Using PfSense as modem/connecting to FTTP/ONT

Yes, first of pfSense is not a modem, it's a firewall with routing capabilities. Secondly, use OPNsense.

You'll need your PPPoE username/password unless you're with TalkTalk.
 
You just need to know how your ISP authenticates you (or doesn’t).

My home ISP (Upp) has no authentication - just DHCP. All the BT sets use PPPoE for authentication so you need the username and password.
 
You really should do a little bit of research into pfSense, they are not a very nice company by all accounts.
I am aware of their questionable ethics.

Neither are Microsoft or Google and many others but I still use their products.

Not saying I feel good for it, but there are more questionable companies I avoid.
 
Looking at Aquiss' website they have a handful of guides to configure routers, looks like they use PPoE for FTTP.


So just ensure you have your PPoE username and password details ready and you'll be fine.
Yeah, I have that so should be good to go.

Why does the ONT not handle the authentication though?

So although the ONT is the modem, and PfSense is not a modem, PfSense still handles the connection similar to a modem or do I misunderstand?
 
It's literally an optical to coax converter.

I'm with Aquiss, the username/password is in your ebilling portal. Literally any firewall which supports PPPoE should work.

Cool.

Any problems with them as an ISP?

I have done as much research as I could and they seemed great.

The ethics of them not being a multinational was a big draw to be fair.
 
None, I wish I'd have discovered them sooner.

Where I have lived, Cable was the only option as ADSL/ADSL2, FTTC were naff in comparison.

FTTP opened up soo much in my area having took forever it seems to get here.

On the 500Mb service, I got 500Mb+, when I upgraded to 1Gb it fluctuated between 750Mbs and 900Mbs, just not good value and combined with their pitiful upload speeds.
 
I'm also a new customer to Aquiss, moved from an area where we had altnet FTTP presented as ethernet - oh I wish that was available everywhere. Aquiss was recommended by a colleague and I was very impressed by their presales support. I know they're a smaller ISP but I actually like that. Sensible fair pricing too.

Of course thanks to their FTTP being Openreach like everyone else (nothing else available round here), I'm experiencing the PPPoE performance issue on my hardware (so it turns out that UDM Pro Atom CPUs can't handle gigabit-speed PPPoE encapsulation :D), so I'm looking at getting a pf/opnsense box to act simply as a PPPoE modem/bridge.

Anyone else done similar? I'd want the pf/opn box purely for facilitating the PPPoE, continuing to use the UDM for all routing and firewall as I've got a non-trivial existing setup. Basically just having the box trunking the Internet through to the Unifi WAN. I'm scrounging an old SFF with an AES-NI-supporting CPU as a pf/opn box, haven't had a chance to try anything yet. All tips/suggestions appreciated.
 
so it turns out that UDM Pro Atom CPUs can't handle gigabit-speed PPPoE encapsulation
I get 920/110 with my UDM SE.

If you want to pass through a line so to speak you’ll need to take out multiple public IPv4 addresses.
 
Last edited:
  • Like
Reactions: ~cw
I’ve been using OpnSense with my 500/70 connection with BT then EE for the last 30 months. PPPoE.

It has been faultless.

Get full line speed with one core of a i5-8600T assigned to the VM along with 1GB RAM.
 
I get 920/110 with my UDM SE.

If you want to pass through a line so to speak you’ll need to take out multiple public IPv4 addresses.
Interesting, aquiss do offer that.

I have a UDM Pro, couldn't justify the SE. I've not been able to get >700 down on either UDM's internal speed test (though I doubt it's very accurate) or with an HE160 AX WiFi to the AP from about 5 meters away yet. Though I also concede I've not been able to test with a capable wired machine yet as I'm still moving things between houses as work and free time permits. I don't have twice inspection/classification or the intrusion detection turned on, which I read really hammers downstream performance.
 
The in built one isn’t that accurate, only shows around 650 Mbps for me.

With IDS in medium I get 850-880 Mbps, with it off I get over 900.
 
  • Like
Reactions: ~cw
Back
Top Bottom