@mhka
Hey, I seem to recall that you were playing with a 10Gbit/s firewall some time ago. Since I now have an upgraded Internet connection which is ~2Gbit/s (way more than what I really need... but... :-) ), so I'm considering getting some hardware which can do 2-10Gbit/s.

Did the hardware you had work OK, and did you generally learn anything to be aware of?

PS. I'm just planning on running a standard FreeBSD install with pf, as that's by far the simplest/most reliable for me.

@simonlbn
Just a fyi, I haven't gone full 10gig on my firewall, but I am using this:
https://flyovercountry.social/@encthenet/110895206283732462

I have plenty of CPU time, but I also haven't done a pps test, but you rarely see small packets on modern Internet connections these days.

This setup would easily handle a 2gig connection.

@mhka

John-Mark Gurney (@[email protected])

@[email protected] It's a HP EliteDesk 705 G2 SFF (~$40 ebay, ~$120 newegg). CPU AMD PRO A10-8750B @ 3.6 GHz and 8GB of ram (yeah, ram is overkill for this box). It has a dual Intel gige nic (Intel(R) PRO/1000 82576) and a Chelsio T520-SO dual 10g (currently gig copper to the internal network, but will be upgrade to 10g soon). Not entirely happy that it has a fan, but it's a relatively slow spinning one, and the APU4 that I was using previously was just too slow. And other options too $$.

flyovercountry.social
@encthenet Thanks!
That's very useful reference. I had looked at a Lenovo mini-pc, but that required a PCI-e raiser that would be a bit annoying (and slow) to get hold of, so that didn't seem like a great solution - but that does not seem to be a problem with the HP EliteDesk 705's.
@simonlbn
Correct. It does require that the cards be half height cards, but that's very common for most nics these days.