Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Why should I use pfSense?

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    16 Posts 7 Posters 18.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      trendchiller
      last edited by

      The package thing is available in full install, not on embedded platforms, but you will full install, because you do not have an embedded platform… so theres the package manager, you can install packages via the webgui in this manager, and after that it's enabled...

      Until now there's not a processor for blacklists, you have to manually enter the urls...

      you can have a try on 3com nic, but i tested it and it did not run very well... have a look at ebay or else for 100mbit intel nics they are also available as dual-port nics... they are not very expensive and work really good...

      I use the dual-port-server-adapter 10/100 and it works like a charm...

      1 Reply Last reply Reply Quote 0
      • G
        giantjoebot
        last edited by

        Checked prices for intel NIC's on newegg, and the checked ebay, and wow ebay is way cheaper.  So if I got the dual port NIC, do I have to 2 connections right now, or can I enable that latter?

        So no black list huh, hmmm….. that sucks

        Well its not that big of a deal.  I already block everything on my desktops with adblock.  I was hoping that it might help reduce spyware and such, but I don't seem to have any real issues there.  I never seem to get any viruses or spyware, except tracking cookies.  I guess it can't have everything.

        1 Reply Last reply Reply Quote 0
        • T
          trendchiller
          last edited by

          you have got 2 connections from the start… they are recognized as 2 different nics and in a future version you can bundle them with FEC and else ...
          and for the blocklist:

          just paste the adblock content to the blacklist field in the squid package

          1 Reply Last reply Reply Quote 0
          • G
            giantjoebot
            last edited by

            OK.  I'm almost sold.  I just have one more question, and I'm going to repeat one from my original post.

            You said that its fast, but is it faster?  Like is it faster than IPCop, Smoothy, ect…  I actually want to know if its faster than ClarkConnect, because Ive been trying to decide between these 2

            So what do you like about pfSense?  or What makes you use pfSense over other firewalls?

            1 Reply Last reply Reply Quote 0
            • C
              cmb
              last edited by

              Any of them will perform basically equally, assuming your hardware is adequately sized. On some hardware FreeBSD (hence pfSense) is faster than Linux, on some Linux is faster than FreeBSD, but on most it's mostly a crap shoot. The main performance considerations are how much bandwidth can it push, and what packets per second rate can it handle, all without drastically increasing latency. None of that is a concern with either OS with properly sized hardware because you'll have something with adequate capacity that the small differences that may be present won't matter.

              It really shouldn't be a consideration in which to choose - look at other things.

              One exception might be if you're forced to push a lot of traffic through a slow machine. In that case you want m0n0wall 1.2x, it's based on an older FreeBSD release that blows away Linux and the new FreeBSD release pfSense uses - with slow, undersized hardware (talking sub-300 MHz and 50+ Mb throughput requirement).

              1 Reply Last reply Reply Quote 0
              • G
                giantjoebot
                last edited by

                I had heard that m0n0wall was really good, but it doesn't have squid which is why I won't use it.  Squid is a must have for me.

                So if pfSense isn't faster, then it must be the features.  The feature that I want from pfSense that the others I'm looking at don't have is the SSL wrapper.  Basicly I'm just trying to decide which firewall to use.  I have seen a lot of posts by people in various forums and such that say pfSense is the best, but they don't say why.  There generally statements like, "pfSense is way better", or something like that.  What I want to know is why is it better.  What is it about pfSense that you guys like better than the other firewalls?  Honestly I've been considering this and ClarkConnect.  ClarkConnect has a much better website IMO, and I can see its features very clearly, and everything is laid out so that its easy to understand.  I just  can't seem to get the same out of pfSense's website, so I came here to see what was great about it.  On the other hand I have yet to get on ClarkConnect's forum.  I have been waiting for a confirmation email so that I can login, but I think that is probably due to the crapy secondary email account that I used to sign up, I think its jacked up right now because it doesn't seem to be receiving any new mail.  Sorry for the tangent.

                So why do you like pfSense?

                1 Reply Last reply Reply Quote 0
                • S
                  sullrich
                  last edited by

                  Why not try out pfSense and judge for yourself.  You are asking questions that will obviously result in biased opinions.

                  It's a liveCD.  Pop it in and start playing around with it… your wasting valuable time waiting for biased answers when you could be experimenting on your own :)

                  1 Reply Last reply Reply Quote 0
                  • G
                    giantjoebot
                    last edited by

                    Well the hardware is being used for a server at the moment, and doesn't have all the hardware it need right now, so I can't really do that yet.  I do this a lot, I start thinking about something and can't get it out of my brain until I figure it out.  Maybe its because I'm a Virgo.  You do have a point, there are other things that I should be doing right now, but to be honest I enjoy this stuff.

                    Who the hell else I'm I going to ask about pfSense.  It only makes sense to ask the people that use it about it.

                    1 Reply Last reply Reply Quote 0
                    • Cry HavokC
                      Cry Havok
                      last edited by

                      Well, grab a copy of VMWare (there's a 30 day trial) and play with pfSense there.  It's simple and painless :)

                      As for who else to ask - sullrich's point is very valid - people here are naturally going to tell you to dump your current choice and use pfSense.

                      1 Reply Last reply Reply Quote 0
                      • H
                        hoba
                        last edited by

                        VMware Server is completely free btw and will run pfSense just fine.

                        1 Reply Last reply Reply Quote 0
                        • G
                          giantjoebot
                          last edited by

                          OK I'll check it out.

                          1 Reply Last reply Reply Quote 0
                          • J
                            jeroen234
                            last edited by

                            you say that squid is a must for you

                            you now that when you use squid you only use the the first wan and never the second wan ??
                            squid and all other aplications that run on the pfsense server can only make use of the first wan

                            1 Reply Last reply Reply Quote 0
                            • G
                              giantjoebot
                              last edited by

                              No I didn't know that.  Thanks for telling me, thats pretty important.

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.