In the past, we had different locations in different countries, and in every location, we had the same pfSense firewall. Therefore, the connection between our different locations was good and manageable. However, in the last two years, we have had only one location here in Belgium, thus the performance of the pfSense has been good, and we can manage great with the open ports and the closed ports, but now a firewall has to be a little bit more than just that.
Owner / Principle Engineer at Cogito Innovations
Powerful, flexible, and intuitive with features that rival many high cost solutions
Pros and Cons
- "Its features rival many of the high cost solutions out there."
- "It is economical (i.e., free), yet powerful, flexible, and intuitive."
- "The GUI could use improvements, though it is manageable."
- "The GUI could use improvements, though it is manageable."
pfSense has been a perfect fit for my small business needs. It is economical (i.e., free), yet powerful, flexible, and intuitive. Its features rival many of the high cost solutions out there.
The GUI could use improvements, though it is manageable.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network and Office Manager at Belgo Metal CW n.v.
The performance and functionality are good. I can manage it easily by myself.
Pros and Cons
- "The initial setup was straightforward, therefore I wanted to continue using the product."
- "I can manage it easily by myself."
- "The performance and functionality are good."
- "I would recommend it; it is manageable and straightforward, it is not so complex, you have to know the different rules, but you can manage it easily and the performance is good."
- "A malware blocker should be included. I do not know if it is included yet. However, until now, we have not experienced a large malware invasion."
- "A malware blocker should be included."
What is our primary use case?
How has it helped my organization?
I do not have any big malware in my network, partly because of pfSense. The firewall blocks every malfunctioning malware or virus. Also, the access from outside our network has to be blocked, and I know by experience that our pfSense is very closed. You have to open every port in order to make sure that there can be a connection from outside our network.
What is most valuable?
- I can manage it easily by myself.
- The interaction between the same firewalls is good. We can connect VPNs over the same firewall easily.
- It is an open source solution. Therefore, the price is good.
- OPNsense.
- The performance and functionality are good.
What needs improvement?
A malware blocker should be included. I do not know if it is included yet. However, until now, we have not experienced a large malware invasion.
There are a few features not included, and when you have to use those features, you have to pay for them.
I know that I should change the current pfSense solution. I should change it because we have only one key port on it. Our internet access also has a key port now, I should have two key ports, one to the LAN and one to the WAN.
Therefore, I want to change it, because it gives us less speed. I could provide the speed, but there are not two key ports on it. Therefore, I now have to choose a new pfSense solution, or I could look at another vendor similar to what we have.
For how long have I used the solution?
More than five years.
What do I think about the stability of the solution?
I am satisfied with the stability.
What do I think about the scalability of the solution?
Scalability was less important. When we started, we did not have to scale the pfSense. In the seven years that I have used the pfSense, once I had to renew it because the hardware was broken or was defective. The second one was a little bit faster and had more memory, so I did not have to scale it again. Therefore, the scalability has not been so important to us until now.
Which solution did I use previously and why did I switch?
We came from OneStart. OneStart was out of data and at end of life. Thus, we had to switch. pfSense was originally proposed to us by the dealer and our external IT help.
How was the initial setup?
The initial setup was straightforward, therefore I wanted to continue using the product.
What about the implementation team?
I did not do it alone. I had help from the dealer. Once installed, I can manage now to change little things. For the initial setup, I was involved with it, but I did not do it myself.
What's my experience with pricing, setup cost, and licensing?
It was straightforward to buy from pfSense.
Which other solutions did I evaluate?
From Sonic Wall, their price is much higher, because for every feature that you want to add, you have to pay. I can do the same things with pfSense, but everything is included in one price.
We originally evaluated Cisco, WatchGuard, and Barracuda. We chose pfSense because of the price and it was open source software. At the time, our team was called OpenERP (now called Odoo), so open source software was an advantage.
What other advice do I have?
I would recommend it. It is manageable and straightforward. It is not so complex. You have to know the different rules, but you can manage it easily. The performance is good.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Netgate pfSense
March 2026
Learn what your peers think about Netgate pfSense. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
885,728 professionals have used our research since 2012.
student at a university with 51-200 employees
Creation of certificates and the facility to administer services are valuable features
Pros and Cons
- "Creation of certificates and the facility to administer services are valuable features."
- "Creation of certificates and the facility to administer services are valuable features."
- "It requires more attention to provide a better alternative for open source to small government or educational institutions with reduced budgets in terms of technology."
- "Sometimes, the tools have fallen short."
What is our primary use case?
I have used it in town halls with a number of employees ranging between 40 and 60. I have also used it in educational institutions.
How has it helped my organization?
The use and results may vary according to the objectives of the institutions.
In the case of city councils, I have taken the maximum advantage, taking into account that they were small institutions for which the tools provided by pfSense were sufficient according to the requirements of those institutions.
However, in educational institutions, it was more difficult. Sometimes, the tools have fallen short.
What is most valuable?
- The part of the firewall and aliases
- The content filter in non-transparent mode and transparent mode with Squid and SquidGuard
- The possibility of adding packages to perform network analysis
- Creation of certificates
- The facility to administer services
What needs improvement?
The product is good in many of its departments, but this should make HTTPS filtering more efficient since Squid falls short when using man in the middle. It works, but it is not 100% efficient. It requires more attention to provide a better alternative for open source to small government or educational institutions with reduced budgets in terms of technology.
For how long have I used the solution?
Three to five years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
it_user607749Manager, Live Production at a computer software company with 1,001-5,000 employees
Real User
Thanks for the information!
Student
A good firewall with good performance
Pros and Cons
- "It is a good firewall with good performance."
- "It is a good firewall with good performance."
- "More regular patch updates, because this is very important for a firewall."
What is our primary use case?
For security testing in network functions virtualization (NFV).
How has it helped my organization?
It is a good firewall with good performance.
What is most valuable?
Stateful packet inspection. It works quite well for an open source product.
What needs improvement?
More regular patch updates, because this is very important for a firewall.
For how long have I used the solution?
Still implementing.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
it_user607749Manager, Live Production at a computer software company with 1,001-5,000 employees
Real User
Thanks for the information!
Consultant
Centralized administration with multiple services, which allows for execution in important functionalities of information security
Pros and Cons
- "Centralized administration with multiple services, which allows for execution in several important functionalities of information security."
- "Centralized administration with multiple services, which allows for execution in several important functionalities of information security."
- "Needs services on additional features, such as managing inventory and generating reports."
- "Needs services on additional features, such as managing inventory and generating reports."
What is our primary use case?
Works with:
- Routers
- Firewalls
- Network address translation (NAT)
- VPN
- OpenVPN
- DHCP Server.
How has it helped my organization?
- More control of the access to network resources
- More control of the security policies
- Integration with Active Directory
- Centralized administration
What is most valuable?
Centralized administration with multiple services, which allows for execution in several important functionalities of information security.
What needs improvement?
Services on additional features:
- SNMP Network Management
- Managing inventory
- Generating IT reports.
For how long have I used the solution?
One to three years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Analista Senior at a tech services company
The gain in performance and security from configuring the VPN connections was significant
Pros and Cons
- "The gain in performance and security from configuring the VPN connections was significant."
- "It is a stable solution."
- "The gain in performance and security from configuring the VPN connections was significant, since pfSense has replaced a server with a custom Linux open source version, which was running on outdated hardware."
- "My only observation is about the quality of the IPSec logs, which are difficult to interpret and are poor in filters."
- "My only observation is about the quality of the IPSec logs, which are difficult to interpret and are poor in filters."
What is our primary use case?
I use pfSense firewall, especially as an IPSec VPN Server. There are several VPN connections with equipment of various manufacturers at the other end.
I use ServerU as hardware instead of an ordinary PC, as most other people usually do.
How has it helped my organization?
The gain in performance and security from configuring the VPN connections was significant, since pfSense has replaced a server with a custom Linux open source version, which was running on outdated hardware.
What is most valuable?
Security and stability. The pfSense server acts as "IPSec VPN Server" for a small financial institution, but regardless of the company size, interruptions would cause significant financial impact.
What needs improvement?
pfSense serves us very well. My only observation is about the quality of the IPSec logs, which are difficult to interpret and are poor in filters. I have more than 10 IPSec VPN connections, and when there is a need for troubleshooting, the logs are of little help.
For how long have I used the solution?
Three to five years.
What do I think about the stability of the solution?
With regard to this configuration, I consider it a stable solution.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
it_user607749Manager, Live Production at a computer software company with 1,001-5,000 employees
Real User
Thanks for the information!
CEO with 11-50 employees
Improved service performance and availability through redundancy
Pros and Cons
- "Improved service performance and availability through redundancy."
- "Improved service performance and availability through redundancy."
- "Improve analysis of logs and dashboards (control panel) with improved alert functionality."
- "Improve analysis of logs and dashboards (control panel) with improved alert functionality."
What is our primary use case?
Firewall and VPN, Internet link balancing, as the proxy was installed on another machine. Used redundant firewall as a cluster.
How has it helped my organization?
Improved service performance and availability through redundancy. The company already had specialists in Linux, which facilitated the project.
What is most valuable?
Ease of monitoring and placement of other packages and functionalities next to the equipment.
What needs improvement?
Improve analysis of logs and dashboards (control panel) with improved alert functionality.
For how long have I used the solution?
Three to five years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Specialist in IT Infrastructure, Networks and Software Quality at a tech services company with 51-200 employees
An incomparable stability is achieved with other firewall systems
Pros and Cons
- "An incomparable stability is achieved with other firewall systems."
- "Firewall system for small, medium, and large data networks. It allows you to provide security to your environment: DMZ networks, LAN, WAN, etc."
- "A very stable product that lasts over time, easy to understand, and administer."
- "It is easy to use and has integrity with other systems, such as proxies and quality of service."
- "It should integrate with LDAP, Active Directory, etc, to improve the way in which the traces and connections of each IP, or user connected through the firewall, are shown."
- "It should integrate with LDAP, Active Directory, etc, to improve the way in which the traces and connections of each IP, or user connected through the firewall, are shown."
What is our primary use case?
Firewall system for small, medium, and large data networks. It allows you to provide security to your environment: DMZ networks, LAN, WAN, etc. A very stable product that lasts over time, easy to understand, and administer.
How has it helped my organization?
With pfSense, an incomparable stability is achieved with other firewall systems. It is easy to use and has integrity with other systems, such as proxies and quality of service.
What is most valuable?
Security
- Stability
- Integration with other systems
- Easy assimilation of its features
- Easy administration
- Multiple network management tools
- Load balancing
- Multiple links
- High availability, etc.
What needs improvement?
The connections should be shown in a more specific way, as Kerio Control does. It should integrate with LDAP, Active Directory, etc, to improve the way in which the traces and connections of each IP, or user connected through the firewall, are shown.
For how long have I used the solution?
More than five years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Netgate pfSense Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Sophos Firewall
OPNsense
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Cisco Meraki MX
Check Point Harmony SASE (formerly Perimeter 81)
Azure Firewall
SonicWall TZ
Check Point CloudGuard Network Security
Fortinet FortiGate-VM
Juniper SRX Series Firewall
Palo Alto Networks VM-Series
Buyer's Guide
Download our free Netgate pfSense Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What Is The Biggest Difference Between Sophos and pfSense?
- How do I choose between Fortinet FortiGate and pfSense?
- How do I deploy anti-spam in pfSense or SonicWall TZ?
- What are the differences between Fortinet FortiGate and pfSense?
- Comparison between Sophos XG and pfSense as firewalls
- What is the difference between PfSense and OPNsense?
- Why is pfSense's firewall better than OPNsense's?
- Which solution do you prefer: pfSense or KerioControl?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet












Comment for what? More than great, simple, inexpensive firewalling.