Netgate pfSense Plus Firewall/VPN/Router
Netgate | 24.03.0Linux/Unix, FreeBSD 14 - 64-bit Amazon Machine Image (AMI)
External reviews
External reviews are not included in the AWS star rating for the product.
I use pfSense to manage multiple remote networks
What do you like best about the product?
I love that it's really just a "full" Linux distro, so when I can't find a built-in setting or a package to do what I need I can ssh in and write something. I also love that it's very stable and low maintenance once it's set up, I rarely need to worry about anything.
What do you dislike about the product?
A few things, but nothing major stands out:
I would like to be able to manage DHCP static clients remotely, ie with an external database.
Updating alias tables is a bit of a hassle (I have an external service that lists out several thousand ips to block that I want to be updated in pfSense immediately so I have a script to ssh in and update them).
I would love updates to not necessarily be automatic but to maybe notify me or have an API endpoint to check for updates and execute them. An API in general would be nice.
Additionally, a better dns resolver (ie wildcards!!)
I would like to be able to manage DHCP static clients remotely, ie with an external database.
Updating alias tables is a bit of a hassle (I have an external service that lists out several thousand ips to block that I want to be updated in pfSense immediately so I have a script to ssh in and update them).
I would love updates to not necessarily be automatic but to maybe notify me or have an API endpoint to check for updates and execute them. An API in general would be nice.
Additionally, a better dns resolver (ie wildcards!!)
What problems is the product solving and how is that benefiting you?
I use pfSense in a residential setting, but it is completely remote. I use several services including, but not limited to firewall ip blocking, dhcp, dns resolving, NTP, SSL signing, and OpenVPN.
- Leave a Comment |
- Mark review as helpful
Great product, good support; Netgate doesn't fail to impress.
What do you like best about the product?
Leaning on the open source community and having rock solid support who are aware of pretty much every issue in their Redmine is awesome, I always feel like if I have to go to TAC that the people who respond know their stuff. I like the modularity and the affordability of the appliances/software.
What do you dislike about the product?
There's no API, automation is moot because of this which seriously restricts its use in the enterprise. I can't deploy these at every site if I have to manually configure them or use some XML uploads. Another thing is vetting your versions for enterprise customers, I know Netgate can't predict everything, but these should be thouroughly tested or at the very least a PSA if there's a possibility of a large bug on upgrade.
Lastly, another thing for enterprise customers, VPN usage. Every major firewall appliance builds off of a simple, existing VPN solution. It'd be nice to have more support for the OpenVPN addons for instance, things like SAML/OIDC for enterprise customers would be amazing. Even if you can't build an API into the current builds having some level of VPN automation would also help immensely.
Lastly, another thing for enterprise customers, VPN usage. Every major firewall appliance builds off of a simple, existing VPN solution. It'd be nice to have more support for the OpenVPN addons for instance, things like SAML/OIDC for enterprise customers would be amazing. Even if you can't build an API into the current builds having some level of VPN automation would also help immensely.
What problems is the product solving and how is that benefiting you?
Probably the biggest thing is I know the latest versions of pfSense are secure, the developers are diligent in finding vulnerabilities, quashing them, and informing the community when a new one hits the waves.
For over decade, It's the only firewall/router I use. In lab or production. It's never let me down.
What do you like best about the product?
It just works. I don't have to think about it. Once setup it's out of my mind. I only need to add nat rules whenever a new service or machine is launched.
What do you dislike about the product?
It would be nice to have a mobile app or cluster management, thats a shallow want/need.
What problems is the product solving and how is that benefiting you?
It saves me a lot of money. In labs, I use older hardware. In production, I buy the Netgate appliance. It gives me an easy place to setup nat/ routing/DNS/DHCP and IPsec tunnels.
PfSence fun
What do you like best about the product?
FreeBSD based and open source and GUI control panel
What do you dislike about the product?
missed some documentation regarding VPN configuration
What problems is the product solving and how is that benefiting you?
Firewall and IDS/IPS
An easy to manage and scalable all-in-one solution for the network management of our Start-Up.
What do you like best about the product?
pfSense covers all our needs for OpenVPN Networks, Cert-Management, Firewalls, DNS-Resolver etc., in one solution. The GUI makes it much easier and less error-prone to configure complex services, such as firewalls or VPNs, compared to the pure Linux pendants (e.g., iptables).
What do you dislike about the product?
A specific bug with the DHCP service (https://forum.netgate.com/topic/168172/dhclient-error-cannot-open-or-create-pidfile-no-such-file-or-directory/3) caused quite some trouble, but we finally found a solution in the Netgate forum. Our conclusion: The reliability of the free version is not at enterprise level (which was to expect), but the support is yet quite good.
What problems is the product solving and how is that benefiting you?
pfSense allows us to have a cloud-only IT infrastructure based on distributed VMs located at different providers. The built-in VPN servers and firewalls completely encapsulate crucial internal services. Hence, we can have a super scalable, safe, yet highly cost-efficient IT setup thanks to pfSense.
15 years pfsense user
What do you like best about the product?
Stable. Configure it once and it will just keep running reliably in the background. I have to reboot the ISP modem every few months but never pfsense. the only competitor in my opinion, is OpenWrt
What do you dislike about the product?
Just the learning curve of getting something to work sometimes. Biggest problem I have had is multi wan bonding but once configured it usually works without many problems
What problems is the product solving and how is that benefiting you?
I have enterprise router functionality that I can run on any hardware that I have. And it is free. These are features like virtual IP's , VLANS, and specific routing rules for internal security policies
I've been using pfSense for about 6 years now and super satisfied with the product so far. love it.
What do you like best about the product?
It's free if use on our hardware. many apps available. User interface is simpler but it has wrapped up all simple config to advanced config in a nicer way.
What do you dislike about the product?
faced some difficulties with getting a proxy setup within pfSense.
What problems is the product solving and how is that benefiting you?
pfSense solved the need of a security appliance at a super low cost for a business while giving the full scalable features.
pfSense is easy to set up and just works
What do you like best about the product?
How quickly you can get it up and running, and how intuitive the interface and configuration screens are.
Automated backups and roll-back options (this has been so useful)
Automated backups and roll-back options (this has been so useful)
What do you dislike about the product?
I can't think of anything I would say I dislike. I know there is a lot I have not used yet but so far, nothing to dislike.
What problems is the product solving and how is that benefiting you?
Secure internet access to and from my networks.
Able to re-use older hardware
Easy deployment of appliances.
Able to re-use older hardware
Easy deployment of appliances.
Runs on (almost) everything.
What do you like best about the product?
Solid and performant firewall
Extremely configurable
Installed on VM, generic X86 desktop, ebay firewall appliance (Watchguard XTM)
Extremely configurable
Installed on VM, generic X86 desktop, ebay firewall appliance (Watchguard XTM)
What do you dislike about the product?
Menu tree could be a bit better organized
Logs could be better accessible and searchable (e.g. "Want to know why IP 1.2.3.4 isn't getting through")
Logs could be better accessible and searchable (e.g. "Want to know why IP 1.2.3.4 isn't getting through")
What problems is the product solving and how is that benefiting you?
Much, much better than a over-the-counter "WiFi Router". Open-Source, with many available plugins meaning endless customizations
Stable and Secure with feature rich plug-ins.
What do you like best about the product?
Switching from a rather locked down routing software to PFSense has been a great experience. Configuration of PFsense from the Setup Wizard to customizations such as the implementation of site-to-site VPNs, HAProxy, DNS and PFBlockerNG. The abiliity to also have a Configuraiton Backup and easily spin-up a virtual Router should the physical hardware fail is also a relief.
What do you dislike about the product?
I haven't really experience anything that I dislike all that much. I suppose, it would be nice to have a Dashboard that could auto-populate with features that would be of interest rather than having to determine yourself what you want to visualise. Though, I suppose that's the power of running your own Firewall - You can control what you do and don't want to see.
What problems is the product solving and how is that benefiting you?
PFSense solves the issue of being able ot ensure router's have up to date software. Previously, router's were supported for a few years and then support was dropped by the vendor. With PFsense, since it's software you can move along with it provided you keep your system updated. You also have the added option of using their own hardware which is also feature rich and well supported. PFsense has also made it easy setting up site-to-site VPNs allowing for a choice between VPN technology such as Wireguard or IPSEC.
showing 201 - 210