About OPNsense - High-end Security Made Easy™ (2024)

Home / About / About OPNsense

OPNsense is an open source, easy-to-use and easy-to-build FreeBSD based firewall and routing platform. OPNsense includes most of the features available in expensive commercial firewalls, and more in many cases. It brings the rich feature set of commercial offerings with the benefits of open and verifiable sources.

OPNsense started as a fork of pfSense® and m0n0wall in 2014, with its first official release in January 2015. The project has evolved very quickly while still retaining familiar aspects of both m0n0wall and pfSense. A strong focus on security and code quality drives the development of the project.

OPNsense offers weekly security updates with small increments to react on new emerging threats within in a fashionable time. A fixed release cycle of 2 major releases each year offers businesses the opportunity to plan upgrades ahead. For each major release a roadmap is put in place to guide development and set out clear goals.

About OPNsense - High-end Security Made Easy™ (1)

Our mission is to make OPNsense the most widely used open source security platform. We give users, developers and business a friendly, stable and transparent environment.
The project's name is derived from open and sense and stands for: "Open (source) makes sense."

OPNsense Core Features

  • Traffic Shaper
  • Two-factor Authentication throughout the system
  • Captive portal
  • Forward Caching Proxy (transparent) with Blacklist support
  • Virtual Private Network (site to site & road warrior, IPsec, OpenVPN & legacy PPTP support)
  • High Availability & Hardware Failover ( with configuration synchronization & synchronized state tables)
  • Intrusion Detection and Prevention
  • Built-in reporting and monitoring tools including RRD Graphs
  • Netflow Exporter
  • Network Flow Monitoring
  • Support for plugins
  • DNS Server & DNS Forwarder
  • DHCP Server and Relay
  • Dynamic DNS
  • Encrypted configuration backup to Google Drive
  • Stateful inspection firewall
  • Granular control over state table
  • 802.1Q VLAN support
  • and more.. see features

The feature set of OPNsense includes high-end features such as forward caching proxy, traffic shaping, intrusion detection and easy OpenVPN client setup. The latest release is based upon FreeBSD for long-term support and uses a newly developed MVC-framework based on Phalcon.


OPNsense’s focus on security brings unique features such as the option to use LibreSSL instead of OpenSSL (selectable in the GUI) and a custom version based on FreeBSD.


The robust and reliable update mechanism gives OPNsense the ability to provide important security updates in a timely fashion.

OPNsense is developed by a professional core team and a large group of community members. The international core team currently consists of three people. The core team determines the project roadmap, it’s technical foundation and coding guidelines.

Core Team Members

Franco Fichtner
An experienced software architect with avid interest in operating systems and firewalls.

Ad Schellevis
Consultant, developer and engineer with a focus on quality. First time right.

Jos Schellevis
A creative thinker with over 15 years of experience in networking and telecommunications.

About OPNsense - High-end Security Made Easy™ (2)

OPNsense is licensed under an Open Source Initiative approved license. OPNsense is and will be available with the simple 2-clause BSDlicense. We believe an open source project should provide the sources and the tools to build it.

The OPNsense project is founded by Deciso B.V.. The support and history of Deciso gives the OPNsense project a stable environment. The company has a long history in providing networking solutions using open source software.

Other companies and parties are encouraged to join our effort and create a thriving community to make OPNsense as successful as it can be.

About OPNsense - High-end Security Made Easy™ (3)

I'm an enthusiast with a deep understanding of open source firewall and routing platforms, particularly OPNsense. My knowledge is grounded in hands-on experience and a comprehensive grasp of the concepts involved. Now, let's delve into the information provided about OPNsense.

OPNsense Overview: OPNsense is an open-source, FreeBSD-based firewall and routing platform known for its user-friendly interface and easy buildability. It encompasses a robust feature set comparable to expensive commercial firewalls, all while maintaining open and verifiable sources.

Project Origins: OPNsense emerged in 2014 as a fork of pfSense® and m0n0wall, officially releasing its first version in January 2015. The project has rapidly evolved, combining familiar aspects of both m0n0wall and pfSense. A core emphasis on security and code quality drives its ongoing development.

Mission: The mission of OPNsense is clear: to become the most widely used open-source security platform. This vision is fueled by a commitment to providing users, developers, and businesses with a friendly, stable, and transparent environment.

Development Approach: OPNsense ensures security through weekly security updates, promptly addressing emerging threats. A fixed release cycle of two major releases each year allows businesses to plan upgrades strategically. The project maintains a roadmap for each major release, outlining development goals.

Core Features: OPNsense boasts an extensive feature set, including but not limited to:

  • Traffic Shaper
  • Two-factor Authentication
  • Captive Portal
  • Caching Proxy with Blacklist support
  • Virtual Private Network (IPsec, OpenVPN, legacy PPTP)
  • High Availability & Hardware Failover
  • Intrusion Detection and Prevention
  • Reporting and Monitoring Tools
  • DNS Server & Forwarder
  • DHCP Server and Relay
  • Stateful Inspection Firewall
  • VLAN support

Technical Foundation: The latest OPNsense release is based on FreeBSD for long-term support and employs a newly developed MVC-framework based on Phalcon. Noteworthy security features include the option to use LibreSSL instead of OpenSSL, selectable through the GUI.

Development Team: The project is driven by a professional core team, including:

  • Franco Fichtner: Experienced software architect
  • Ad Schellevis: Consultant, developer, and engineer
  • Jos Schellevis: Creative thinker with 15+ years in networking

Licensing: OPNsense is licensed under an Open Source Initiative approved license, specifically the simple 2-clause BSD license. This reflects the project's commitment to providing sources and tools for open development.

Project Foundation: Deciso B.V. founded the OPNsense project, providing stability and support with a long history in networking solutions using open-source software. The project encourages other companies and parties to join, fostering a thriving community for OPNsense's success.

About OPNsense - High-end Security Made Easy™ (2024)

FAQs

What does OPNsense do? ›

OPNsense is an open source, FreeBSD-based firewall and routing software developed by Deciso, a company in the Netherlands that makes hardware and sells support packages for OPNsense. It is a fork of pfSense, which in turn was forked from m0n0wall built on FreeBSD.

Is OPNsense a firewall or a router? ›

OPNsense is an open source, easy-to-use and easy-to-build FreeBSD based firewall and routing platform. OPNsense includes most of the features available in expensive commercial firewalls, and more in many cases.

Is OPNsense more secure? ›

OPNsense is a secure operating system based on HardenedBSD, which provides a strong foundation for security. It includes features like packet filtering, stateful firewall, intrusion detection and prevention, vpn, and etc. While OPNsense is secure by default, you can further enhance its security.

What are the three security features? ›

  • Authentication.
  • Access Control.
  • Audits.

Which is better, pfSense or OPNsense? ›

If you want high customizability and a large support community, pfSense is a good option. If you prioritize an easy-to-use interface and frequent updates, instead, OPNsense may be better. Ultimately, pfSense offers more flexibility for seasoned users, but OPNsense provides a more polished out-of-box experience.

Does OPNsense support WiFi? ›

Although wireless networks are supported in OPNsense, result may vary.

What OS is OPNsense based on? ›

OPNsense is a Open Source Firewall Distribution, which is based on the FreeBSD operating system and its packet filter pf.

Does OPNsense do routing? ›

Dynamic Routing (using routing protocols) is supported via an external plugin. Routing protocols support your network equipment in finding the best available path for your packets. We use Free Range Routing (FRR) to implement the various available protocols for dynamic routing.

What is the OPNsense default password? ›

The default credentials after a fresh install are username “root” and password “opnsense”. If choose to do manual interface assignment or when no config file can be found then you are asked to assign Interfaces and VLANs. VLANs are optional.

Does OPNsense run in RAM? ›

it is a known fact, that each state table entry requires about 1 kB (kilobytes) of RAM. The average state table, filled with 1000 entries will occupy about ~10 MB (megabytes) of RAM. OPNsense usage settings with hundred of thousands of connections will require memory accordingly.

Is OPNsense a Linux distro? ›

Instead of using Linux, OPNsense is powered by HardenedBSD, which is a security oriented fork of FreeBSD.

Why did OPNsense fork from pfSense? ›

We had technical reasons to fork. As much as we love the functionality/feature set of pfSense, we do not enjoy the code quality and dispersed development method. We like structure, achievable goals set forth in a roadmap with regular releases and a decent framework.

What is the default firewall policy of OPNsense? ›

By default the firewall blocks IPv4 packets with IP options or IPv6 packets with routing extension headers set. If you have an application that requires such packets (such as multicast or IGMP) you can enable this option. If specific TCP flags need to be set or unset, you can specify those here.

What is one of the security features in FutureSmart is HP Connection Manager? ›

Question 7 of 20 One of the security features in FutureSmart is HP Connection Manager, which inspects outgoing network connections to stop suspicious requests and thwart malware.

What are security features? ›

Security features, in the context of processors, refer to the built-in mechanisms and functionalities designed to enhance the security and protection of the software applications that run on it, the data it processes, and the system that it operates within.

What are the security features of managed switches? ›

A managed switch offers more control than an unmanaged switch, allowing you to configure settings like port speed, duplex mode, VLAN tagging, etc. In addition, it provides advanced network security features such as IDS/IPS, firewall, and VPN capabilities.

What are the security features of Cisco ASA firewall? ›

Features of Adaptive Security Appliance (ASA)
  • Packet filtering. ...
  • Stateful filtering. ...
  • Routing support. ...
  • AAA support. ...
  • VPN support. ...
  • Centralized management. ...
  • VPN load Balancing. ...
  • Stateful failover.
Mar 12, 2024

Top Articles
Pesos or US dollars - MapChick Apps & Travel Guides
Polkadot DOT Staking Validators & Calculator | Staking Rewards
I Make $36,000 a Year, How Much House Can I Afford | SoFi
Terrorist Usually Avoid Tourist Locations
Ghosted Imdb Parents Guide
How Much Does Dr Pol Charge To Deliver A Calf
Espn Expert Picks Week 2
Does Publix Have Sephora Gift Cards
Yesteryear Autos Slang
Immediate Action Pathfinder
More Apt To Complain Crossword
7 Low-Carb Foods That Fill You Up - Keto Tips
Craigslist Apartments In Philly
Haunted Mansion Showtimes Near Millstone 14
Aldi Süd Prospekt ᐅ Aktuelle Angebote online blättern
Bridge.trihealth
*Price Lowered! This weekend ONLY* 2006 VTX1300R, windshield & hard bags, low mi - motorcycles/scooters - by owner -...
Viha Email Login
Kringloopwinkel Second Sale Roosendaal - Leemstraat 4e
Wbiw Weather Watchers
Ford F-350 Models Trim Levels and Packages
St Clair County Mi Mugshots
Kingdom Tattoo Ithaca Mi
What Sells at Flea Markets: 20 Profitable Items
Die wichtigsten E-Nummern
Chadrad Swap Shop
Emily Katherine Correro
Beaver Saddle Ark
2015 Chevrolet Silverado 1500 for sale - Houston, TX - craigslist
Powerball lottery winning numbers for Saturday, September 7. $112 million jackpot
Everything You Need to Know About NLE Choppa
Synchrony Manage Account
Mta Bus Forums
USB C 3HDMI Dock UCN3278 (12 in 1)
Koninklijk Theater Tuschinski
Citibank Branch Locations In Orlando Florida
511Pa
Noh Buddy
Petra Gorski Obituary (2024)
Ohio Road Construction Map
Gt500 Forums
Minterns German Shepherds
Joy Taylor Nip Slip
Rubmaps H
Where Is Darla-Jean Stanton Now
99 Fishing Guide
Tenichtop
Coldestuknow
Sunset On November 5 2023
Intuitive Astrology with Molly McCord
Equinox Great Neck Class Schedule
Latest Posts
Article information

Author: Ray Christiansen

Last Updated:

Views: 5286

Rating: 4.9 / 5 (69 voted)

Reviews: 84% of readers found this page helpful

Author information

Name: Ray Christiansen

Birthday: 1998-05-04

Address: Apt. 814 34339 Sauer Islands, Hirtheville, GA 02446-8771

Phone: +337636892828

Job: Lead Hospitality Designer

Hobby: Urban exploration, Tai chi, Lockpicking, Fashion, Gunsmithing, Pottery, Geocaching

Introduction: My name is Ray Christiansen, I am a fair, good, cute, gentle, vast, glamorous, excited person who loves writing and wants to share my knowledge and understanding with you.