pfSense vs OPNSense - Fanboy fued or real differences?
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender The VPN started out as a support convenience. Now, my brother and I are thinking of using it to store our backups to each other's server(s). Other than that, I really like the way Mesh Central looks and am going to pop that in as well. I'm actually considering that for our locations here.
Ubiquiti will do VPN really well, too, though.
-
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scottalanmiller said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scottalanmiller said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
pfSense and OPNsense webui is pretty good when it comes to management. What other services were you using with Sophos?
IPS, Spam filtering, https proxy, antivirus. That's about it.
For home?
Yes
Put AV on the desktops, no reason to have it on the network layer.
SPAM filtering should be on the server, not on the IMAP link.
Spam filtering is a real thing to consider. if you're email service doesn't have great spam filtering, consider switching to another one that does.
Right, this should never happen at the firewall level. That means that you get filtered when home, but not when at the store, for example. That's a major weird problem.
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender The VPN started out as a support convenience. Now, my brother and I are thinking of using it to store our backups to each other's server(s). Other than that, I really like the way Mesh Central looks and am going to pop that in as well. I'm actually considering that for our locations here.
OK a static VPN could work for your backup solution... super easy to do with a pair of ER-Ls.
OK, I'll bite....ER-Ls?
EdgeRouter Lite https://www.ubnt.com/edgemax/edgerouter-lite/
-
@coliver said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender The VPN started out as a support convenience. Now, my brother and I are thinking of using it to store our backups to each other's server(s). Other than that, I really like the way Mesh Central looks and am going to pop that in as well. I'm actually considering that for our locations here.
OK a static VPN could work for your backup solution... super easy to do with a pair of ER-Ls.
OK, I'll bite....ER-Ls?
EdgeRouter Lite https://www.ubnt.com/edgemax/edgerouter-lite/
Ah.
-
pfSense or OPNSense makes it easy to setup and manage squid proxy.
-
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
-
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
WUT? How is the hypervisor handicapping the solution?
-
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive. -
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though. -
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
-
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
-
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
I'm hoping that it'll impede momma and kid from being blatantly foolish in their cruising activities.
<<yes, I have attempted to share information about foolish behavior on the internet>>
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.@WrCombs needs that, lol. Your router has 300% the power of his brand new laptop!
-
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.It should not.
-
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
Only if the cache is larger than RAM.
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
I'm hoping that it'll impede momma and kid from being blatantly foolish in their cruising activities.
<<yes, I have attempted to share information about foolish behavior on the internet>>
A cache cannot do that.
-
@scottalanmiller said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
I'm hoping that it'll impede momma and kid from being blatantly foolish in their cruising activities.
<<yes, I have attempted to share information about foolish behavior on the internet>>
A cache cannot do that.
Sorry, proxy
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scottalanmiller said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
I'm hoping that it'll impede momma and kid from being blatantly foolish in their cruising activities.
<<yes, I have attempted to share information about foolish behavior on the internet>>
A cache cannot do that.
Sorry, proxy
That's totally different. A proxy has no benefit from the SSD. A very large cache would, but not a proxy. So back to "what is the purpose?"
-
@scottalanmiller I'm planning to retire an old spinning drive. That's all
-
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@black3dynamite said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Dashrender said in pfSense vs OPNSense - Fanboy fued or real differences?:
@scotth said in pfSense vs OPNSense - Fanboy fued or real differences?:
@Emad-R said in pfSense vs OPNSense - Fanboy fued or real differences?:
They are both great, but when you want to scale you want them on hardware and not VM that will handicap your hypervisor.
When you think about hardware and low power, there are alot of alterantives better than those 2 and cheaper, netgate provides PFsense but for 200$ ad the idea of desktop machine acting as router and using alot of power does not make sense to me.
However pi3 or better makes perfect sense, but guess what neither PFsense or OPN runs on ARM
After my lab, I'm planning to load it up on an HP Elite 8300 SFF i5 quad core with 8 GB RAM and an addin dual Intel NIC. It's what I'm running Sophos on now. I don't experience any issues with this setup.
I picked it up for $100 during a desktop refresh.
EDIT: I'm also planning retire my spinning drive.For home use - a desktop class machine is totally fine.
Not sure an SSD will make any difference in the performance of the firewall though.SSD will help squid proxy cache.
how useful is that in a home network?
I'm hoping that it'll impede momma and kid from being blatantly foolish in their cruising activities.
<<yes, I have attempted to share information about foolish behavior on the internet>>
I'm lost - what does a squid proxy have to do with keeping the kids off the internet - other than possibly it's a webfilter as well as a caching proxy - my original question was about the benefit of SSD - to which the reply was squid proxy cache.. ok that make sense, but how is a proxy cache helpful for most home users - is there really a lot of overlap in a home to make this worth while?