free Next-gen Firewall or NGFW
Here’s a table marking the free NGFWs I mentioned earlier based on the 17 features that traditional firewalls do not support. This will help highlight which features are supported by each NGFW.
Feature | OPNsense | Untangle (Home) | IPFire | pfSense | Endian (Community) | ClearOS |
---|---|---|---|---|---|---|
Deep Packet Inspection (DPI) | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ |
Intrusion Detection and Prevention (IDPS) | ✅ | ✅ | ✅ | ✅ | ✅ | ✅ |
Application Awareness and Control | ✅ | ✅ | ❌ | ✅ | ✅ | ✅ |
Advanced Threat Protection (ATP) | ✅ | ✅ | ❌ | ✅ | ✅ | ❌ |
SSL/TLS Decryption and Inspection | ✅ | ✅ | ❌ | ✅ | ❌ | ✅ |
URL Filtering and Web Content Control | ✅ | ✅ | ❌ | ✅ | ✅ | ✅ |
Integrated Antivirus and Antimalware | ❌ | ✅ | ❌ | ❌ | ✅ | ✅ |
Identity-Based Access Controls | ✅ | ✅ | ❌ | ✅ | ❌ | ✅ |
Threat Intelligence Integration | ❌ | ✅ | ❌ | ❌ | ❌ | ❌ |
Cloud-based Threat Detection | ❌ | ❌ | ❌ | ❌ | ❌ | ❌ |
Centralized Management and Reporting | ✅ | ✅ | ❌ | ✅ | ✅ | ✅ |
Policy Enforcement across Multiple Layers | ✅ | ✅ | ❌ | ✅ | ✅ | ✅ |
DNS Security | ✅ | ✅ | ❌ | ✅ | ❌ | ✅ |
Virtualization and Cloud Compatibility | ✅ | ✅ | ❌ | ✅ | ❌ | ✅ |
IoT and BYOD Security | ✅ | ✅ | ❌ | ✅ | ❌ | ✅ |
Layer 7 (Application Layer) Visibility | ✅ | ✅ | ❌ | ✅ | ✅ | ✅ |
Automatic Policy Updates | ❌ | ✅ | ❌ | ❌ | ❌ | ❌ |
Legend:
- ✅: Feature supported
- ❌: Feature not supported