрын

    I currently have a T630 as a learning device for me. Will it be noob friendly to setup pfsense and hopefully replace my ISP router.?

  • @Shadow_Banned_Conservative

    @Shadow_Banned_Conservative

    7 ай бұрын

    @@theflyingjapman5771Yeah, it should be fine. Both the T620 and T630 worked well for me, especially if you just want to use the firewall and don't plan to install tons of add-on tools. I only ran OpenVPN on my setup and several firewall rules along with four separate networks and it was perfectly fine, pfsense picked up the internal network interface without issue. The T630 is a little more powerful than the T620, but I IIRC, uses about 50% more power, still not a lot but it does use more power than your router. I think the T620 was around 12w average load and the T630 was around 19w IIRC. These little machines are more powerful that most people realize. I ran Windows 10 and we browsers on the living room TV on the T620 before I turned it into the pfsense appliance. I wasn't lightning fast, but it was usable for basic web browsing.

  • @alsinclaire
    @alsinclaire Жыл бұрын

    Thank you for the link to the Qotom! Finding a budget friendly router that has 2.5G ports to go with my 2.5G Fiber to the home has been difficult. Now I just need to decide on a new WAP. =)

  • @spexpl
    @spexpl Жыл бұрын

    I at home use the HP 620 Plus terminal, as a router (after adding 4 NICs). And it's a nice budget option for the home.

  • @jaycahow4667
    @jaycahow4667 Жыл бұрын

    Running Pfsense 2.7 Beta on a Hunsn RJ03 N5125 box since early Nov 2022 with no problems at all. I did add a 40mm internal fan to keep things cooler as it come fanless....................

  • @philipcheung2669
    @philipcheung2669 Жыл бұрын

    A lot of people haven't had the experience of being on the pressure tip (lucky for them), or 'having got away with it' - once you've had that experience you will truly understand the value of absolute reliability and the peace of mind it gives you, and be able to face the 'what if' situations. With that said, I personally deployed an IPFire system with just off the shelf computer hardware - I know what brand of hardware I can trust and the system has been running for 2 years without a glitch. Although I have to say it comes with a price, many sleepless nights and tears....

  • @slipknottin
    @slipknottin Жыл бұрын

    I’ve been running pfsense on a R210 for a couple years but I’ve been considering getting something more efficient. But I really want to keep it rackmounted, rather than sitting on top of something, the shelf I have is already full of other devices and my rack doesn’t have much more room

  • @ThisIsNotMyHandle
    @ThisIsNotMyHandle Жыл бұрын

    I use a PC Engines APU 3D4 and it's been serving me great. It handles A LOT of traffic.

  • @waretechnologies6845
    @waretechnologies6845 Жыл бұрын

    Very well said. I've deployed a few Protecli devices with pFSense out in the field to customers, and have not had a failure yet. You make solid points for why Netgate appliances should be supported. I understand this wasn't meant to sway people one way or another, but good discussion.

  • @IndianaDiy

    @IndianaDiy

    Жыл бұрын

    What is good Protectli for a small home office with Fiber internet? I’m looking at buying one but not sure if I need one with a powerful processor.

  • @michaeldoll

    @michaeldoll

    Жыл бұрын

    @@IndianaDiy Protectli VP2420

  • @IndianaDiy

    @IndianaDiy

    Жыл бұрын

    @@michaeldoll Thanks, I was also looking at the VP2410 after reading your reply.

  • @dabneyoffermein595

    @dabneyoffermein595

    5 ай бұрын

    oh gosh , same here, i'm wondering if the protectli should be replaced, what do you think? and if I replace it, what would you say would be a good unit to replace it? Small company w/5 to 10 users

  • @AlanDike
    @AlanDike Жыл бұрын

    I have a qotom box here, same one you bought... I needed a "cheap box" to run on and didn't have a spare to run with. Its a j4125 proc, 8gb ram, and 400gb ssd. So far, can't really complain. Seeing low CPU usage, low temps, low ish ram usage (still under 20%). Intel i225 v3 nics. Seeing full available bandwidth through it, love having the 5 nics... next one will probably be netgate

  • @bassbacke
    @bassbacke Жыл бұрын

    Bought an HSIPC New J4125 Quad Core Firewall Micro Appliance in March 2022 triggered by your fine reporting on pfSense. Thanks for that! I replaced the pre-installed pfSense SSD with a new and bigger SSD (also better quality). Works great with pfSense 2.6.0-RELEASE (amd64). It's mainly for my home use. Serial console interface also works fine. Can recommend it.

  • @keylanoslokj1806

    @keylanoslokj1806

    7 ай бұрын

    So is that like a mini computer acting as a firewall? Can we find it on Amazon for those that live in eastern Europe?

  • @bassbacke

    @bassbacke

    7 ай бұрын

    @@keylanoslokj1806 A mini PC with 4 ethernet interfaces. I bought mine from Amazon Germany. However, it's a chinese product and devices like that should be also available in eastern Europe. Best of luck.

  • @lightingman117
    @lightingman117 Жыл бұрын

    Love the new intro!

  • @pjohnson21211
    @pjohnson21211 Жыл бұрын

    I've been using one or another of the inexpensive Aliexpress boxes for years now. They work just fine for my home needs. But for a commercial install I think you can make an excellent case to deploy a Netgate sourced and supported hardware

  • @denniskluytmans

    @denniskluytmans

    Жыл бұрын

    Care to share which on you got bro? I am searching one which is 1Gb/s compatible and not breaks the bank

  • @alexanderschwaighofer1550

    @alexanderschwaighofer1550

    Жыл бұрын

    @@denniskluytmans Most likely one of the "Topton 2.5Gb Intel I226-V Router" Boxes with 4 / 6 ETH-Ports I'd assume. But be warned that the NIC I226-V is only supported by pfSense CE 2.7.0 and onwards or pfSense Plus 22.05 and onwards!

  • @pjohnson21211

    @pjohnson21211

    Жыл бұрын

    @@denniskluytmans mines too old for you to purchase the same....at least 2018 vintage specs: Celeron 3855U 6x Intel Ethernet Controller I211 gigE NICs 4GB RAM 32GB industrial m.2 chose this one for price, AES-NI and 6 NICs

  • @KikiNation1
    @KikiNation111 ай бұрын

    Have never used Pfsense or Netgates as I have always stuck to the enterprise stuff like Sonicwall, FortiGate, etc. But, I’m going to try this for a client who cannot pay the higher prices. Seems like a decent option.

  • @ersterhernd
    @ersterhernd Жыл бұрын

    Thin MiniITX Intel motherboard from 2012, i5-3470T, 8GB DDR3 and an Intel i340-T4. Quiet, efficient and cheap. Running 24/7 since 2018. Love PFSense.

  • @satamototo
    @satamototo Жыл бұрын

    Good to know about the low quality failures, thanks a lot. I usually use wide spread brand SFF PC with Haswell + CPU and Intel card.

  • @therealb888

    @therealb888

    Жыл бұрын

    Which one are you using? Could you recommend me a few deals?.

  • @satamototo

    @satamototo

    Жыл бұрын

    @@therealb888 Brand PC from Fujitsu, Dell, Lenovo or HP with i5-4570 or newer. All these are good, cheap and the second hand market is flooded with them. Plenty of performance even for 3 x 1gbps multiwan with zenarmor for 1000+ devices.

  • @sharedknowledge6640
    @sharedknowledge6640 Жыл бұрын

    I’ve had great luck with Jetway fanless boards and prepackaged bare bones units. For example the Jetway HBJC430U941 is a tiny fanless Intel N3160 with 4 Intel Gbe ports. It only draws a few watts, no fan, nice aluminum heat sink enclosure, M.2 SSD slot, and is from a real company that’s been around a long time, has offices in the USA, and even a phone number you can call. Their products are not no-name sketchy scary Amazon Chinese junk like several of the products you mentioned. In many ways it rivals the $600+ Netgate products. I paid $279 for mine and it’s been flawless for 3+ years now.

  • @edwinrosales6322
    @edwinrosales6322 Жыл бұрын

    Thanks Tom, great video!

  • @Cold417
    @Cold417 Жыл бұрын

    The great thing about those Protectli's is that when they die you can just pop the SSD into a working model and be good to go again easily.

  • @nishantsrivastava4373
    @nishantsrivastava4373 Жыл бұрын

    Well said. I've never used any of those chassis but they are very interesting specially for low power use. I may get one for my internal isolated network. It's been Supermicro Embedded for me all the way. Started from early Atoms and now Xeon based for muti-gig WAN. Never encountered a single h/w failure with over a decade of use. I think Netgate uses similar/same branded motherboards.

  • @michaelkeys1453

    @michaelkeys1453

    10 ай бұрын

    which Supermicro board are you currently using?

  • @nishantsrivastava4373

    @nishantsrivastava4373

    10 ай бұрын

    @@michaelkeys1453 I'm currently using SYS-E300-9D-4CN8TP. Perfect for multi-gigabit WAN/LAN. In the past I've used Atom D525/C2750/C3758 based boards.

  • @DerdOn0ner
    @DerdOn0ner Жыл бұрын

    0:23 heck yeah, guess I am going to have to start with pfsense now too 🎉

  • @scholziallvideo
    @scholziallvideo Жыл бұрын

    hi, perfect video. i use like intel nuc with 2 network cards. All other is based on VLAN. Have first Sophos UTM then Sophos XG. Then PFSENSE and at the Moment OPNSENSE works fine.

  • @Kanthon
    @Kanthon Жыл бұрын

    I’ve got a zimaboard that I’m probably going to try pfsense on. Right now I’m running a 1U server and I can hear it everywhere in the house.

  • @KennethPadgett
    @KennethPadgett Жыл бұрын

    Did you try new CMOS battery on those failed boards? 4-5 years is right about when we see those cr2032 batteries fail and have had devices stop booting because of bad batteries.

  • @mikelieberman6924
    @mikelieberman6924 Жыл бұрын

    I have a third party unit as I am in the Philippines. I note that the black case with fins runs hot, car too hos, even thought the dashboad says 27.9C I don't believe that for a moment. I have a fan on order and will run it against the finds to see if I can cool the unit off a fair bit. My best guess is the failures are heat related.

  • @tommajor2940
    @tommajor2940 Жыл бұрын

    For a home lab, if you don't need more than a couple of network interfaces and don't want to spend a lot of money might I suggest a mini pc. Here's one that I bought but have not had a chance to load any software yet: MINISFORUM Mini PC AMD 7th Gen A4-9120 APU It comes with memory and storage and runs Windows 10 Pro so hopefully it should work. Based on "Explaining Computer's" recent review of a $100 mini pc, I also suggest that you load PFSense on a USB 3.0 flash drive. He seemed to get better writes and reads with the USB 3.0 drive when testing the various storage options.

  • @tommajor2940

    @tommajor2940

    Жыл бұрын

    I decided to setup my mini pc today with the latest version of PFSense. After setting up a very basic two NIC system, I ran IPerf from LAN to WAN and achieved 941 MB through put. CPU only registered about 17%-21% during the data transfer then it went back to 1% when complete. Win 10 Pro, 4 GB of RAM, and 64 GB eMMC. For $110 bucks and some change, not bad...

  • @JasonsLabVideos
    @JasonsLabVideos Жыл бұрын

    I love running pfsense on the R85s box with the 3 x 2.5gbe nics..

  • @andymok7945
    @andymok7945 Жыл бұрын

    My first pfSense usage was done on the Netgate 2440 and ran it that way for 4 years. Then I switched to a segmented network and then my design needed more ports and such. I bought a Qotom 6 NIC port brick for my new setup. It has been running great for 4 years now. This is a home setup and to buy an equivalent unit from Netgate was just not financially possible. I still have the SG-2440 unit and it still works. I use it for testing and is a well built unit.

  • @TumescentPuma

    @TumescentPuma

    Жыл бұрын

    The SG-2440 is a great little appliance. I still have one as a backup and it chugs along when I go to use it.

  • @PatientXero607
    @PatientXero607 Жыл бұрын

    A bit overkill, but I built an mATX router with an ASRock Rack Xeon D-1541 motherboard. Dual X540 10Gbit NIC's. Though my ISP doesn't offer 10Gbit service, they use the 10Gbit port on their L2 device for 2.5 Gbps fiber service. I'd good for years to come.

  • @mikescott4008
    @mikescott4008 Жыл бұрын

    What's Broadcom support, is that "meh" too? I've got Intel on my Pondesk unit and Broadcom on my R220. I'd be interested in Negate hardware if the UK partner responded, so given up there tbh. I'm on my second Pondesk unit within 3 years. First network card port died, they replaced it, but still a failure. What about Dell PowerEdge or HPE ProLiant hardware for bigger installs? Look forward to the additional content as ever.

  • @YeOldeTraveller
    @YeOldeTraveller Жыл бұрын

    Currently running pfSense on a Protectli FW6C from a few years ago. This is working great, but the 1 GbE speed is limiting within my home network. I am planning to upgrade to 10 GbE at the router, and it is hard to find a new box with the same port options without getting very close to the cost of the Netgate option. There is also the value in not having to put it together yourself. You do not get exactly the same processor, memory, and storage as you might want; but the solution will work or they will make it work.

  • @nws-qk9pj

    @nws-qk9pj

    Жыл бұрын

    Protectli is supposedly working in 10GbE models. The CEO mentioned it about 8 months ago.

  • @diavuno3835
    @diavuno3835 Жыл бұрын

    Another great video! I thank you and give you a comment to help the algorithm.

  • @heykenthay
    @heykenthay Жыл бұрын

    So many sites argue which network card is the one to get, with your experience which Intel network card would you recommend for a 2.5 g x 2 and a 1g x 2 card? Siding for the more budge conscience.

  • @erickalcala7649
    @erickalcala7649 Жыл бұрын

    Hi Tom, Great Video! can you do a video like this one but for BitWarden Hardware? I guess not all of us have a server to virtualize. Or maybe a video of Cheaper hardware to have home for using BitWarden and Pfsense

  • @mal798
    @mal798 Жыл бұрын

    As a home user running pfsense, I'm finding it really hard to see a reason to move away from a VM on an old SFF PC stuffed in the top of a cupboard. It runs cool and reliable, it's cheap, I can adjust the resources for optimal performance, and it's easily backed up. The only reason I would move to a dedicated hardware would be if it was smaller, ran cool, and was reliable. It sounds like the official lower end netgate boxes run hot, and the aliexpess black boxes don't last.

  • @yeah_nahcunt1057
    @yeah_nahcunt1057 Жыл бұрын

    Whats your thought's running PfSense off cheap Lenovo Tinys or Dell Thinkcentres with addition NIC addons that one can install to the PCIE ?

  • @a9503128
    @a9503128 Жыл бұрын

    Tried but there was no stock of Netgear in my country but Amazon had a Protectli on next day. Route at Gigabit shouldn’t be confused with firewall’ing and features at Gigabit.

  • @GrandpasPlace
    @GrandpasPlace11 күн бұрын

    On the chinese boxes, have you ever put a sim card in one and configured the 4G/5G connection as a backup to the primary internet connection?

  • @baconsledge
    @baconsledge5 ай бұрын

    Does it make any sense to use pfSense at home when the hardware costs mount so quickly compared to off the shelf routers? Still trying to get a handle on this.

  • @wildfrogconsulting5204
    @wildfrogconsulting5204 Жыл бұрын

    Tom> You mentioned that you keep spare Netgate boxes on-hand as a just-in-case. Is Lawrence Systems a Netgate partner? Because last I knew, Netgate’s warranty applied only to the original purchaser. How are you handling this?

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    Жыл бұрын

    The spares we have are for our clients that we have installed them for and that we have as part of our managed contract.

  • @alanb76
    @alanb76 Жыл бұрын

    I'd like to get started with pfSense and was wondering what reasonably priced dedicated (Netgate?) hardware would be a good match for a cable modem system at home with a few users and a small business. Current cable modems have 2.5 Gbit Ethernet interfaces and the download speeds are approaching or slightly exceeding 1 Gigabit at this time. Or there is AT&T fiber at 1 Gbit nearby as well. It would seem that the lower end boxes might bog down the network, but what is the practical balance here? Network speeds creep up so over the life of the box it might see more bandwidth, or become a bigger bottleneck if not appropriately chosen. Thanks in advance for any comments or suggestions.

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    Жыл бұрын

    The 6100 would be great

  • @LubomirGeorgiev
    @LubomirGeorgiev Жыл бұрын

    Is it possible these protectli boxes have the bad intel CPU with the bug? We had several Synology NAS that failed due to that

  • @gerardlunow567
    @gerardlunow567 Жыл бұрын

    We have a tax business and thus during tax season it needs to be working. I bought Netgate 2100's for both business and home. If the business one fails I have the home one to replace it with and be back up in 30 min. I have a Dell 7010 as a backup as well. I am so appreciative of Netgate to put up the best documentation you can get. Having not to pay for VPN is worth the price. (OK I run VPN of my Synology's) It is not about the cheapest way to go but the right way. I think that is missing today. Go to the people that provided you with pfSense without charge, and be loyal to them.

  • @Muzzup
    @Muzzup6 ай бұрын

    My Netgate 6100 is very awesome , I highly recommended it if it fits your budget and needs. No affiliation

  • @vincei4252
    @vincei4252 Жыл бұрын

    I work from home 100% of the time. If I'm disconnected from the office for even 30 minutes that's a problem. Despite the price I would pick something that is known to be reliable.

  • @H-RutherfordHill
    @H-RutherfordHill10 ай бұрын

    For some reason, a Netgate I have deployed, loses it's WAN connection when the ISP changes the IP address. The WAN port won't grab the new IP. So you have to manually renew the IP. Very frustrating.

  • @gerhardpet1
    @gerhardpet1 Жыл бұрын

    Does Netgate have built-in wifi so that the appliance can to be a WiFi AP? Or what is a good option to make the Netgate an WiFi AP?

  • @philh7474
    @philh7474 Жыл бұрын

    Former Netgate SG-2220 user here. It failed about two years after deployment in a home power user environment. Board inspection didn't show anything unusual. Bought a FW2B (running pfSense 2.6, with Snort and pfBlocker) and it's been stable for over two years now. I did place a USB fan on top of it to get the temps down, hoping cooler temps will extend life. Recommendations back then steered me to Protectli which was around the time the SG-2100 came out. Will put Netgate hardware back in the mix if the FW2B gives out.

  • @WebeloZappBrannigan

    @WebeloZappBrannigan

    Жыл бұрын

    Perhaps your SG-2220 fell victim to the AVR54 bug that plagued the first batch of Atom 2000 series CPUs. I'm pretty sure that's what killed my RCC-VE 2440. Did it fail after a power outage or reboot?

  • @DeriuzM
    @DeriuzM Жыл бұрын

    Hi Lawrenece, your Qotom box, is it only pfSense running in that box or? what's the specs of your qotom box?

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    Жыл бұрын

    Qotom Router Q750G5 amzn.to/3ElAAqE

  • @tupui
    @tupui Жыл бұрын

    An an FOSS developer, I also wanted to buy Netgate. But in EU it's as you said either very hard or very expensive... Same with Qotom, hard to find. I had little choice to go to a Protectli box. So far so good, but I don't like that and wished Netgate had a better story for EU. (It's a similar story for Supermicro btw)

  • @a.g8517

    @a.g8517

    Жыл бұрын

    QOTOM on aliexpress for $152

  • @marcogenovesi8570

    @marcogenovesi8570

    Жыл бұрын

    EU is OPNSense's area

  • @SB-qm5wg
    @SB-qm5wg Жыл бұрын

    I'm glad to see the pfsense/Netgate team being profitable but for home usage, the Netgate line is above my price-point for tinkering.

  • @krisdphillips

    @krisdphillips

    Жыл бұрын

    Netgear, huh? /s

  • @williamp6800

    @williamp6800

    Жыл бұрын

    Netgate, not Netgear.

  • @SB-qm5wg

    @SB-qm5wg

    Жыл бұрын

    @@williamp6800 TY. Typo fixed.

  • @techdad6135
    @techdad6135 Жыл бұрын

    I just received my Qotom Router Q750G5 and have pfSense loaded on it. I noticed that when a power failure happens the unit does not power back on automatically. I was wondering if you knew how to get the system to boot up when power is restored?

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    Жыл бұрын

    You set that in the bios power settings.

  • @linuxpc4me555
    @linuxpc4me5558 ай бұрын

    Off topic I think but,,,,,, you mention you have manyPfSense boxes deployed…. How are theyall managed? Is there a cloud based central site? Do you remote into each individually if needed? Most of mine have dynamic public IP’s so I rely on a pc in the local net to access which is really not good. Can you talk about remote mgt?

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    8 ай бұрын

    Managed individually and we have remote access to all our customers

  • @captainfartolini4335
    @captainfartolini433510 ай бұрын

    what about the failure modes of the infamous and ovepriced sg4860 from your friends at netgate?

  • @ejayosboldstone940
    @ejayosboldstone940 Жыл бұрын

    Hey tom try and clean the thermal paste off those mobo's one of the CPUs looked like the die was cracked

  • @pierrelambert446
    @pierrelambert44611 ай бұрын

    My 3gb fiber link provide only a 10gbase-t connection. Netgate don’t have this port. I guess I will have to do my own build.

  • @tylerstolsmark9662
    @tylerstolsmark9662 Жыл бұрын

    Oh man I was looking for this exact video last week. My protectli comes tomorrow 😢

  • @bmbiz

    @bmbiz

    Жыл бұрын

    Don't read too much into it. It's all anecdotal data. Read all the comments here about people having good experiences with their Protectli's and you'll feel better. (I have one but haven't been running it long enough to comment on long term reliability.)

  • @rpsmith

    @rpsmith

    Жыл бұрын

    I would be willing to bet if you have any problems with your new Protectli hardware, a simple phone call to their U.S. support folks will take care of it! I've only had one intermittent one and they happily replaced it out of warranty!

  • @thepcenthusiastchannel2300
    @thepcenthusiastchannel2300 Жыл бұрын

    I don't know. I used an Asus B550 Tuf Matx motherboard with a Realtek 2.5GBE Nic (Ryzen 7 5700G CPU). I then used a DELL Broadcom BCM57810S 10GB Dual Port SFP+ PCI-E Adapter and an Intel X550 T2 Dual 10GBE Nic in the available PCIe slots. All I had to do was read the forums to get the driver packages that worked best with pfsense 2.6.0 (still running it) for the Realtek and the Broadcom chips and I installed those packages. Voila, every card works perfectly. So while the Intel adapters tend to work right out of the box, the others can be made to work if you're willing to learn a little FreeBSD.

  • @Xxmeca421xX
    @Xxmeca421xX4 ай бұрын

    This will be great for my home security which has been penetrated by virus called back orifice. I suspect it was from my neighbor who is a retired network engineer so I still need a way to protect Bluetooth devices since he lives in range

  • @carloosgongora1701
    @carloosgongora1701 Жыл бұрын

    for home I prefer Size and I choose the IKOOLCORE R1 .. with 4 2.5gb. lan. network. mini PC 👍🏻

  • @rpsmith

    @rpsmith

    Жыл бұрын

    I Just ordered one for traveling. How are you getting along with yours?

  • @BorisJohnsonMayor
    @BorisJohnsonMayor Жыл бұрын

    I was about to splurge on a Protectli FW6D but now I am skeptical considering the hardware failures people are talking about. I currently have a Netgate 2100 but want more power and physically isolated network ports (rather than their switch based configuration). The next one up is the 4100 but these have the same number of ports as the 2100 (same with the 6100).

  • @bmbiz

    @bmbiz

    Жыл бұрын

    That Twitter thread is pretty meaningless. For all we know there are 100 satisfied Protectli users for every one that complained. People with problems are a much more vocal lot than those without. Not saying there's nothing there, just that it's hardly scientific. On the flip side, on this page here I'm seeing a lot of people saying they've good results with their Protecli's. Without hard data, who can tell either way? :)

  • @red94mr28

    @red94mr28

    Жыл бұрын

    @@bmbiz "People with problems are a much more vocal lot than those without" Totally agree. And not specifically with pfSense boxes but with any product.

  • @rpsmith

    @rpsmith

    Жыл бұрын

    I have deployed over a dozen Protectli firewalls over the years and only had one that gave me any problems and they replaced it even though it was out of warranty! They are a great U.S. company with tech support you can easily reach with a simple phone call!

  • @JohnPMiller
    @JohnPMiller Жыл бұрын

    Any idea when 4-port boxes based on Intel N95, N100 or N200 will show up? N5105 has been out a while, and I'd rather get the latest. I used to use pfSense when it had 32-bit support.

  • @klauslee7704

    @klauslee7704

    Жыл бұрын

    Now Aamzon has N100 firewall , you can search on it

  • @1111000ANGEL0001111
    @1111000ANGEL0001111 Жыл бұрын

    Fiber Optic ports or SFP port on any of these mini pc's or have the builders forgotten to do this knowing that internet speed are moving away from slow speeds anyone got any suggestions on this for builds you can make yourself ? or will you be making a diy video on this ?

  • @subynut
    @subynut Жыл бұрын

    That would explain why my pfSense experience has been hit and miss. Running it on hardware I had laying around. Sometimes they work great, other times… not so much. Thanks for sharing your thoughts on pfSense on other systems. I think I’m gonna put a Netgate powered pfSense box in the budget and get a unit designed for pfSense and just have something that just works right out of the box. Should get rid of some of my home networking quirks and issues.😂

  • @afrosheenix

    @afrosheenix

    7 ай бұрын

    Protectli has been a rock solid low cost option for me, but the two port model is too weak to support gigabit WAN. If you're going that route, plan ahead and get something with more horsepower.

  • @afrosheenix

    @afrosheenix

    7 ай бұрын

    Lol I jinxed myself. The msata drive died last night and I woke up to chaos.

  • @subynut

    @subynut

    7 ай бұрын

    @@afrosheenix oh no!!

  • @EmilePolka
    @EmilePolka Жыл бұрын

    repurposing those supposedly free hardware from Sophos is also a good option. we actually received those hardware for free several times already hoping the company use them but we just didnt bother and one day we actually just used it as a spare hardware just in case shit happens so I plop out the SATA DOM and inside the unit and install a serial console install of pfsense, and whoala works great.

  • @Alophind
    @Alophind6 ай бұрын

    Hi Lawrence , I have the Qotom router , should I install pfsense directly on the hardware or first put proxmox on it and than install pfsense as VM on it ?

  • @LAWRENCESYSTEMS

    @LAWRENCESYSTEMS

    6 ай бұрын

    kzread.info/dash/bejne/k39_ltGjlM7RY7A.html

  • @JPEaglesandKatz
    @JPEaglesandKatz Жыл бұрын

    I have one of these Chinese boxes.. Cooling is a big problem.. If CPU goes over 20%, temperature goes over 70% and it will get higher up till 90... Blowing a simple fan over it will solve the problem but they definitely need some cooling attention...

  • @Im_Ninooo
    @Im_Ninooo Жыл бұрын

    I live in Brazil and the prices here aren't just "substantially higher".. they're *ridiculous* . I'm talking full gaming PC pricing. it's just not an option for any home user that's not making more than 10x the minimum wage. even these "cheaper" alternatives still end up being quite expensive (just not as much) after all the import taxes and what not. I've been trying to build an efficient pfSense box for years now but I just can't find affordable enough hardware to justify it. and forget using old hardware because the power bill here can also get pretty expensive if the hardware isn't efficient.

  • @maxpuissant2
    @maxpuissant2 Жыл бұрын

    Looking to install this in a industrial panel with only 24V alimentation, any idea if there is compatible devices?

  • @viaujoc

    @viaujoc

    Жыл бұрын

    Most of small form factor firewall appliances, including Netgate 1100 to 6100 are using 12V DC input. If you can install a 24V to 12V DC transformer in your industrial panel, you will be able to power them. The Netgate appliances are using a threaded connector which is hard to find, you may need to cut the cable with the threaded connector from the original AC/DC power brick and connect is to the 12V output of your transformer. Maybe you can also find who is selling a non working Netgate power supply for cheap and salvage the DC cable with the threaded connector. I am not sure about this one... I bet a standard barrel connector like 5.5mm OD/2.5mm ID (which is much easier to find) may also work to power a Netgate 2100 to 6100. You would just loose the additional safety provided by the threaded connector. If your industrial panel is locked an not subject to a lot of vibration, it should not be a big problem. The Netgate 1100 is using a standard barrel 2.1mm x 5.5mm which can also be powered by a PoE+ splitter if you have that kind of network infrastructure... I have used that method to power a PBX and a building automation controller, it works perfectly.

  • @RD4888
    @RD4888 Жыл бұрын

    Can I include pfsense on my window 11 PC and use them on the same PC

  • @cheako91155
    @cheako91155 Жыл бұрын

    Is there something wrong with the Espressobin?

  • @NonyaDamnbusiness
    @NonyaDamnbusiness Жыл бұрын

    Weird. My Protectli Vault 4-port w/8GB RAM and 256GB mSATA (both of which I installed) has been running fine since March 2019. You bought yours in 2018 so maybe there was a batch of defective/badly-engineered boards that Protectli was using back then but isn't any longer? I ran pfSense on it at first but now it's been running Untangle/Arista for the last 3 years just fine...well, when Arista isn't pushing out updates that wind up routing all traffic over your VPN tunnels instead of out the regular WAN interface that is. Yeah, that was a fun few days...not. They did quickly release a patch update to fix it though.

Келесі