[SOLVED] OPNsense 21.1 on PVE 6.4

As far as I understand OPNsense needs disabled hardware offloading even if you are not virtualizing the NIC so every packets needs to be processed by the CPU and that is bottlenecking the speed.
Would be interested if you have any reference for this as that is not my understanding for either of the *sense firewalls.
 
Would be interested if you have any reference for this as that is not my understanding for either of the *sense firewalls.
Atleast the documentation is recommending to disable every hardware offloading technique so that everything is done by the CPU. And stuff like the intrusion prevention and so on needs to process every single packet so stuff like hardware TCP segmentation offload can't be used.
 
  • Like
Reactions: vesalius
I "solved" the issue, found a workaround, which is not too funny:

As a test, I cloned the well-running VM/OPNsense, added a new netwok-device and got:
=======
bridge 'vmbr5' does not exist
kvm: network script /var/lib/qemu-server/pve-bridge failed with status 512
TASK ERROR: start failed: QEMU exited with code 1
=======

After a reboot of the node, the cloned VM/OPNsense runs again.
 
Last edited:

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!