222 packagecopy@files.pfsense.org /usr/local/www/files/packages/amd64/8/All/ MAC-to-Vendor The package make pfSense show NIC Vendor names instead of MAC addresses in the form Asustek:xx:xx:xx, full info about MAC and vendor is available in tooltip. Applies to pages Status->Interfaces, Status->DHCP leases, Status->Wireless, Diagnostics->ARP table. Vendor names are stored in the file /usr/local/pkg/mactovendor/mac-prefixes Enhancements 0.2 BETA 3.0 ey@tm-k.com http://www.pfsense.com/packages/config/mactovendor/mactovendor.xml mactovendor.xml widescreen The package makes pfSense adapt to browser's current width. It is particularly convenient for Status->Dashboard page that allocates columns for widgets according to browser's current width. ATTENTION: the package heavily modifies pfsense_ng theme and affects other's themes appearance. Please REFRESH your browser's window after installing/uninstalling this package. Enhancements 0.2 BETA 2.0 ey@tm-k.com http://www.pfsense.org/packages/config/widescreen/widescreen.xml widescreen.xml squid High performance web proxy cache. http://www.squid-cache.org/ Network 2.7.9_4.1 Stable 2 fernando@netfilter.com.br seth.mos@xs4all.nl mfuchs77@googlemail.com jimp@pfsense.org http://files.pfsense.org/packages/amd64/8/All/ squid-2.7.9_1.tbz squid_radius_auth-1.10.tbz libwww-5.4.0_4.tbz /usr/ports/www/squid /usr/ports/www/squid_radius_auth /usr/ports/www/libwww WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_CARP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_AUFS=true WITH_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITHOUT_DEBUGGING=true WITHOUT_GDBM=true WITHOUT_PERL_MALLOC=true WITH_PERL_64BITINT=true WITHOUT_THREADS=true WITHOUT_MULTIPLICITY=true WITHOUT_SUIDPERL=true WITHOUT_SITECUSTOMIZE=true WITH_USE_PERL=true http://www.pfsense.org/packages/config/squid/squid.xml squid.xml Varnish Varnish is a state-of-the-art, high-performance HTTP accelerator. It uses the advanced features in FreeBSD 6/7/8 to achieve its high performance. BACKUP your custom vcl data before upgrading from 0.8 http://varnish-cache.org http://doc.pfsense.org/index.php/Varnish_package Services 0.8.9 BETA 2.0 http://www.pfsense.com/packages/config/varnish64/varnish_backends.xml varnish_backends.xml http://files.pfsense.org/packages/amd64/8/All/ varnish-2.1.5.tbz gcc-4.2.5.20090325_5.tbz /usr/ports/www/varnish /usr/ports/lang/gcc42 File Manager PHP File Manager Diagnostics http://forum.pfsense.org/index.php/topic,26974.0.html http://pfsense.org/packages/config/filemgr/filemgr.xml 0.1.1 Beta 2.0 tom@tomschaefer.org filemgr.xml Country Block Block countries Firewall http://forum.pfsense.org/index.php/topic,25732.0.html http://pfsense.org/packages/config/countryblock/countryblock.xml http://files.pfsense.org/packages/amd64/8/All/ 0.2.2 Beta 2.0 tom@tomschaefer.org countryblock.xml IP-Blocklist IP-Blocklist is the new PeerBlock. IP lists are used to add deny/allow rules to the firewall for in & out traffic. Firewall http://forum.pfsense.org/index.php/topic,24769.0.html http://pfsense.org/packages/config/ipblocklist/8/ipblocklist.xml http://files.pfsense.org/packages/amd64/8/All/ 0.3.3 Beta 2.0 tom@tomschaefer.org ipblocklist.xml anyterm Ajax Interactive Shell - Have you ever wanted SSH or telnet access to your system from an internet desert - from behind a strict firewall, from an internet cafe, or even from a mobile phone? Anyterm is a combination of a web page and a process that runs on your web server that provides this access. WARNING! We suggest using Stunnel in combination with this package! http://anyterm.org/ http://doc.pfsense.org/index.php/AnyTerm_package Diagnostics 0.5 BETA 1.2.3 http://www.pfsense.com/packages/config/anyterm/anyterm.xml anyterm.xml http://doc.pfsense.org/index.php/haproxy_package haproxy The Reliable, High Performance TCP/HTTP Load Balancer http://haproxy.1wt.eu/ Services 0.29 BETA 1.2.3 http://www.pfsense.com/packages/config/haproxy/haproxy.xml haproxy.xml /usr/ports/net/haproxy-devel Proxy Server with mod_security http://doc.pfsense.org/index.php/ProxyServerModSecurity_package http://www.modsecurity.org/ ModSecurity is a web application firewall that can work either embedded or as a reverse proxy. It provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis. In addition this package allows URL forwarding which can be convenient for hosting multiple websites behind pfSense using 1 IP address. Network Management 0.1.2 ALPHA 1.2.3 http://www.pfsense.com/packages/config/apache_mod_security/apache_mod_security.xml http://files.pfsense.org/packages/amd64/8/All/ db42-4.2.52_5.tbz gdbm-1.8.3_3.tbz apr-ipv6-devrandom-gdbm-db42-1.4.2.1.3.10.tbz ap22-mod_memcache-0.1.0_4.tbz apache-2.2.17_1.tbz ap22-mod_security-2.5.12.tbz apache_mod_security.xml /usr/ports/devel/gettext /usr/ports/misc/help2man /usr/ports/devel/apr1 /usr/ports/devel/pkg-config /usr/ports/databases/db42 /usr/ports/databases/gdbm /usr/ports/www/apache22 /usr/ports/www/mod_security /usr/ports/www/mod_memcache Please visit the ProxyServer settings tab and set the service up so that it may be started. pure-ftpd http://www.pureftpd.org/ *DO NOT RUN THIS ON A FIREWALL. USE A DEDICATED MACHINE!* Pure FTPd Server is a fast, production quality, standards-conformant FTP server based on Troll-FTPd. It has no known vulnerabilities, is trivial to set up, and is especially designed for modern kernels. Features include PAM support, IPv6, chroot()ed home directories, virtual domains, built-in 'ls', FXP protocol, anti-warez system, bandwidth throttling, restricted ports for passive downloads, an LDAP backend, XML output, and more. FTP http://www.pfsense.com/packages/config/pure-ftpd.xml http://files.pfsense.org/packages/amd64/8/All/ pure-ftpd-1.0.29_1.tbz /usr/ports/ftp/pure-ftpd 1.0.29_1 Stable pure-ftpd.xml 1.0 1.0 ftp pure-ftpd.log true Avahi http://doc.pfsense.org/index.php/Avahi_package http://www.avahi.org/ Avahi is a system which facilitates service discovery on a local network. This means that you can plug your laptop or computer into a network and instantly be able to view other people who you can chat with, find printers to print to or find files being shared. This kind of technology is already found in Apple MacOS X (branded Rendezvous, Bonjour and sometimes Zeroconf) and is very convenient. Avahi is mainly based on Lennart Poettering's flexmdns mDNS implementation for Linux which has been discontinued in favour of Avahi. Network Management http://files.pfsense.org/packages/amd64/8/All/ /usr/ports/net/avahi /usr/ports/net/avahi-app avahi-0.6.28.tbz 0.6.25_1 ALPHA 1.2.3 http://www.pfsense.com/packages/config/avahi/avahi.xml avahi.xml Please visit the Avahi settings tab and select which interfaces you do not wish Avahi to listen on and click save to start the service. ntop http://www.ntop.org/ ntop is a network probe that shows network usage in a way similar to what top does for processes. In interactive mode, it displays the network status on the user's terminal. In Web mode it acts as a Web server, creating an HTML dump of the network status. It sports a NetFlow/sFlow emitter/collector, an HTTP-based client interface for creating ntop-centric monitoring applications, and RRD for persistently storing traffic statistics. Network Management http://files.pfsense.org/packages/amd64/8/All/ rrdtool-1.2.26_1.tbz gdbm-1.8.3_3.tbz perl-5.12.3.tbz libpcap-1.1.1_1.tbz GeoIP-1.4.8_1.tbz font-util-1.2.0.tbz webfonts-0.30_6.tbz ntop-4.0.1_1.tbz /usr/ports/net/GeoIP /usr/ports/databases/gdbm /usr/ports/databases/rrdtool12 /usr/ports/x11-fonts/font-util /usr/ports/graphics/graphviz /usr/ports/x11-fonts/webfonts /usr/ports/net/ntop WITHOUT_APNG=true WITHOUT_COLLATION_FIX=true WITHOUT_DEBUGGING=true WITHOUT_DEJAVU=true WITHOUT_DEVIL=true WITHOUT_DIGCOLA=true WITHOUT_EXTRA_PATCHES=true WITHOUT_FONTCONFIG=true WITHOUT_FPECTL=true WITHOUT_GAM_POLLER=true WITHOUT_GDBM=true WITHOUT_GDK_PIXBUF=true WITHOUT_GHOSTSCRIPT=true WITHOUT_GLITZ=true WITHOUT_GNOMEUI=true WITHOUT_GTK=true WITHOUT_GUILE=true WITHOUT_HUGE_STACK_SIZE=true WITHOUT_ICONV=true WITHOUT_IPSEPCOLA=true WITHOUT_LIBSIGSEGV=true WITHOUT_LOCALE=true WITHOUT_LUA=true WITHOUT_MING=true WITHOUT_MMAP=true WITHOUT_MULTIPLICITY=true WITHOUT_PANGOCAIRO=true WITHOUT_PCAP_PORT=true WITHOUT_PERL=true WITHOUT_PERL_MALLOC=true WITHOUT_PERL_MODULE=true WITHOUT_PHP=true WITHOUT_PTH=true WITHOUT_PYTHON=true WITHOUT_PYTHON_MODULE=true WITHOUT_RSVG=true WITHOUT_RUBY=true WITHOUT_RUBY_MODULE=true WITHOUT_SEM=true WITHOUT_SIMD=true WITHOUT_SITECUSTOMIZE=true WITHOUT_SMYRNA=true WITHOUT_SUIDPERL=true WITHOUT_TCL=true WITHOUT_THREADS=true WITHOUT_TK=true WITHOUT_X11=true WITHOUT_XCB=true WITHOUT_XMLDUMP=true WITHOUT_XPM=true WITHOUT_ZSH=true WITH_BASH=true WITH_EXTRA_ENCODINGS=true WITH_ICONV=true WITH_IPV6=true WITH_NLS=true WITH_PERL_64BITINT=true WITH_PYMALLOC=true WITH_TCPWRAPPER=true WITH_THREADS=true WITH_UCS4=true WITH_USE_PERL=true 4.0.1_1 v2 BETA 2.0 http://www.pfsense.com/packages/config/ntop2/ntop.xml ntop.xml FreeSWITCH http://www.freeswitch.org/ FreeSWITCH is an open source telephony platform designed to facilitate the creation of voice and chat driven products scaling from a soft-phone up to a soft-switch. It can be used as a simple switching engine, a PBX, a media gateway or a media server to host IVR applications using simple scripts or XML to control the callflow. Services http://doc.pfsense.org/index.php/FreeSWITCH http://www.pfsense.com/packages/config/freeswitch/freeswitch.xml http://files.pfsense.org/packages/amd64/8/All/ /usr/ports/net/freeswitch 0.8.3.6 Beta 3.2.1 markjcrane@gmail.com freeswitch.xml true FreeSWITCH Dev http://www.freeswitch.org/ FreeSWITCH package development version. Services http://doc.pfsense.org/index.php/FreeSWITCH http://www.pfsense.com/packages/config/freeswitch_dev/freeswitch.xml http://files.pfsense.org/packages/amd64/8/All/ /usr/ports/net/freeswitch 0.9.7.26 Beta 3.2.3 markjcrane@gmail.com freeswitch.xml true Notes Track things you want to note for this system. Status http://www.pfsense.com/packages/config/notes/notes.xml http://files.pfsense.org/packages/amd64/8/All/ 0.2.4 Alpha 1.2.1 markjcrane@gmail.com notes.xml TFTP Trivial File Transport Protocol is a very simple file transfer protocol. Often used with routers, voip phones and more. Services http://www.pfsense.com/packages/config/tftp2/tftp.xml http://files.pfsense.org/packages/amd64/8/All/ 2.0 Stable 2.0 tftp.xml PHPService PHP run as a service it can do anything PHP can do including but not limited to monitoring files, CPU, RAM, and send alerts to the syslog. Services http://doc.pfsense.org/index.php/PHPService http://www.pfsense.com/packages/config/phpservice/phpservice.xml http://files.pfsense.org/packages/amd64/8/All/ 0.4.1 Beta 1.2.1 markjcrane@gmail.com phpservice.xml Backup Tool to Backup and Restore files and directories. System http://www.pfsense.com/packages/config/backup/backup.xml http://files.pfsense.org/packages/amd64/8/All/ 0.1.5 Beta 1.2 markjcrane@gmail.com backup.xml Cron The cron utility is used to manage commands on a schedule. Services http://www.pfsense.com/packages/config/cron/cron.xml http://files.pfsense.org/packages/amd64/8/All/ 0.1.5 Beta 1.2 markjcrane@gmail.com cron.xml vHosts It is a web server package that can host HTML, Javascript, CSS, and PHP. It uses the lighttpd web server that is already installed. It uses PHP5 in FastCGI mode and has access to PHP Data Ojbects and PDO SQLite. Services http://doc.pfsense.org/index.php/vhosts http://www.pfsense.com/packages/config/vhosts/vhosts.xml http://files.pfsense.org/packages/amd64/8/All/ 0.7.4 Stable 1.2.3 markjcrane@gmail.com vhosts.xml snort http://forum.pfsense.org/index.php/topic,16847.0.html http://www.snort.org Snort is an open source network intrusion prevention and detection system (IDS/IPS). Combining the benefits of signature, protocol, and anomaly-based inspection. Security http://files.pfsense.org/packages/amd64/8/All/ pcre-8.10.tbz mysql-client-5.1.53.tbz snort-2.8.6.1.tbz perl-threaded-5.10.1_3.tbz /usr/ports/devel/pcre /usr/ports/lang/perl5.10 /usr/ports/databases/mysql51-client /usr/ports/security/snort /usr/ports/lang/perl5.10 WITH_THREADS=yes WITH_IPV6=true WITH_MPLS=true WITH_GRE=true WITHOUT_TARGETBASED=true WITH_DECODERPRE=true WITH_ZLIB=true WITH_NORMALIZER=true WITH_REACT=true WITH_PERFPROFILE=true WITH_FLEXRESP3=true WITHOUT_MYSQL=true WITHOUT_ODBC=true WITHOUT_POSTGRESQL=true WITHOUT_PRELUDE=true WITH_SNORTSAM=true WITH_PFSENSE=true http://www.pfsense.com/packages/config/snort/snort.xml 2.8.6.1 pkg v. 2.0 2.0 Stable /snort.xml Please visit the Snort settings tab and enter your oinkid code. Afterwards visit the update rules tab to download the snort rules. Orion-ids-dev http://forum.pfsense.org/index.php/topic,16847.0.html http://www.snort.org Testing Install Only, Currently Broken as of 06232011 Security http://files.pfsense.org/packages/amd64/8/All/ perl-5.12.4.tbz snortsam-2.70.tbz snort-2.9.0.5.tbz /usr/ports/security/snort /usr/ports/security/snortsam WITH_IPV6=true WITH_MPLS=true WITH_GRE=true WITHOUT_TARGETBASED=true WITH_DECODERPRE=true WITH_ZLIB=true WITH_NORMALIZER=true WITH_REACT=true WITH_PERFPROFILE=true WITH_FLEXRESP3=true WITHOUT_MYSQL=true WITHOUT_ODBC=true WITHOUT_POSTGRESQL=true WITHOUT_PRELUDE=true WITH_SNORTSAM=true WITH_PFSENSE=true http://www.pfsense.com/packages/config/snort-dev/snort.xml 2.9.0.5 pkg v. 2.0 2.0 UnStable /snort.xml spamd http://www.openbsd.org/spamd/ Tarpits like spamd are fake SMTP servers, which accept connections but don't deliver mail. Instead, they keep the connections open and reply very slowly. If the peer is patient enough to actually complete the SMTP dialogue (which will take ten minutes or more), the tarpit returns a 'temporary error' code (4xx), which indicates that the mail could not be delivered successfully and that the sender should keep the mail in their queue and retry again later. Services http://www.pfsense.com/packages/config/spamd/spamd.xml http://files.pfsense.org/packages/amd64/8/All/ spamd-4.8.0.tbz 4.8.0 Beta 1.2.1 spamd.xml /usr/ports/mail/spamd spamd spamd.log Postfix Forwarder http://www.postfix.org/ Postfix mail forwarder acts as a relay to send incoming mail to the designated mail server for each domain. Services http://www.pfsense.com/packages/config/postfix/postfix.xml http://files.pfsense.org/packages/amd64/8/All/ postfix-2.7.2,1.tbz 2.7.2,1_1.1 Beta 2.0 postfix.xml /usr/ports/mail/postfix WITHOUT_PCRE=true siproxd http://siproxd.sourceforge.net/ Proxy for handling NAT of multiple SIP devices to a single public IP. Services http://www.pfsense.com/packages/config/siproxd.xml http://files.pfsense.org/packages/amd64/8/All/ siproxd-0.8.0.tbz http://doc.pfsense.org/index.php/Siproxd_package /usr/ports/net/siproxd 0.8.0_2 Beta 1.2.1 siproxd.xml OpenBGPD OpenBGPD is a FREE implementation of the Border Gateway Protocol, Version 4. It allows ordinary machines to be used as routers exchanging routes with other systems speaking the BGP protocol. NET http://www.pfsense.com/packages/config/openbgpd/openbgpd.xml /usr/ports/net/openbgpd 0.5.2 STABLE http://doc.pfsense.org/index.php/OpenBGPD_package 1.3 openbgpd.xml http://files.pfsense.org/packages/amd64/8/All/ openbgpd-4.7.20100410.tbz OpenOSPFD OSPF routing protocol cmb@pfsense.org 0.5.1 Routing BETA http://files.pfsense.org/packages/amd64/8/All/ openospfd-4.6.tbz http://www.pfsense.com/packages/config/openospfd/openospfd.xml /usr/home/pfsense/tools/pfPorts/openospfd /usr/ports/devel/libevent 1.2.1 openospfd.xml libevent-1.4.14b_1.tbz Lightsquid High perfomance web proxy report. Requires squid HTTP proxy. http://lightsquid.sf.net/ Network Report 1.8.2 pkg v.1.5 dv_serg@mail.ru http://files.pfsense.org/packages/amd64/8/All/ lightsquid-1.8_2.tbz perl-5.12.3.tbz /usr/ports/www/lightsquid /usr/ports/lang/perl5.12 WITHOUT_DEBUGGING=true WITHOUT_GDBM=true WITHOUT_PERL_MALLOC=true WITH_PERL_64BITINT=true WITHOUT_THREADS=true WITHOUT_MULTIPLICITY=true WITHOUT_SUIDPERL=true WITHOUT_SITECUSTOMIZE=true WITH_USE_PERL=true Beta 2 http://www.pfsense.com/packages/config/lightsquid/lightsquid.xml lightsquid.xml true vnstat2 http://humdi.net/vnstat/ A console-based network traffic monitor + vnstat PHP frontend http://forum.pfsense.org/index.php/topic,14179.0.html Network Management ftp://ftp.freebsd.org/pub/FreeBSD/ports/amd64/packages-8.1-release/All/ vnstat-1.10_2.tbz /usr/ports/net/vnstat 1.10_2 test 2.0 crazypark2@yahoo.dk http://www.pfsense.com/packages/config/vnstat2/vnstat2.xml vnstat2.xml phpSysInfo http://phpsysinfo.sourceforge.net/ PHPSysInfo is a customizable PHP Script that parses /proc, and formats information nicely. It will display information about system facts like Uptime, CPU, Memory, PCI devices, SCSI devices, IDE devices, Network adapters, Disk usage, and more. System 2.5.4 Beta 1.0 http://www.pfsense.com/packages/config/phpsysinfo/bin/ mbmon-205_5.tbz /usr/ports/sysutils/mbmon http://www.pfsense.com/packages/config/phpsysinfo/phpsysinfo.xml phpsysinfo.xml dns-server pfSense version of TinyDNS which features failover host support http://cr.yp.to/djbdns.html Services 1.0.6.16 Beta http://doc.pfsense.org/index.php/Tinydns_package 2.0 http://www.pfsense.com/packages/config/tinydns/tinydns.xml tinydns.xml http://files.pfsense.org/packages/amd64/8/All/ ucspi-tcp-0.88_2.tbz daemontools-0.76_16.tbz djbdns-ipv6-1.05.b23_13.tbz YES /usr/ports/sysutils/ucspi-tcp /usr/ports/sysutils/daemontools /home/pfsense/tools/pfPorts/djbdns WITHOUT_MAN=true WITH_SRV=true Open-VM-Tools VMware Tools http://open-vm-tools.sourceforge.net/ Services 217847 Stable http://doc.pfsense.org/index.php/Open_VM_Tools_package 2.0 http://www.pfsense.org/packages/config/open-vm-tools_2/open-vm-tools.xml open-vm-tools.xml http://files.pfsense.org/packages/amd64/8/All/ /usr/ports/emulators/open-vm-tools-nox11/ open-vm-tools-nox11-313025_2.tbz icu-4.6.1.tbz /usr/ports/devel/icu fusefs-kmod-0.3.9.p1.20080208_7.tbz /usr/ports/packages/sysutils/ fusefs-libs-2.7.4.tbz /usr/ports/packages/sysutils/ glib-2.26.1_1.tbz /usr/ports/packages/devel/ libdnet-1.11_3.tbz /usr/ports/packages/net/ libiconv-1.13.1_1.tbz /usr/ports/packages/converters/ pcre-8.12.tbz /usr/ports/packages/devel/ perl-5.12.3.tbz /usr/ports/packages/perl5.12/ pkg-config-0.25_1.tbz /usr/ports/packages/devel/ python27-2.7.1_1.tbz /usr/ports/packages/python/ AutoConfigBackup portal@bsdperimeter.com Automatically backs up your pfSense configuration. All contents are encrypted on the server. Requires pfSense Premium Support Portal Subscription from https://portal.pfsense.org https://portal.pfsense.org Services 1.19 Stable 1.2 http://doc.pfsense.org/index.php/AutoConfigBackup http://www.pfsense.com/packages/config/autoconfigbackup/autoconfigbackup.xml autoconfigbackup.xml arping Broadcasts a who-has ARP packet on the network and prints answers. http://www.habets.pp.se/synscan/programs.php?prog=arping Services 2.09.1 Stable 1.0.1 http://www.pfsense.com/packages/config/arping/arping.xml arping.xml http://files.pfsense.org/packages/amd64/8/All/ arping-2.09.tbz /usr/ports/net/arping http://doc.pfsense.org/index.php/Arping nmap billm@pfsense.org NMap is a utility for network exploration or security auditing. It supports ping scanning (determine which hosts are up), many port scanning techniques (determine what services the hosts are offering), version detection (determine what application/service is runing on a port), and TCP/IP fingerprinting (remote host OS or device identification). It also offers flexible target and port specification, decoy/stealth scanning, SunRPC scanning, and more. Most Unix and Windows platforms are supported in both GUI and command line modes. Several popular handheld devices are also supported, including the Sharp Zaurus and the iPAQ. Security http://files.pfsense.org/packages/amd64/8/All/ nmap-5.51.tbz http://www.pfsense.com/packages/config/nmap/nmap.xml 5.51 Stable http://doc.pfsense.org/index.php/Nmap_package 1.2.1 nmap.xml /usr/ports/security/nmap libpcap-1.1.1.tbz imspector IMSpector is an Instant Messenger transparent proxy with logging capabilities. Currently it supports MSN, AIM, ICQ, Yahoo and IRC to different degrees. http://www.imspector.org/ Network Management billm@pfsense.org 0.9-4 2.0 BETA http://doc.pfsense.org/index.php/IMSpector_package http://www.pfsense.com/packages/config/imspector/imspector.xml imspector.xml http://files.pfsense.org/packages/amd64/8/All/ imspector-0.9.tbz /usr/home/pfsense/tools/pfPorts/imspector nut Network UPS Tools http://www.networkupstools.org/ Network Management 2.2.2_5 pkg 1.4 BETA 2.0 rswagoner@gmail.com http://www.pfsense.com/packages/config/nut/nut.xml nut.xml http://files.pfsense.org/packages/amd64/8/All/ nut-2.2.2_5.tbz /usr/ports/sysutils/nut22 http://doc.pfsense.org/index.php/Nut_package diag_new_states Paul Taylors version of Diagnostics States which utilizes pftop. http://www.addressplus.net Network Management 0.2 ptaylor@addressplus.net 1.2.1 BETA http://www.pfsense.org/packages/config/diag_states_pt/diag_new_states.xml http://www.pfsense.com/packages/config/diag_states_pt/diag_new_states.xml darkstat http://dmr.ath.cx/net/darkstat/ darkstat is a network statistics gatherer. It's a packet sniffer that runs as a background process on a cable/DSL router, gathers all sorts of statistics about network usage, and serves them over HTTP. Network Management http://files.pfsense.org/packages/amd64/8/All/ darkstat-3.0.713.tbz 3.0.713 Stable 1.2.1 sullrich+pfsp@gmail.com http://www.pfsense.com/packages/config/darkstat/darkstat.xml darkstat.xml /usr/ports/net-mgmt/darkstat pfflowd http://www.mindrot.org/pfflowd.html pfflowd converts OpenBSD PF status messages (sent via the pfsync interface) to Cisco NetFlow datagrams. These datagrams may be sent (via UDP) to a host of one's choice. Utilising the OpenBSD stateful packet filter infrastructure means that flow tracking is very fast and accurate. Network Management http://www.pfsense.com/packages/config/pfflowd.xml http://files.pfsense.org/packages/amd64/8/All/ pfflowd-0.8.tbz 0.8.2 Stable 2.0 pfflowd.xml /usr/ports/net/pfflowd widentd RFC1413 auth/identd daemon with fixed fake reply http://www.webweaving.org/widentd Services http://files.pfsense.org/packages/amd64/8/All/ widentd-1.03_1.tbz 1.03_1 Stable http://doc.pfsense.org/index.php/Widentd_package 1.2.1 http://www.pfsense.com/packages/config/widentd.xml widentd.xml /usr/ports/net/widentd freeradius http://www.freeradius.org/ A free implementation of the RADIUS protocol. System 1.1.8 Beta 2.0 none http://files.pfsense.org/packages/amd64/8/All/ freeradius-1.1.8_2.tbz libltdl-2.2.10.tbz http://www.pfsense.org/packages/config/freeradius.xml freeradius.xml /usr/ports/net/freeradius /usr/ports/devel/libltdl bandwidthd http://bandwidthd.sourceforge.net/ BandwidthD tracks usage of TCP/IP network subnets and builds html files with graphs to display utilization. Charts are built by individual IPs, and by default display utilization over 2 day, 8 day, 40 day, and 400 day periods. Furthermore, each ip address's utilization can be logged out at intervals of 3.3 minutes, 10 minutes, 1 hour or 12 hours in cdf format, or to a backend database server. HTTP, TCP, UDP, ICMP, VPN, and P2P traffic are color coded. System 2.0.1.3 BETA 1.2.1 http://files.pfsense.org/packages/amd64/8/All/ bandwidthd-2.0.1_4.tbz libpcap-1.1.1.tbz http://www.pfsense.org/packages/config/bandwidthd/bandwidthd.xml bandwidthd.xml /usr/ports/net-mgmt/bandwidthd /usr/ports/net/libpcap stunnel http://www.stunnel.org/ An SSL encryption wrapper between remote client and local or remote servers. Network Management http://files.pfsense.org/packages/amd64/8/All/ stunnel-4.34_1.tbz 4.34 Stable http://doc.pfsense.org/index.php/Stunnel_package 1.2.1 http://www.pfsense.com/packages/config/stunnel.xml stunnel.xml /usr/ports/security/stunnel WITHOUT_FORK=true WITH_PTHREAD=true WITHOUT_UCONTEXT=true WITHOUT_IPV6=true WITH_LIBWRAP=true WITHOUT_SSL_PORT=true iperf http://dast.nlanr.net/Projects/Iperf/ Iperf is a tool for testing network throughput, loss, and jitter. Network Management http://www.pfsense.com/packages/config/iperf.xml http://files.pfsense.org/packages/amd64/8/All/ iperf-2.0.5.tbz 2.0.2_1 Beta http://doc.pfsense.org/index.php/Iperf_package 1.2.1 iperf.xml /usr/ports/benchmarks/iperf netio http://freshmeat.net/projects/netio/ This is a network benchmark for DOS, OS/2 2.x, Windows NT/2000 and Unix. It measures the net throughput of a network via NetBIOS and/or TCP/IP protocols (Unix and DOS only support TCP/IP) using various different packet sizes. Network Management http://www.pfsense.com/packages/config/netio.xml http://files.pfsense.org/packages/amd64/8/All netio-1.26.tbz 1.26 2.0 ALPHA netio.xml /usr/ports/benchmarks/netio mtr-nox11 billm@pfsense.org Enhanced traceroute replacement http://www.bitwizard.nl/mtr/ Network Management http://files.pfsense.org/packages/amd64/8/All/ mtr-nox11-0.80.tbz 0.80 Stable 2.0 http://www.pfsense.com/packages/config/mtr-nox11.xml mtr-nox11.xml /usr/ports/net/mtr squid3 EXPERIMENTAL! Not all directives are ported yet! High performance web proxy cache. http://www.squid-cache.org/ Network 3.1.14_0.1 ALPHA 2.0 fernando@netfilter.com.br seth.mos@xs4all.nl mfuchs77@googlemail.com http://files.pfsense.org/packages/amd64/8/All/ squid-3.1.9.tbz squid_radius_auth-1.10.tbz libwww-5.4.0_4.tbz WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_IPV6=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITHOUT_SQUID_IPFW=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_ECAP=true WITH_SQUID_ICAP=true WITHOUT_SQUID_ESI=true WITH_SQUID_AUFS=true WITHOUT_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITHOUT_SQUID_DEBUG=true http://www.pfsense.org/packages/config/squid3/squid.xml squid.xml true LCDproc LCD display driver http://www.lcdproc.org/ Utility lcdproc-0.5.3_1 BETA 1.2.1 seth.mos@xs4all.nl http://files.pfsense.org/packages/amd64/8/All/ lcdproc-0.5.3_1.tbz http://www.pfsense.org/packages/config/lcdproc/lcdproc.xml lcdproc.xml /usr/ports/sysutils/lcdproc WITH_USB=true arpwatch Arpwatch monitors ethernet/ip address pairings. It also logs certain changes to syslog. http://www-nrg.ee.lbl.gov/ Security http://files.pfsense.org/packages/amd64/8/All/ arpwatch-2.1.a15_5.tbz /usr/ports/net-mgmt/arpwatch 2.1.a15_5 ALPHA 2.0 http://www.pfsense.com/packages/config/arpwatch.xml arpwatch.xml arpwatch arpwatch.log squidGuard High perfomance web proxy URL filter. Requires proxy Squid package. http://www.squidGuard.org/ dv_serg@mail.ru Network Management 1.3_1 pkg v.1.9 Beta 1.1 http://files.pfsense.org/packages/amd64/8/All/ squidGuard-1.4_3.tbz db41-4.1.25_4.tbz db3-3.3.11_3,1.tbz cyrus-sasl-2.1.23_3.tbz /usr/ports/www/squidguard /usr/ports/databases/db41 /usr/ports/databases/db3 /usr/ports/security/cyrus-sasl2 WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_CARP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_AUFS=true WITH_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITH_SAMPLE_BL=true WITH_LDAP=true WITH_SASL=true WITH_FETCH=true http://www.pfsense.org/packages/config/squidGuard/squidguard.xml squidguard.xml Zabbix Agent Monitoring agent. Services http://www.pfsense.com/packages/config/zabbix-agent/zabbix-agent.xml 1.8.5,2 FINAL 1.2.3 zabbix-agent.xml remco.verhoef@redfive.biz /usr/ports/net-mgmt/zabbix-agent http://files.pfsense.org/packages/amd64/8/All/ zabbix-agent-1.8.5,2.tbz Zabbix Proxy Monitoring agent proxy. Services http://www.pfsense.com/packages/config/zabbix-proxy/zabbix-proxy.xml 1.8.5,2_1 FINAL 1.2.3 zabbix-proxy.xml cmb@pfsense.org /usr/ports/net-mgmt/zabbix-proxy WITHOUT_CARES=true WITHOUT_CURL_DEBUG=true WITHOUT_DEBUGGING=true WITHOUT_DMALLOC=true WITHOUT_ETCSYMLINK=true WITHOUT_EXTRA_PATCHES=true WITHOUT_GDBM=true WITHOUT_GNUTLS=true WITHOUT_IODBC=true WITHOUT_IPMI=true WITHOUT_KERBEROS4=true WITHOUT_LDAP=true WITHOUT_LDAPS=true WITHOUT_LIBIDN=true WITHOUT_LIBSIGSEGV=true WITHOUT_LIBSSH2=true WITHOUT_MFD_REWRITES=true WITHOUT_MULTIPLICITY=true WITHOUT_MYSQL=true WITHOUT_NTLM=true WITHOUT_PERL_MALLOC=true WITHOUT_PGSQL=true WITHOUT_RTMP=true WITHOUT_SITECUSTOMIZE=true WITHOUT_SSH=true WITHOUT_SUIDPERL=true WITHOUT_THREADS=true WITHOUT_TKMIB=true WITHOUT_TRACKMEMORY=true WITHOUT_UNIXODBC=true WITH_CA_BUNDLE=true WITH_CURL=true WITH_DUMMY=true WITH_EXTRA_ENCODINGS=true WITH_FETCH=true WITH_FPING=true WITH_IPV6=true WITH_JABBER=true WITH_LDAP=true WITH_OPENSSL=true WITH_PERL=true WITH_PERL_64BITINT=true WITH_PERL_EMBEDDED=true WITH_PROXY=true WITH_SASL=true WITH_SQLITE=true WITH_USE_PERL=true WITH_WERROR=true http://files.pfsense.org/packages/amd64/8/All/ zabbix-proxy-1.8.5,2.tbz OpenVPN Client Export Utility Allows a pre-configured OpenVPN Windows Client or or Mac OSX's Viscosity configuration bundle to be exported directly from pfSense. Security http://files.pfsense.org/packages/amd64/8/All/ p7zip-9.13.tbz zip-3.0.tbz /usr/ports/archivers/p7zip /usr/ports/archivers/zip 0.9 BETA 2.0 http://www.pfsense.com/packages/config/openvpn-client-export/openvpn-client-export.xml openvpn-client-export.xml HAVP antivirus http://www.server-side.de/ Antivirus: HAVP (HTTP Antivirus Proxy) is a proxy with a ClamAV anti-virus scanner. The main aims are continuous, non-blocking downloads and smooth scanning of dynamic and password protected HTTP traffic. Havp antivirus proxy has a parent and transparent proxy mode. It can be used with squid or standalone. And File Scanner for local files. Network Management http://files.pfsense.org/packages/amd64/8/All/ havp-0.91_1.tbz /usr/ports/www/havp 0.91 BETA 1.2.2 http://www.pfsense.com/packages/config/havp/havp.xml havp.xml dv_serg@mail.ru Please check the HAVP settings. pfJailctl pfSense wrapper for jailctl - a jail management tool. Allows you to run jails on pfSense. http://anduin.net/jailctl/ System 0.51 1.2.3 BETA http://doc.pfsense.org/index.php/PfJailctl_package http://www.pfsense.com/packages/config/jailctl.xml jailctl.xml ltning-jailctl@anduin.net jail_template Basic template for jails, probably requires pfJailctl to be useful. Includes 'base' and 'manpages' dists. http://anduin.net/jailctl/ System 0.2 1.2.3 BETA http://doc.pfsense.org/index.php/PfJailctl_package http://www.pfsense.com/packages/config/jail_template.xml jail_template.xml ltning-jailctl@anduin.net blinkled Allows you to use LEDs for network activity on supported platforms (ALIX, WRAP, Soekris, etc) System 0.2 Beta jimp@pfsense.org 1.2.3 http://www.pfsense.org/packages/config/blinkled8/blinkled.xml blinkled.xml http://doc.pfsense.org/index.php/BlinkLED_Package http://doc.pfsense.org/index.php/BlinkLED_Package Dashboard Widget: Snort Dashboard widget for Snort. System http://www.pfsense.com/packages/config/widget-snort/widget-snort.xml 0.3 BETA 1.2 widget-snort.xml Dashboard Widget: HAVP Dashboard widget for HAVP alerts. System http://www.pfsense.com/packages/config/widget-havp/widget-havp.xml 0.1 BETA 1.2 widget-havp.xml Dashboard Widget: Antivirus Status Dashboard widget for HAVP status. System http://www.pfsense.com/packages/config/widget-antivirus/widget-antivirus.xml 0.1 BETA 1.2 widget-havp.xml RRD Summary RRD Summary Page, which will give a total amount of traffic passed In/Out during this and the previous month. System 1.1 Beta jimp@pfsense.org 1.2.3 http://www.pfsense.org/packages/config/rrd-summary/rrd-summary.xml rrd-summary.xml ifBWStats Interface Bandwidth Stats. Tracks data usage on each interface. Helpful if your isp caps your montly data usage. No dependancies (ie rrd). Diagnostics http://www.pfsense.org/packages/config/ifbwstats/ifbwstats.xml 1.0 Beta 3.0 ifbwstats.xml Unbound Unbound is a validating, recursive, and caching DNS resolver. This package is a drop in replacement for Services: DNS Forwarder and also supports DNSSEC extensions. Once installed please configure the Unbound service by visiting Services: Unbound DNS. http://www.unbound.net/ Services 1.4.12_03 Alpha warren@decoy.co.za 2.0 http://doc.pfsense.org/index.php/Unbound_package http://www.pfsense.com/packages/config/unbound/unbound.xml unbound.xml http://files.pfsense.org/packages/amd64/8/All/ unbound-1.4.12.tbz ldns-1.6.10.tbz expat-2.0.1_1.tbz libevent-1.4.14b_2.tbz WITH_LIBEVENT=true WITH_THREADS=true WITHOUT_GOST=true WITHOUT_MAN=true unbound unbound.log Unbound Please visit Services: Unbound DNS to configure the Unbound DNS service. Remember you will need to disable Services: DNS Forwarder before starting Unbound. Also note if your DHCP server makes use of pfSense as the DNS server, then you will now need to add the IP address of the respective interface to the DNS servers field, in the DHCP server configuration page. Shellcmd The shellcmd utility is used to manage commands on system startup. Services http://www.pfsense.com/packages/config/shellcmd/shellcmd.xml 0.5 Beta 1.2 markjcrane@gmail.com shellcmd.xml NRPE v2 http://wiki.nagios.org/index.php/Howtos:nrpe_nsca NRPE is an addon for Nagios that allows you to execute plugins on remote Linux/Unix hosts. This is useful if you need to monitor local resources/attributes like disk usage, CPU load, memory usage, etc. on a remote host. Services http://files.pfsense.org/packages/amd64/8/All/ nrpe-2.12_3.tbz nagios-plugins-1.4.15_1,1.tbz /usr/ports/net-mgmt/nrpe2 WITH_SSL=true WITHOUT_ARGS=true http://www.pfsense.com/packages/config/nrpe2/nrpe2.xml 2.12_3 v2 Beta 1.2 erik@erikkristensen.com nrpe2.xml mailreport Allows you to setup periodic e-mail reports containing RRD graphs. Network Management 1.1 BETA 2.0 http://www.pfsense.com/packages/config/mailreport/mailreport.xml mailreport.xml