HI
I want to enhance my home server infrastructure with an advance firewall solution based on opnsense, pfsense or ipfire in a virtualized enviorment based on proxmox.
As this would allow my do this in a power and cost effiecent way, while still allow me to utilizing the 10G connection from my home server to my working PC.
To me the virtualized approach based on proxmox is here a good compormise for all aspects...
For this I deployed a test infrastructure to run some benchmarks on my home server (an i9 9900T) - but the results raises some questions.
What suprises me is that from the VM Opnsense but also an ipfire VM the max iperf thorughtput was ~4bit/s but from another linux a tuxedo test VM ~29GBit/s.
The CPU load (8cores where assigned) of the Opnsense and ipfire was still low, so I'm not sure where this limitation comes from?
As another test I used then a ubuntu VM and configured it for IPforward and then also for NAT and suprisingly here the throughput from LAN to WAN was ~20Gbit/s...
Is this really a limitation from opnsense and ipfire?
I read that Opnsense is capable of much higher throughput even when routing between two networks WAN-LAN and not as in my case if they are connected to the same network?
So I'm even not sure if this is actually a proxmox topic but any thoughts are welcome
Many thanks in advance!
best regards
Jochen
I want to enhance my home server infrastructure with an advance firewall solution based on opnsense, pfsense or ipfire in a virtualized enviorment based on proxmox.
As this would allow my do this in a power and cost effiecent way, while still allow me to utilizing the 10G connection from my home server to my working PC.
To me the virtualized approach based on proxmox is here a good compormise for all aspects...
For this I deployed a test infrastructure to run some benchmarks on my home server (an i9 9900T) - but the results raises some questions.
What suprises me is that from the VM Opnsense but also an ipfire VM the max iperf thorughtput was ~4bit/s but from another linux a tuxedo test VM ~29GBit/s.
The CPU load (8cores where assigned) of the Opnsense and ipfire was still low, so I'm not sure where this limitation comes from?
As another test I used then a ubuntu VM and configured it for IPforward and then also for NAT and suprisingly here the throughput from LAN to WAN was ~20Gbit/s...
Is this really a limitation from opnsense and ipfire?
I read that Opnsense is capable of much higher throughput even when routing between two networks WAN-LAN and not as in my case if they are connected to the same network?
So I'm even not sure if this is actually a proxmox topic but any thoughts are welcome
Many thanks in advance!
best regards
Jochen