BSD Firewalling With PfSense NYCBSDCon 2010
BSD Firewalling With PfSense NYCBSDCon 2010
NYCBSDCon 2010
Current reasons
Relationship with FreeBSD project
Attracted considerable FreeBSD talent
Performance now and into the future
Downside
Older versions of OpenBSD-native software
Why use pfSense?
Hides complexity
Ease of management
Ease of training non-BSD administrators
Proven, customized OS base focused and
tailored as a firewall and router
Why not use pfSense?
Live CD
Full Install
Embedded
Versions
Major overhaul
Integrated certificate management
Setup wizard
Client export
Windows installer bundled with certificates
Bundled zip file for BSD, Linux, OS X, etc.
Viscosity export for Mac OS X
New interfaces
GRE
gif
PPP (3G cellular wireless, dial up POTS modems)
lagg(4) interface bonding
failover
load balance
round robin
Etherchannel
LACP
Bridging enhancements
all of if_bridge capabilities supported
18 Advanced configuration options available
STP and RSTP - fully configurable
SPAN port capable
Certificate Manager
Comments?