I’ve build a custom Pfsense box that includes an intel X710 4 port 10G card.
I currently have 2 wan connections:
WAN1: 1G up and down
WAN 2: 700 MBps down and 70 MBps
I also have several VLAN’s:
Staff
Students
Teachers
Guest
I have a Unifi Pro aggregation switch. Is there a benefit of using all 4 the ports of the Intel card instead of making a TRUNK with al VLANS/WANS and just using one port?
What would be the best setup if it’s better to use multiple ports?
Thank you for reading this and thank you for your help.
There’s nothing wrong with the way you’re doing it. There are a couple benefits to using multiple ports in the right situation, though.
You could isolate networks physically rather than by VLANs (assuming the NICs are individual rather than using the same switching chip).
More interestingly (from my perspective) you can do link aggregation, making one trunk from multiple ports. That increases the shared bandwidth of the connection. For example, if I have a NAS with a single gigabit link to my switch, all connections to the NAS share that gigabit. If I aggregate two gigabit links, each individual connection will still be topped out at one gigabit, but all connections will share two gigabits of bandwidth to that NAS. The same can be done with a firewall that’s doing VLAN routing on a busy network.
None of these is the one right way, they’re all just options based on the demands of your network.
A possible benefit might be monitoring of traffic on that port would be easier / less resource intensive if required.
However, I prefer a trunk in a LACP setup between the router and switch to use up the ports, in the event of a dodgy cable or port, there is resilience in place.
Additionally, it might be handy to keep a port on the router assigned to the LAN so that you could directly plug into the router if something were to go wrong.