
OPNsense
FreeBSD-based firewall and routing platform with a modern GUI, intrusion prevention, VPN support, and plugin ecosystem.
About OPNsense
OPNsense is a FreeBSD-based, open-source firewall and routing platform designed for ease of use and security. It provides a modern, responsive web GUI for managing stateful firewall rules, traffic shaping, captive portal, intrusion detection and prevention (Suricata), VPN (IPsec, OpenVPN, WireGuard), DNS filtering, and high-availability setups.
Forked from pfSense in 2015, OPNsense differentiates itself with a modern MVC codebase, weekly security updates, a hardened base system, and a transparent plugin architecture. It runs on commodity x86 hardware and virtual machines. Licensed under BSD-2-Clause, it is free for all use including commercial deployments.
Key Features
- Stateful firewall, traffic shaping, captive portal, and DNS filtering
- Intrusion detection and prevention (Suricata) with rule updates
- VPN support: IPsec, OpenVPN, WireGuard, and ZeroTier
- Plugin ecosystem with weekly updates and modern web GUI
Self-Hosting Notes
Find another tool
More in Network & Firewall
NetBird
Open-source Zero Trust Networking platform replacing traditional VPNs with WireGuard-based mesh overlay.
Pangolin
Self-hosted tunneled reverse proxy with identity-aware access control.
WireGuard / Firezone
High-performance, secure VPN infrastructure for remote team networks.
WireGuard Easy
All-in-one WireGuard VPN with web UI for easy client management.