Enterprise Security - Firewalls
OPNsense
OPNsense
Wazisoft Ltd. has leveraged OPNsense for our firewall operating systems.
OPNsense is an open source, easy-to-use FreeBSD based firewall and routing platform. OPNsense includes most of the features available in legacy expensive commercial firewalls, and more in many cases. It brings the rich feature set of commercial offerings with the benefits of open and verifiable sources.
OPNsense core features are;
FIREWALL
Stateful firewall with support for IPv4 and IPv6 and live view on blocked or passed traffic
MULTI WAN
Multi WAN capable including load balancing and failover support
VIRTUAL PRIVATE NETWORKING
Integrated support for IPsec (including route based), OpenVPN as well as pluggable support for Tinc (full mesh VPN) and WireGuard
HARDWARE FAILOVER
High Availability & Hardware Failover (with configuration synchronization & synchronized state tables)
SD-WAN
The ZeroTier plugin can be used to setup your Software Defined WAN within minutes
INTRUSION DETECTION & PREVENTION
Get rid of the Trojans & CNC bots with state of the art inline intrusion prevention utilizing Suricata
TWO FACTOR AUTHENTICATION
2FA is supported throughout the system, for both the user interface and services such as VPN
WEB FILTERING
Fully integrated web proxy with access control and support for external blacklists to filter unwanted traffic.
Other options include firewall aliases and DNS blacklisting. Block ads with ease!
LOAD BALANCING
Using HAProxy, OPNSense provides a very fast and reliable reverse-proxy offering high availability, load balancing, and proxying for TCP and HTTP-based applications
Other OPNSense Features
- Pluggable support for OSPF and BGP
- Aliases & GeoLite Country Database
- Traffic Shaper
- Captive portal
- Built-in reporting and monitoring tools including RRD Graphs
- Netflow Exporter
- Network Flow Monitoring
- Support for plugins
- DNS Server & DNS Forwarder
- DHCP Server and Relay
- Dynamic DNS
- Backup & Restore
- Granular control over state table
- 802.1Q VLAN support