The most powerful open-source security solution of the market
Reliable, secure and high-performance solutions developed from the open source world
By meeting the firewall, routing and VPN needs of companies, pfSense Plus® has become the reference open source solution for securing networks and the cloud
With more than 2 million active instances worldwide, protecting home, companies and institutions, pfSense® Plus has become the most trusted open source solution by its users, based on reliable and robust technologies.
Firewall
- Stateful Packet Inspection (SPI)
- GeoIP blocking
- Anti-Spoofing
- Captive portal guest network
- Time-based rules
- Connection limits
- NAT mapping (inbound / outbound)
Router
- Policy-based routing
- Concurrent IPv4 and IPv6 Support
- Configurable static routing
- IPv6 network prefix translation
- IPv6 router advertisements
- Multiple IP addresses per interface
- PPPoE server
Attack prevention
- IDS/IPS
- Snort-based packet analyzer
- Layer 7 application detection
- Multiple rules, sources and categories
- Emerging threats database
- IP blacklist database
- Pre-set rule profiles
- Per-interface configuration
- False positive alert suppression
- Deep Packet Inspection (DPI)
- Application blocking
VPN
- IPsec
- OpenVPN
- Wireguard
- Site-to-site and remote access VPN
- SSL encryption
- VPN client for multiple operating systems
- L2TP/IPsec for mobile devices
- IPv6 support
- Split-tunneling
- Multiple tunnels
- VPN tunnel failover
- NAT support
- Automatic or custom routing
- Local user authentication or RADIUS/LDAP
Proxy and content filtering
- HTTP and HTTPS proxy
- Non Transparent or Transparent caching proxy
- Domain/URL filtering
- Anti-virus filtering
- SafeSearch for search engines
- HTTPS URL and content screening
- Website access reporting
- Domain Name blacklisting (DNSBL)
- Usage reporting
Network Services
- Dynamic DNS
- DHCP server
- DNS forwarding
Configuration Management
- Web-based configuration
- Setup Wizard for initial configuration
- Remote Web-based administration
- Customisable dashboard
- Easy configuration backup/restore
- Configuration export/import
- Encrypted automatic backup to Netgate server
- Variable level administration rights
- Multi-language support
- Simple updates
- Forward-compatible configuration
- Serial console for shell access and recovery options
- Wake-on-LAN
User authentication management
- Local user and group database
- User and group-based privileges
- Optional automatic account expiration
- External RADIUS authentication
- Automatic lockout after repeated attempts
System security management
- Web interface security protection
- CSRF protection
- HTTP Referrer protection
- DNS Rebinding protection
- HTTP Strict Transport Security
- Optional key-based SSH access
Resilience/reliability management
- Optional multi-node high availability clustering
- Multi-WAN for load balancing and failover
- Reverse Proxy
- Automatic connection failover
- Bandwidth throttling
- Traffic shaping wizard
- Reserve or restrict bandwidth based on traffic priority
- Fair sharing bandwidth
- User data transfer quotas
System reporting/monitoring
- Dashboard with configurable widgets
- Local logging
- Remote logging
- Local monitoring graphs
- Real-time interface traffic graphs
- SNMP monitoring
- Notifications via web interface, SMTP or Growl
- Hardware monitoring
- Network diagnostic tools
Find out how we integrated pfSense Plus® as a solution for a university campus of 8000 students.
Choose between different levels of pfSense® support in France, and 24/7 Netgate USA support, with teams at the heart of the product and sized to respond to any type of incident according to several SLA levels.
Interested in the pfSense Plus® security solution?
Associated pfSense Plus® products
Our others solutions
pfSense Plus