222 packagecopy@files.pfsense.org /usr/local/www/files/packages/8/All/ Asterisk http://forum.pfsense.org/index.php/topic,47210.0.html Asterisk turns an ordinary computer into a communications server.]]> http://www.asterisk.org/ Services 1.8 pkg v0.3.1 Beta 2.0 http://www.pfsense.com/packages/config/asterisk/asterisk.xml http://e-sac.siteseguro.ws/packages/8/All/ asterisk18-1.8.8.1.tbz openldap-sasl-client-2.4.26.tbz asterisk-1.8.19.0-i386.pbi /usr/ports/net/asterisk marcellocoutinho@gmail.com robreg@zsurob.hu asterisk.xml Please visit the Asterisk tab on status menu. bind http://www.isc.org/downloads/BIND/ Services 9.9.4 pkg v 0.3.2 RC 2.1 http://www.pfsense.com/packages/config/bind/bind.xml bind.xml http://files.pfsense.org/packages/8/All/ bind-9.9.4-i386.pbi /usr/ports/dns/bind99 bind dns/bind99 OPTIONS_UNSET=IDN REPLACE_BASE FIXED_RRSET GSSAPI LARGE_FILE;OPTIONS_SET=IPV6 LINKS SSL THREADS XML DLZ_FILESYSTEM FILTER_AAAA SIGCHASE RRL Filer Allows you to create and overwrite files from the GUI. File Management http://doc.pfsense.org/index.php/Filer_package http://www.pfsense.com/packages/config/filer/filer.xml 0.60 Beta 2.0 bscholer@cshl.edu filer.xml Country Block Block countries - This has been replaced by pfblocker. <u>This is a legacy app</u> Firewall http://forum.pfsense.org/index.php/topic,25732.0.html http://www.pfsense.com/packages/config/countryblock/countryblock.xml http://files.pfsense.org/packages/8/All/ 0.2.4 Beta 1.2.2 tom@tomschaefer.org countryblock.xml Strikeback Detect port scans with iplog and strikeback http://forum.pfsense.org/index.php/topic,37225.0.html Services 0.1 BETA 2.0 tom@tomschaefer.org http://www.pfsense.com/packages/config/strikeback/strikeback.xml strikeback.xml File Manager PHP File Manager Diagnostics http://forum.pfsense.org/index.php/topic,26974.0.html http://pfsense.org/packages/config/filemgr/filemgr.xml 0.1.3 Beta 2.0 tom@tomschaefer.org filemgr.xml pfBlocker Assign many IP urls lists from sites like I-blocklist to a single alias and then choose rule action to take.
This package also Block countries and IP ranges.
pfBlocker replaces Countryblock and IPblocklist.]]>
Firewall http://forum.pfsense.org/index.php/topic,42543.0.html http://pfsense.org/packages/config/pf-blocker/pfblocker.xml http://files.pfsense.org/packages/8/All/ 1.0.2 Release 2.0 tom@tomschaefer.org marcellocoutinho@gmail.com pfblocker.xml
anyterm Ajax Interactive Shell - Have you ever wanted SSH or telnet access to your system from an internet desert - from behind a strict firewall, from an internet cafe, or even from a mobile phone? Anyterm is a combination of a web page and a process that runs on your web server that provides this access. WARNING! We suggest using Stunnel in combination with this package! http://anyterm.org/ http://doc.pfsense.org/index.php/AnyTerm_package Diagnostics 0.5 BETA 1.2.3 http://www.pfsense.com/packages/config/anyterm/anyterm.xml anyterm.xml haproxy http://doc.pfsense.org/index.php/haproxy_package This package implements both TCP and HTTP balance features from Haproxy.
Supports acl's for smart backend switching.]]>
http://haproxy.1wt.eu/ Services 1.4.24 pkg v 1.2.4 Release 2.0 http://www.pfsense.com/packages/config/haproxy/haproxy.xml haproxy.xml http://files.pfsense.org/packages/8/All/ haproxy-1.4.24.tbz haproxy-1.4.24-i386.pbi /usr/ports/net/haproxy
haproxy-full http://doc.pfsense.org/index.php/haproxy_package This package implements both TCP and HTTP balance features from Haproxy.
(Legacy version)]]>
http://haproxy.1wt.eu/ Services 1.4.23 pkg v 1.0 Release 2.0 http://www.pfsense.com/packages/config/haproxy-legacy/haproxy.xml haproxy.xml http://files.pfsense.org/packages/8/All/ haproxy-1.4.24.tbz haproxy-1.4.24-i386.pbi
haproxy-devel http://doc.pfsense.org/index.php/haproxy_package This package implements TCP, HTTP and HTTPS balance features from Haproxy.
Supports acl's for smart backend switching.]]>
http://haproxy.1wt.eu/ Services 1.5-dev19 pkg v 0.5 Release 2.1 http://www.pfsense.com/packages/config/haproxy-devel/haproxy.xml haproxy.xml http://files.pfsense.org/packages/8/All/ haproxy-1.4.21.tbz haproxy-devel-1.5-dev19-i386.pbi /usr/ports/net/haproxy-devel security/openssl haproxy-devel /usr/ports/net/haproxy-devel WITH_OPENSSL_PORT=yes;OPTIONS_UNSET=PCRE DPCRE;OPTIONS_SET=OPENSSL SPCRE
Apache with mod_security-dev http://doc.pfsense.org/index.php/ProxyServerModSecurity_package http://www.modsecurity.org/ ModSecurity is a web application firewall that can work either embedded or as a reverse proxy. It provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis. In addition this package allows URL forwarding which can be convenient for hosting multiple websites behind pfSense using 1 IP address. Network Management 2.2.23 pkg v0.2.4 ALPHA 2.0 http://www.pfsense.com/packages/config/apache_mod_security-dev/apache_virtualhost.xml http://files.pfsense.org/packages/8/All/ db42-4.2.52_5.tbz gdbm-1.9.1.tbz apr-ipv6-devrandom-gdbm-db42-1.4.5.1.3.12_1.tbz ap22-mod_memcache-0.1.0_4.tbz apache-2.2.22_5.tbz ap22-mod_security-2.6.5_1.tbz proxy_mod_security-2.2.23_3-i386.pbi git-1.8.1.3-i386.pbi apache_virtualhost.xml /usr/ports/devel/gettext /usr/ports/misc/help2man /usr/ports/devel/apr1 /usr/ports/devel/pkg-config /usr/ports/databases/db42 /usr/ports/databases/gdbm /usr/ports/www/apache22-worker-mpm /usr/ports/www/mod_security /usr/ports/www/mod_memcache /usr/ports/www/p5-LWP-Protocol-https /usr/ports/www/p5-LWP-UserAgent-Determined /usr/ports/security/gnupg /user/ports/net/spread /user/ports/textproc/p5-XML-Smart /user/ports/lang/p5-Switch /user/ports/www/p5-Data-Validate-URI /user/ports/devel/p5-Data-Types /user/ports/devel/p5-Acme-Comment proxy_mod_security devel/gettext misc/help2man databases/db42 databases/gdbm devel/apr1 www/p5-LWP-UserAgent-Determined www/p5-LWP-Protocol-https security/gnupg security/p5-GnuPG net/spread textproc/p5-XML-Smart lang/p5-Switch www/p5-Data-Validate-URI devel/p5-Data-Types devel/p5-Acme-Comment www/apache22-worker-mpm www/mod_security www/mod_memcache OPTIONS_UNSET=BDB MYSQL PGSQL;OPTIONS_SET=SQLITE THREADS IPV6 SSL;WITH_MPM=worker;apache22-worker-mpm_UNSET=AUTHNZ_LDAP AUTHN_DBD BUCKETEER CASE_FILTER CASE_FILTER_IN CGID DBD EXT_FILTER LDAP LOG_FORENSIC OPTIONAL_FN_EXPORT OPTIONAL_FN_IMPORT OPTIONAL_HOOK_EXPORT OPTIONAL_HOOK_IMPORT SUBSTITUTE SUEXEC SUEXEC_RSRCLIMIT;apache22-worker-mpm_SET=ACTIONS ALIAS AUTHN_ALIAS VHOST_ALIAS ASIS AUTHN_ANON AUTHN_DBM AUTHN_DEFAULT AUTHN_FILE AUTHZ_DBM AUTHZ_DEFAULT AUTHZ_GROUPFILE AUTHZ_HOST AUTHZ_OWNER AUTHZ_USER AUTH_BASIC AUTH_DIGEST AUTOINDEX CACHE DISK_CACHE FILE_CACHE MEM_CACHE CERN_META CGI CHARSET_LITE DAV DAV_FS DEFLATE DIR DUMPIO ENV EXPIRES FILTER HEADERS IMAGEMAP INCLUDE INFO LOGIO LOG_CONFIG MIME MIME_MAGIC NEGOTIATION PROXY PROXY_AJP PROXY_BALANCER PROXY_CONNECT PROXY_FTP PROXY_HTTP PROXY_SCGI REQTIMEOUT REWRITE SETENVIF SPELING STATUS THREADS UNIQUE_ID USERDIR USERTRACK VERSION;mod_security_SET=MLOGC Please visit the ProxyServer settings tab and set the service up so that it may be started. Proxy Server with mod_security http://doc.pfsense.org/index.php/ProxyServerModSecurity_package http://www.modsecurity.org/ ModSecurity is a web application firewall that can work either embedded or as a reverse proxy. It provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis. In addition this package allows URL forwarding which can be convenient for hosting multiple websites behind pfSense using 1 IP address. Network Management 0.1.3 ALPHA 2.0 http://www.pfsense.com/packages/config/apache_mod_security/apache_mod_security.xml http://files.pfsense.org/packages/8/All/ db42-4.2.52_5.tbz gdbm-1.9.1.tbz apr-ipv6-devrandom-gdbm-db42-1.4.5.1.3.12_1.tbz ap22-mod_memcache-0.1.0_4.tbz apache-2.2.22_5.tbz ap22-mod_security-2.6.5_1.tbz proxy_mod_security-2.2.23_3-i386.pbi apache_mod_security.xml /usr/ports/devel/gettext /usr/ports/misc/help2man /usr/ports/devel/apr1 /usr/ports/devel/pkg-config /usr/ports/databases/db42 /usr/ports/databases/gdbm /usr/ports/www/apache22-worker-mpm /usr/ports/www/mod_security /usr/ports/www/mod_memcache /usr/ports/www/p5-LWP-Protocol-https /usr/ports/www/p5-LWP-UserAgent-Determined /usr/ports/security/gnupg /user/ports/net/spread /user/ports/textproc/p5-XML-Smart /user/ports/lang/p5-Switch /user/ports/www/p5-Data-Validate-URI /user/ports/devel/p5-Data-Types /user/ports/devel/p5-Acme-Comment proxy_mod_security devel/gettext misc/help2man databases/db42 databases/gdbm devel/apr1 www/p5-LWP-UserAgent-Determined www/p5-LWP-Protocol-https security/gnupg security/p5-GnuPG net/spread textproc/p5-XML-Smart lang/p5-Switch www/p5-Data-Validate-URI devel/p5-Data-Types devel/p5-Acme-Comment www/apache22-worker-mpm www/mod_security www/mod_memcache OPTIONS_UNSET=BDB MYSQL PGSQL;OPTIONS_SET=SQLITE THREADS IPV6 SSL;WITH_MPM=worker;apache22-worker-mpm_UNSET=AUTHNZ_LDAP AUTHN_DBD BUCKETEER CASE_FILTER CASE_FILTER_IN CGID DBD EXT_FILTER LDAP LOG_FORENSIC OPTIONAL_FN_EXPORT OPTIONAL_FN_IMPORT OPTIONAL_HOOK_EXPORT OPTIONAL_HOOK_IMPORT SUBSTITUTE SUEXEC SUEXEC_RSRCLIMIT;apache22-worker-mpm_SET=ACTIONS ALIAS AUTHN_ALIAS VHOST_ALIAS ASIS AUTHN_ANON AUTHN_DBM AUTHN_DEFAULT AUTHN_FILE AUTHZ_DBM AUTHZ_DEFAULT AUTHZ_GROUPFILE AUTHZ_HOST AUTHZ_OWNER AUTHZ_USER AUTH_BASIC AUTH_DIGEST AUTOINDEX CACHE DISK_CACHE FILE_CACHE MEM_CACHE CERN_META CGI CHARSET_LITE DAV DAV_FS DEFLATE DIR DUMPIO ENV EXPIRES FILTER HEADERS IMAGEMAP INCLUDE INFO LOGIO LOG_CONFIG MIME MIME_MAGIC NEGOTIATION PROXY PROXY_AJP PROXY_BALANCER PROXY_CONNECT PROXY_FTP PROXY_HTTP PROXY_SCGI REQTIMEOUT REWRITE SETENVIF SPELING STATUS THREADS UNIQUE_ID USERDIR USERTRACK VERSION Please visit the ProxyServer settings tab and set the service up so that it may be started. pure-ftpd http://www.pureftpd.org/ *DO NOT RUN THIS ON A FIREWALL. USE A DEDICATED MACHINE!* Pure FTPd Server is a fast, production quality, standards-conformant FTP server based on Troll-FTPd. It has no known vulnerabilities, is trivial to set up, and is especially designed for modern kernels. Features include PAM support, IPv6, chroot()ed home directories, virtual domains, built-in 'ls', FXP protocol, anti-warez system, bandwidth throttling, restricted ports for passive downloads, an LDAP backend, XML output, and more. FTP http://www.pfsense.com/packages/config/pure-ftpd.xml http://files.pfsense.org/packages/8/All/ pure-ftpd-1.0.35.tbz pure-ftpd-1.0.36-i386.pbi /usr/ports/ftp/pure-ftpd 1.0.35 Stable pure-ftpd.xml 1.0 1.0 ftp pure-ftpd.log true Avahi http://doc.pfsense.org/index.php/Avahi_package http://www.avahi.org/ Avahi is a system which facilitates service discovery on a local network. This means that you can plug your laptop or computer into a network and instantly be able to view other people who you can chat with, find printers to print to or find files being shared. This kind of technology is already found in Apple MacOS X (branded Rendezvous, Bonjour and sometimes Zeroconf) and is very convenient. Avahi is mainly based on Lennart Poettering's flexmdns mDNS implementation for Linux which has been discontinued in favour of Avahi. Network Management http://files.pfsense.org/packages/8/All/ /usr/ports/net/avahi /usr/ports/net/avahi-app net/avahi avahi-app-0.6.29_1.tbz avahi-0.6.29-i386.pbi 0.6.29 pkg v1.02 ALPHA 1.2.3 http://www.pfsense.com/packages/config/avahi/avahi.xml avahi.xml Please visit the Avahi settings tab and select which interfaces you do not wish Avahi to listen on and click save to start the service. ntop http://www.ntop.org/ ntop is a network probe that shows network usage in a way similar to what top does for processes. In interactive mode, it displays the network status on the user's terminal. In Web mode it acts as a Web server, creating an HTML dump of the network status. It sports a NetFlow/sFlow emitter/collector, an HTTP-based client interface for creating ntop-centric monitoring applications, and RRD for persistently storing traffic statistics. Network Management http://files.pfsense.org/packages/8/All/ ntop-5.0.1-i386.pbi rrdtool-1.2.30_2.tbz gdbm-1.9.1.tbz perl-5.14.2_2.tbz libpcap-1.3.0.tbz GeoIP-1.4.8_3.tbz font-util-1.2.0.tbz webfonts-0.30_6.tbz ntop-5.0.1.tbz /usr/ports/net/GeoIP /usr/ports/databases/gdbm /usr/ports/databases/rrdtool12 /usr/ports/x11-fonts/font-util /usr/ports/graphics/graphviz /usr/ports/x11-fonts/webfonts /usr/ports/net/ntop databases/gdbm net/GeoIP x11-fonts/font-util x11-fonts/webfonts graphics/graphviz net/ntop WITH_PCAP_PORT=true;WITH_XMLDUMP=true;WITHOUT_JUMBO_FRAMES=true;WITH_MAKO=true;WITHOUT_DEJAVU=true;WITH_JSON=true;WITH_MMAP=true;WITHOUT_PERL_MODULE=true;WITHOUT_PYTHON_MODULE=true;WITHOUT_RUBY_MODULE=true;WITHOUT_EXAMPLES=true;WITHOUT_FPECTL=true;WITH_IPV6=true;WITH_NLS=true;WITHOUT_PTH=true;WITH_PYMALLOC=true;WITHOUT_SEM=true;WITH_THREADS=true;WITHOUT_UCS2=true;WITH_UCS4=true;WITH_FONTCONFIG=true;WITH_ICONV=true;WITHOUT_XPM=true;WITHOUT_DAG=true;WITHOUT_DIGCOLA=true;WITHOUT_IPSEPCOLA=true;WITHOUT_PANGOCAIRO=true;WITHOUT_GTK=true;WITHOUT_XCB=true 5.0.1 v2.3 BETA 2.0 http://www.pfsense.com/packages/config/ntop2/ntop.xml ntop.xml true FreeSWITCH http://www.freeswitch.org/ FreeSWITCH is an open source telephony platform designed to facilitate the creation of voice and chat driven products scaling from a soft-phone up to a soft-switch. It can be used as a simple switching engine, a PBX, a media gateway or a media server to host IVR applications using simple scripts or XML to control the callflow. Services http://doc.pfsense.org/index.php/FreeSWITCH http://www.pfsense.com/packages/config/freeswitch/freeswitch.xml http://files.pfsense.org/packages/8/All/ freeswitch-1.0.6_1-i386.pbi /usr/ports/net/freeswitch 0.8.3.6 Beta 1.2.1 markjcrane@gmail.com freeswitch.xml true FreeSWITCH Dev FreeSWITCH http://www.freeswitch.org/ FreeSWITCH package development version. Services http://doc.pfsense.org/index.php/FreeSWITCH http://www.pfsense.com/packages/config/freeswitch_dev/freeswitch.xml http://files.pfsense.org/packages/8/All/ /usr/ports/net/freeswitch 0.9.7.26 Beta 1.2.3 markjcrane@gmail.com freeswitch.xml true Notes Track things you want to note for this system. Status http://www.pfsense.com/packages/config/notes/notes.xml http://files.pfsense.org/packages/8/All/ 0.2.4 Alpha 1.2.1 markjcrane@gmail.com notes.xml TFTP Trivial File Transport Protocol is a very simple file transfer protocol. Often used with routers, voip phones and more. Services http://www.pfsense.com/packages/config/tftp2/tftp.xml http://files.pfsense.org/packages/8/All/ 2.0 Stable 2.0 tftp.xml PHPService PHP run as a service it can do anything PHP can do including but not limited to monitoring files, CPU, RAM, and send alerts to the syslog. Services http://doc.pfsense.org/index.php/PHPService http://www.pfsense.com/packages/config/phpservice/phpservice.xml http://files.pfsense.org/packages/8/All/ 0.4.1 Beta 1.2.1 markjcrane@gmail.com phpservice.xml Backup Tool to Backup and Restore files and directories. System http://www.pfsense.com/packages/config/backup/backup.xml http://files.pfsense.org/packages/8/All/ 0.1.5 Beta 1.2 markjcrane@gmail.com backup.xml Cron The cron utility is used to manage commands on a schedule. Services http://www.pfsense.com/packages/config/cron/cron.xml http://files.pfsense.org/packages/8/All/ 0.1.8 Beta 1.2 markjcrane@gmail.com cron.xml vHosts It is a web server package that can host HTML, Javascript, CSS, and PHP. It uses the lighttpd web server that is already installed. It uses PHP5 in FastCGI mode and has access to PHP Data Ojbects and PDO SQLite. Services http://doc.pfsense.org/index.php/vhosts http://www.pfsense.com/packages/config/vhosts/vhosts.xml http://files.pfsense.org/packages/8/All/ 0.7.4 Stable 1.2.3 markjcrane@gmail.com vhosts.xml snort http://www.snort.org Snort is an open source network intrusion prevention and detection system (IDS/IPS). Combining the benefits of signature, protocol, and anomaly-based inspection. Security http://files.pfsense.org/packages/8/All/ mysql-client-5.5.34.tbz barnyard2-1.12.tbz libnet11-1.1.6,1.tbz libdnet-1.11_3.tbz libpcap-1.4.0.tbz daq-2.0.1.tbz snort-2.9.4.6.tbz snort-2.9.4.6-i386.pbi /usr/ports/devel/pcre /usr/ports/net/daq /usr/ports/net/libnet /usr/ports/net/libpcap /usr/ports/security/barnyard2 /usr/ports/databases/mysql55-client /usr/ports/security/snort security/snort security/barnyard2 barnyard2_UNSET=ODBC PGSQL PRELUDE;barnyard2_SET=GRE IPV6 MPLS MYSQL;snort_UNSET=REACT;snort_SET=TARGETBASED PERFPROFILE DECODERPRE FLEXRESP3 GRE IPV6 MPLS NORMALIZER ZLIB;perl_SET=THREADS;WITH_THREADS=yes;WITH_IPV6=true;WITH_MPLS=true;WITH_GRE=true;WITH_TARGETBASED=true;WITH_PERFPROFILE=true;WITH_DECODERPRE=true;WITH_ZLIB=true;WITH_NORMALIZER=true;WITHOUT_REACT=true;WITH_FLEXRESP3=true;WITHOUT_ODBC=true;WITHOUT_POSTGRESQL=true;WITHOUT_PRELUDE=true;NOPORTDOCS=true http://www.pfsense.com/packages/config/snort/snort.xml 2.9.4.6 pkg v. 2.6.1 2.0 Stable /snort.xml Please visit the Snort settings tab and enter your oinkid code. Afterwards visit the update rules tab to download the snort rules. olsrd http://www.olsr.org/ The olsr.org OLSR daemon is an implementation of the Optimized Link State Routing protocol. OLSR is a routing protocol for mobile ad-hoc networks. The protocol is pro-active, table driven and utilizes a technique called multipoint relaying for message flooding. Services http://www.pfsense.com/packages/config/olsrd.xml http://files.pfsense.org/packages/8/All/ olsrd-0.6.2.tbz olsrd-0.6.3-i386.pbi /usr/ports/net/olsrd 1.0 Stable 2.1 olsrd.xml routed http://www.pfsense.com/ RIP v1 and v2 daemon. Network Management http://www.pfsense.com/packages/config/routed/routed.xml 1.1 Stable 2.1 routed.xml spamd http://www.openbsd.org/spamd/ Tarpits like spamd are fake SMTP servers, which accept connections but don't deliver mail. Instead, they keep the connections open and reply very slowly. If the peer is patient enough to actually complete the SMTP dialogue (which will take ten minutes or more), the tarpit returns a 'temporary error' code (4xx), which indicates that the mail could not be delivered successfully and that the sender should keep the mail in their queue and retry again later. Services http://www.pfsense.com/packages/config/spamd/spamd.xml http://files.pfsense.org/packages/8/All/ spamd-4.9.1.tbz spamd-4.9.1-i386.pbi 4.9.1 Beta 1.2.1 spamd.xml /usr/ports/mail/spamd spamd spamd.log Postfix Forwarder http://www.postfix.org/ It can do first and second line antispam combat before sending incoming mail to local mail servers.
Postfix can also detect zombies, check RBLS, SPF, seach ldap for valid recipients and use third part antispam engines like policyd and mailscanner for better antispam solution.]]>
Services http://forum.pfsense.org/index.php/topic,40622.0.html http://www.pfsense.com/packages/config/postfix/postfix.xml http://files.pfsense.org/packages/8/All/ postfix-2.10.0,1.tbz perl-5.12.4_3.tbz postfix-2.10.0-i386.pbi 2.10.0 pkg v.2.3.6 RC1 2.0 postfix.xml /usr/ports/mail/postfix WITH_PCRE=true;WITH_SPF=true;WITH_SASL2=true;WITH_TLS=true
Dansguardian http://www.dansguardian.org/ It filters the actual content of pages based on many methods including phrase matching, PICS filtering and URL filtering.
It does not purely filter based on a banned list of sites like lesser totally commercial filters.
For all non-commercial it's free, without cost.
For all commercial use visit dansguardian website to get a licence.]]>
Services http://www.pfsense.com/packages/config/dansguardian/dansguardian.xml http://forum.pfsense.org/index.php/topic,43786.0.html http://files.pfsense.org/packages/8/All/ dansguardian-2.12.0.3.tbz ca_root_nss-3.14.1.tbz dansguardian-2.12.0.3-i386.pbi 2.12.0.3 pkg v.0.1.8 beta 2.0 dansguardian.xml /usr/ports/www/dansguardian-devel /usr/ports/security/ca_root_nss dansguardian-devel_UNSET=APACHE;dansguardian-devel_SET=TRICKLE CLAMD ICAP NTLM SSL
mailscanner mailscanner www.mailscanner.info This is a level3 mail scanning tool with high CPU load.]]> Services http://www.pfsense.com/packages/config/mailscanner/mailscanner.xml http://forum.pfsense.org/index.php/topic,43687.0.html http://e-sac.siteseguro.ws/pfsense/8/All/ MailScanner-4.84.5_3.tbz perl-5.12.4_3.tbz pyzor-0.5.0_2.tbz p5-Mail-SPF-2.007.tbz p5-IP-Country-2.27.tbz mailscanner-4.84.5_3-i386.pbi 4.84.5_3 pkg v.0.2.2 beta 2.0 mailscanner.xml /usr/ports/mail/mailscanner /usr/ports/mail/p5-Mail-SPF /usr/ports/mail/pyzor /usr/ports/net/p5-IP-Country mailscanner_UNSET=BDC CLAMAVMODULE;mailscanner_SET=SPAMASSASSIN CLAMAV siproxd http://siproxd.sourceforge.net/ Proxy for handling NAT of multiple SIP devices to a single public IP. Services http://www.pfsense.com/packages/config/siproxd.xml http://files.pfsense.org/packages/8/All/ siproxd-0.8.0.tbz siproxd-0.8.0-i386.pbi http://doc.pfsense.org/index.php/Siproxd_package /usr/ports/net/siproxd 0.8.0_2 Beta 1.2.1 siproxd.xml OpenBGPD OpenBGPD is a FREE implementation of the Border Gateway Protocol, Version 4. It allows ordinary machines to be used as routers exchanging routes with other systems speaking the BGP protocol. -- WARNING! Installs files to the same place as Quagga OSPF. Installing both will result in a broken state, remove this package before installing Quagga OSPF. NET http://www.pfsense.com/packages/config/openbgpd/openbgpd.xml /usr/ports/net/openbgpd net/openbgpd 0.9 STABLE http://doc.pfsense.org/index.php/OpenBGPD_package 1.3 openbgpd.xml http://files.pfsense.org/packages/8/All/ openbgpd-5.2.20121209.tbz openbgpd-5.2.20121209-i386.pbi OpenOSPFD This package is now considered deprecated. Please use the Quagga OSPF instead. -- WARNING! Installs files to the same place as Quagga OSPF. Installing both will result in a broken state, remove this package before installing Quagga OSPF. cmb@pfsense.org 0.5.2 Routing DEPRECATED http://files.pfsense.org/packages/8/All/ openospfd-4.6.tbz openospfd-4.6-i386.pbi http://www.pfsense.com/packages/config/openospfd/openospfd.xml /usr/ports/net/openospfd /usr/ports/devel/libevent devel/libevent net/openospfd 1.2.1 openospfd.xml libevent-1.4.14b_1.tbz Lightsquid High perfomance web proxy report (LightSquid). Proxy realtime stat (SQStat). Requires squid HTTP proxy. http://lightsquid.sf.net/ Network Report 1.8.0 pkg v.2.32 dv_serg@mail.ru http://files.pfsense.org/packages/8/All/ lightsquid-1.8_2.tbz perl-5.14.2_2.tbz lightsquid-1.8_2-i386.pbi /usr/ports/www/lightsquid lang/perl5.14 graphics/gd graphics/p5-GD www/lightsquid WITHOUT_DEBUGGING=true;WITHOUT_GDBM=true;WITHOUT_PERL_MALLOC=true;WITH_PERL_64BITINT=true;WITHOUT_THREADS=true;WITHOUT_MULTIPLICITY=true;WITHOUT_SUIDPERL=true;WITHOUT_SITECUSTOMIZE=true;WITH_USE_PERL=true;WITH_GDSUPPORT=true RC1 2.0 http://www.pfsense.com/packages/config/lightsquid/lightsquid.xml lightsquid.xml true Sarg http://www.dansguardian.org/ Sarg provides many informations about Proxy(squid,squidguard or dansguardian) users activities: times, bytes, sites, etc...]]> Network Report http://www.pfsense.com/packages/config/sarg/sarg.xml http://forum.pfsense.org/index.php/topic,47765.0.html http://files.pfsense.org/packages/8/All/ sarg-2.3.6_2.tbz gd-2.0.35_8,1.tbz sarg-2.3.6_2-i386.pbi 2.3.6_2 pkg v.0.6.3 Release 2.0 sarg.xml /usr/ports/www/sarg sarg_UNSET=PHP Please visit sarg settings on Status Menu to configure sarg. Ipguard-dev ipguard http://ipguard.deep.perm.ru/ If it receives one with MAC-IP pair, which is not listed in 'ethers' file, it will send ARP reply with configured fake address.
This will prevent not permitted host to work properly in local ethernet segment.]]>
Security http://www.pfsense.com/packages/config/ipguard/ipguard.xml http://forum.pfsense.org/index.php/topic,49917.msg263664.html#msg263664 http://files.pfsense.org/packages/8/All/ ipguard-1.04.tbz ipguard-1.04-i386.pbi 1.0.4 pkg v.0.1 beta 2.0 ipguard.xml /usr/ports/security/ipguard Please visit ipguard settings on the Firewall Menu to configure.
Varnish It uses the advanced features in FreeBSD 6/7/8 to achieve its high performance.]]> http://varnish-cache.org http://doc.pfsense.org/index.php/Varnish_package Services 2.1.5 pkg v.1.0 Release 2.0 http://www.pfsense.com/packages/config/varnish64/varnish_backends.xml varnish_backends.xml http://files.pfsense.org/packages/8/All/ varnish-2.1.5_2-i386.pbi gcc-4.2.5.20090325_5-i386.pbi varnish-2.1.5.tbz gcc-4.2.5.20090325_5.tbz /usr/ports/www/varnish2 /usr/ports/lang/gcc42 Varnish3 varnish It uses the advanced features in FreeBSD 6/7/8 to achieve its high performance.
Version 3.0.2 includes streaming support]]>
http://varnish-cache.org http://doc.pfsense.org/index.php/Varnish_package Services 3.0.2 pkg v.0.1 BETA 2.0 http://www.pfsense.com/packages/config/varnish3/varnish_backends.xml varnish_backends.xml http://files.pfsense.org/packages/8/All/ varnish-3.0.3_2-i386.pbi varnish-3.0.2.tbz pcre-8.21_1.tbz lang/gcc www/varnish gcc_UNSET=JAVA /usr/ports/www/varnish /usr/ports/lang/gcc42
vnstat2 http://humdi.net/vnstat/ Vnstat is a console-based network traffic monitor<br />The vnstat PHP frontend and vnstati adds a more user friendly way of displaying traffic usage. http://forum.pfsense.org/index.php/topic,14179.0.html Network Management http://files.pfsense.org/packages/8/All/ vnstat-1.11.tbz vnstat-1.11_1-i386.pbi /usr/ports/net/vnstat 1.10_2 Stable 2.0 crazypark2@yahoo.dk http://www.pfsense.com/packages/config/vnstat2/vnstat2.xml vnstat2.xml phpSysInfo http://phpsysinfo.sourceforge.net/ PHPSysInfo is a customizable PHP Script that parses /proc, and formats information nicely. It will display information about system facts like Uptime, CPU, Memory, PCI devices, SCSI devices, IDE devices, Network adapters, Disk usage, and more. System 2.5.4 Beta 1.0 http://files.pfsense.org/packages/8/All/ mbmon-205_5.tbz mbmon-205_6-i386.pbi /usr/ports/sysutils/mbmon http://www.pfsense.com/packages/config/phpsysinfo/phpsysinfo.xml phpsysinfo.xml true dns-server pfSense version of TinyDNS which features failover host support http://cr.yp.to/djbdns.html Services 1.0.6.18 Beta http://doc.pfsense.org/index.php/Tinydns_package 2.0 http://www.pfsense.com/packages/config/tinydns/tinydns.xml tinydns.xml http://files.pfsense.org/packages/8/All/ ucspi-tcp-0.88_2.tbz daemontools-0.76_16.tbz djbdns-ipv6-1.05.b23_13.tbz djbdns-1.05_14-i386.pbi /usr/ports/sysutils/ucspi-tcp /usr/ports/sysutils/daemontools /usr/ports/dns/djbdns sysutils/ucspi-tcp sysutils/daemontools dns/djbdns WITH_IPV6=true;WITH_SRV=true;WITHOUT_DUMPCACHE=true;WITHOUT_IGNOREIP=true;WITHOUT_JUMBO=true;WITHOUT_MAN=true;WITHOUT_PERSISTENT_MMAP=true YES Open-VM-Tools VMware Tools http://open-vm-tools.sourceforge.net/ Services 8.7.0.3046 (build-425873) Stable http://doc.pfsense.org/index.php/Open_VM_Tools_package 2.0 http://www.pfsense.org/packages/config/open-vm-tools_2/open-vm-tools.xml open-vm-tools.xml http://files.pfsense.org/packages/8/All/ /usr/ports/emulators/open-vm-tools-nox11/ open-vm-tools-nox11-425873_3,1.tbz icu-50.1.2.tbz /usr/ports/devel/icu fusefs-kmod-0.3.9.p1.20080208_11.tbz /usr/ports/sysutils/fusefs-kmod fusefs-libs-2.9.2.tbz /usr/ports/sysutils/fusefs-libs glib-2.28.8_5.tbz /usr/ports/devel/glib20 libdnet-1.11_3.tbz /usr/ports/net/libdnet libiconv-1.14.tbz /usr/ports/converters/libiconv pcre-8.32.tbz /usr/ports/devel/pcre perl-5.14.2_2.tbz /usr/ports/lang/perl5.14 pkgconf-0.8.9.tbz /usr/ports/devel/pkg-config python27-2.7.2_3.tbz python27-2.7.3_6.tbz emulators/open-vm-tools-nox11 open-vm-tools-nox11-425873_2-i386.pbi AutoConfigBackup portal@bsdperimeter.com Automatically backs up your pfSense configuration. All contents are encrypted on the server. Requires pfSense Premium Support Portal Subscription from https://portal.pfsense.org https://portal.pfsense.org Services 1.20 Stable 1.2 http://doc.pfsense.org/index.php/AutoConfigBackup http://www.pfsense.com/packages/config/autoconfigbackup/autoconfigbackup.xml autoconfigbackup.xml arping Broadcasts a who-has ARP packet on the network and prints answers. http://www.habets.pp.se/synscan/programs.php?prog=arping Services 2.09.1 Stable 1.0.1 http://www.pfsense.com/packages/config/arping/arping.xml arping.xml http://files.pfsense.org/packages/8/All/ arping-2.09_1.tbz arping-2.09_1-i386.pbi /usr/ports/net/arping http://doc.pfsense.org/index.php/Arping nmap jimp@pfsense.org NMap is a utility for network exploration or security auditing. It supports ping scanning (determine which hosts are up), many port scanning techniques (determine what services the hosts are offering), version detection (determine what application/service is runing on a port), and TCP/IP fingerprinting (remote host OS or device identification). It also offers flexible target and port specification, decoy/stealth scanning, SunRPC scanning, and more. Most Unix and Windows platforms are supported in both GUI and command line modes. Several popular handheld devices are also supported, including the Sharp Zaurus and the iPAQ. Security http://files.pfsense.org/packages/8/All/ lua-5.1.5_4.tbz nmap-6.25_1.tbz nmap-6.25_1-i386.pbi http://www.pfsense.com/packages/config/nmap/nmap.xml nmap-6.25_1 pkg v1.2 Stable http://doc.pfsense.org/index.php/Nmap_package 2.0 nmap.xml /usr/ports/security/nmap libpcap-1.2.1.tbz imspector IMSpector is an Instant Messenger transparent proxy with logging capabilities. Currently it supports MSN, AIM, ICQ, Yahoo and IRC to different degrees. http://www.imspector.org/ Network Management billm@pfsense.org 0.9-4 2.0 BETA http://doc.pfsense.org/index.php/IMSpector_package http://www.pfsense.com/packages/config/imspector/imspector.xml imspector.xml http://files.pfsense.org/packages/8/All/ sqlite3-3.7.12.1.tbz imspector-0.9.tbz imspector-0.9-i386.pbi /usr/ports/net-im/imspector imspector-dev imspector IMSpector is an Instant Messenger transparent proxy with logging capabilities. Currently it supports MSN, AIM, ICQ, Yahoo and IRC to different degrees. http://www.imspector.org/ Network Management marcellocoutinho@gmail.com 20111108 pkg v 0.3.1 2.0 BETA http://doc.pfsense.org/index.php/IMSpector_package http://www.pfsense.com/packages/config/imspector-dev/imspector.xml imspector.xml http://e-sac.siteseguro.ws/packages/8/All/ mysql-client-5.5.19.tbz imspector-20111108.tbz imspector-20111108-i386.pbi nut Network UPS Tools http://www.networkupstools.org/ Network Management 2.6.4 pkg 2.0 BETA 2.0 rswagoner@gmail.com http://www.pfsense.com/packages/config/nut/nut.xml nut.xml http://files.pfsense.org/packages/8/All/ nut-2.6.4.tbz nut-2.6.5_1-i386.pbi /usr/ports/sysutils/nut http://doc.pfsense.org/index.php/Nut_package diag_new_states Paul Taylors version of Diagnostics States which utilizes pftop. http://www.addressplus.net Network Management 0.2 ptaylor@addressplus.net 1.2.1 BETA http://www.pfsense.org/packages/config/diag_states_pt/diag_new_states.xml http://www.pfsense.com/packages/config/diag_states_pt/diag_new_states.xml darkstat http://dmr.ath.cx/net/darkstat/ darkstat is a network statistics gatherer. It's a packet sniffer that runs as a background process on a cable/DSL router, gathers all sorts of statistics about network usage, and serves them over HTTP. Network Management http://files.pfsense.org/packages/8/All/ darkstat-3.0.714.tbz darkstat-3.0.715-i386.pbi 3.0.714 Stable 1.2.1 sullrich+pfsp@gmail.com http://www.pfsense.com/packages/config/darkstat/darkstat.xml darkstat.xml /usr/ports/net-mgmt/darkstat pfflowd http://www.mindrot.org/pfflowd.html pfflowd converts OpenBSD PF status messages (sent via the pfsync interface) to Cisco NetFlow datagrams. These datagrams may be sent (via UDP) to a host of one's choice. Utilising the OpenBSD stateful packet filter infrastructure means that flow tracking is very fast and accurate. Network Management http://www.pfsense.com/packages/config/pfflowd.xml http://files.pfsense.org/packages/8/All/ pfflowd-0.8.tbz pfflowd-0.8-i386.pbi 0.8.3 Stable 2.0 pfflowd.xml /usr/ports/net/pfflowd-0.8 widentd RFC1413 auth/identd daemon with fixed fake reply http://www.webweaving.org/widentd Services http://files.pfsense.org/packages/8/All/ widentd-1.03_1.tbz widentd-1.03_1-i386.pbi 1.03_1 Stable http://doc.pfsense.org/index.php/Widentd_package 1.2.1 http://www.pfsense.com/packages/config/widentd.xml widentd.xml /usr/ports/net/widentd freeradius http://www.freeradius.org/ A free implementation of the RADIUS protocol. System 1.1.8 pkg v1.0.5 Beta 2.0 none http://files.pfsense.org/packages/8/All/ freeradius-1.1.8_4.tbz libltdl-2.4_1.tbz freeradius-1.1.8_5-i386.pbi http://www.pfsense.org/packages/config/freeradius.xml freeradius.xml /usr/ports/net/freeradius /usr/ports/devel/libltdl devel/libltdl net/freeradius Please visit Services: freeRADIUS freeradius2 http://www.freeradius.org/ Support: MySQL, PostgreSQL, LDAP, Kerberos
FreeRADIUS and FreeRADIUS2 settings are not compatible so don't use them together or try to update
On pfSense docs there is a how-to which could help you on porting users.]]>
http://doc.pfsense.org/index.php/FreeRADIUS_2.x_package System 2.1.12_1/2.2.0 pkg v1.6.7_2 RC1 2.0 nachtfalkeaw@web.de http://files.pfsense.org/packages/8/All/ freeradius-2.1.12_1.tbz freeradius-2.2.0-i386.pbi mysql-client-5.1.63.tbz postgresql-client-8.4.12.tbz openldap-sasl-client-2.4.23.tbz http://www.pfsense.org/packages/config/freeradius2/freeradius.xml freeradius.xml Please visit Services: FreeRADIUS security/krb5 net/freeradius2 freeradius_SET=KERBEROS MYSQL PGSQL PERL PYTHON LDAP
bandwidthd http://bandwidthd.sourceforge.net/ BandwidthD tracks usage of TCP/IP network subnets and builds html files with graphs to display utilization. Charts are built by individual IPs, and by default display utilization over 2 day, 8 day, 40 day, and 400 day periods. Furthermore, each ip address's utilization can be logged out at intervals of 3.3 minutes, 10 minutes, 1 hour or 12 hours in cdf format, or to a backend database server. HTTP, TCP, UDP, ICMP, VPN, and P2P traffic are color coded. System 2.0.1_5 pkg v.0.2 BETA 1.2.1 http://files.pfsense.org/packages/8/All/ bandwidthd-2.0.1_5.tbz libpcap-1.1.1.tbz postgresql-client-8.4.12.tbz bandwidthd-2.0.1_5-i386.pbi http://www.pfsense.org/packages/config/bandwidthd/bandwidthd.xml bandwidthd.xml /usr/ports/net/libpcap /usr/ports/databases/postgresql84-client /usr/ports/net-mgmt/bandwidthd net/libpcap databases/postgresql91-client graphics/gd net-mgmt/bandwidthd WITH_NLS=true;WITHOUT_PAM=true;WITHOUT_LDAP=true;WITHOUT_MIT_KRB5=true;WITHOUT_HEIMDAL_KRB5=true;WITHOUT_OPTIMIZED_CFLAGS=true;WITHOUT_XML=true;WITHOUT_TZDATA=true;WITHOUT_DEBUG=true;WITHOUT_GSSAPI=true;WITHOUT_ICU=true;WITH_INTDATE=true stunnel http://www.stunnel.org/ An SSL encryption wrapper between remote client and local or remote servers. Network Management http://files.pfsense.org/packages/8/All/ stunnel-4.43.tbz stunnel-4.54-i386.pbi 4.43.0 Stable http://doc.pfsense.org/index.php/Stunnel_package 1.2.1 http://www.pfsense.com/packages/config/stunnel.xml stunnel.xml /usr/ports/security/stunnel WITHOUT_FORK=true;WITH_PTHREAD=true;WITHOUT_UCONTEXT=true;WITHOUT_IPV6=true;WITH_LIBWRAP=true;WITHOUT_SSL_PORT=true iperf http://dast.nlanr.net/Projects/Iperf/ Iperf is a tool for testing network throughput, loss, and jitter. Network Management http://www.pfsense.com/packages/config/iperf.xml http://files.pfsense.org/packages/8/All/ iperf-2.0.5.tbz iperf-2.0.5-i386.pbi 2.0.5 Beta http://doc.pfsense.org/index.php/Iperf_package 1.2.1 iperf.xml /usr/ports/benchmarks/iperf netio http://freshmeat.net/projects/netio/ This is a network benchmark for DOS, OS/2 2.x, Windows NT/2000 and Unix. It measures the net throughput of a network via NetBIOS and/or TCP/IP protocols (Unix and DOS only support TCP/IP) using various different packet sizes. Network Management http://www.pfsense.com/packages/config/netio.xml http://files.pfsense.org/packages/8/All netio-1.26.tbz netio-1.26-i386.pbi 1.26 2.0 ALPHA netio.xml /usr/ports/benchmarks/netio mtr-nox11 billm@pfsense.org Enhanced traceroute replacement http://www.bitwizard.nl/mtr/ Network Management http://files.pfsense.org/packages/8/All/ mtr-nox11-0.82.tbz mtr-0.82_1-i386.pbi 0.82 Stable 2.0 http://www.pfsense.com/packages/config/mtr-nox11.xml mtr-nox11.xml /usr/ports/net/mtr mtr_UNSET=X11 squid High performance web proxy cache. http://www.squid-cache.org/ Network 2.7.9 pkg v.4.3.3 Stable 2 fernando@netfilter.com.br seth.mos@dds.nl mfuchs77@googlemail.com jimp@pfsense.org http://files.pfsense.org/packages/8/All/ squid-2.7.9_3.tbz squid_radius_auth-1.10.tbz libwww-5.4.0_4.tbz squid-2.7.9_3-i386.pbi /usr/ports/www/squid /usr/ports/www/squid_radius_auth /usr/ports/www/libwww www/libwww www/squid www/squid_radius_auth squid_UNSET=DNS_HELPER IPFILTER PINGER STACKTRACES STRICT_HTTP_DESC USERAGENT_LOG WCCPV2;squid_SET=PF LDAP_AUTH NIS_AUTH SASL_AUTH ARP_ACL AUFS CACHE_DIGESTS CARP COSS DELAY_POOLS FOLLOW_XFF HTCP IDENT KERB_AUTH KQUEUE LARGEFILE REFERER_LOG SNMP SSL VIA_DB WCCP;SQUID_UID=proxy;SQUID_GID=proxy http://www.pfsense.org/packages/config/squid/squid.xml squid.xml squid3 squid It combines squid as a proxy server with it's capabilities of acting as a HTTP / HTTPS reverse proxy.
It includes an Exchange-Web-Access (OWA) Assistant.]]>
http://forum.pfsense.org/index.php/topic,48347.0.html http://www.squid-cache.org/ Network 3.1.20 pkg 2.0.6 beta 2.0 marcellocoutinho@gmail.com fernando@netfilter.com.br seth.mos@dds.nl mfuchs77@googlemail.com jimp@pfsense.org http://files.pfsense.org/packages/8/All/ squid-3.1.20.tbz libwww-5.4.0_4.tbz www/libwww www/squid31 www/squid_radius_auth c-icap_UNSET=IPV6 squid33_UNSET=AUTH_SMB AUTH_SQL DNS_HELPER FS_COSS ESI SNMP ECAP STACKTRACES STRICT_HTTP TP_IPF TP_IPFW VIA_DB DEBUG DOCS EXAMPLES;squid33_SET=ARP_ACL AUTH_KERB AUTH_LDAP AUTH_NIS AUTH_SASL CACHE_DIGESTS DELAY_POOLS FOLLOW_XFF TP_PF MSSL_CRTD WCCP WCCPV2 FS_AUFS HTCP ICAP ICMP IDENT IPV6 KQUEUE LARGEFILE SSL SSL_CRTD http://www.pfsense.org/packages/config/squid3/31/squid.xml squid.xml squid-3.1.22_1-i386.pbi
squid3-dev squid It combines squid as a proxy server with it's capabilities of acting as a HTTP / HTTPS reverse proxy.
It includes an Exchange-Web-Access (OWA) Assistant, ssl filtering and antivirus integration via i-cap]]>
http://forum.pfsense.org/index.php/topic,48347.0.html http://www.squid-cache.org/ Network 3.3.8 pkg 2.2 beta 2.0 marcellocoutinho@gmail.com fernando@netfilter.com.br seth.mos@dds.nl mfuchs77@googlemail.com jimp@pfsense.org http://files.pfsense.org/packages/8/All/ squid-3.3.5.tbz libltdl-2.4.2.tbz libwww-5.4.0_4.tbz squidclamav-6.10_1.tbz clamav-0.97.8.tbz cyrus-sasl-2.1.26_2.tbz ca_root_nss-3.14.1.tbz www/libwww security/cyrus-sasl2 www/squid33 www/squid_radius_auth security/clamav www/squidclamav security/ca_root_nss www/c-icap-modules c-icap_UNSET=IPV6 squid33_UNSET=AUTH_SMB AUTH_SQL DNS_HELPER FS_COSS ESI SNMP ECAP STACKTRACES STRICT_HTTP TP_IPF TP_IPFW VIA_DB DEBUG DOCS EXAMPLES;squid33_SET=ARP_ACL AUTH_KERB AUTH_LDAP AUTH_NIS AUTH_SASL CACHE_DIGESTS DELAY_POOLS FOLLOW_XFF TP_PF MSSL_CRTD WCCP WCCPV2 FS_AUFS HTCP ICAP ICMP IDENT IPV6 KQUEUE LARGEFILE SSL SSL_CRTD http://www.pfsense.org/packages/config/squid3/33/squid.xml squid.xml squid-3.3.8-i386.pbi
LCDproc LCD display driver http://www.lcdproc.org/ Utility lcdproc-0.5.5 BETA 1.2.1 seth.mos@dds.nl http://files.pfsense.org/packages/8/All/ lcdproc-0.5.5.tbz lcdproc-0.5.6-i386.pbi http://www.pfsense.org/packages/config/lcdproc/lcdproc.xml lcdproc.xml /usr/ports/sysutils/lcdproc WITH_USB=true;lcdproc_SET=USB LCDproc-dev lcdproc LCD display driver - Development version http://www.lcdproc.org/ Utility lcdproc-0.5.6 pkg v. 0.9.7 BETA 2.0 michele@nt2.it http://forum.pfsense.org/index.php/topic,44034.0.html http://files.pfsense.org/packages/8/All/ lcdproc-0.5.6.tbz lcdproc-0.5.6-i386.pbi http://www.pfsense.org/packages/config/lcdproc-dev/lcdproc.xml lcdproc.xml /usr/ports/sysutils/lcdproc WITH_USB=true Please set the service options in Services-LCDproc before running the service. arpwatch Arpwatch monitors ethernet/ip address pairings. It also logs certain changes to syslog. http://www-nrg.ee.lbl.gov/ Security http://files.pfsense.org/packages/8/All/ arpwatch-2.1.a15_6.tbz arpwatch-2.1.a15_6-i386.pbi /usr/ports/net-mgmt/arpwatch 2.1.a15_6 pkg v1.1.1 ALPHA 2.0 http://www.pfsense.com/packages/config/arpwatch.xml arpwatch.xml arpwatch arpwatch.log squidGuard High perfomance web proxy URL filter. Requires proxy Squid 2.x package. http://www.squidGuard.org/ dv_serg@mail.ru Network Management 1.4_4 pkg v.1.9.5 Beta 1.1 http://files.pfsense.org/packages/8/All/ squidGuard-1.4_4.tbz db41-4.1.25_4.tbz cyrus-sasl-2.1.26_2.tbz squidguard-1.4_4-i386.pbi /usr/ports/www/squidguard /usr/ports/databases/db41 /usr/ports/security/cyrus-sasl2 databases/db41 security/cyrus-sasl2 www/squidguard squidGuard_UNSET=SQUID32 SQUID33;squidGuard_SET=SAMPLE_BL SASL LDAP SQUID27;squid_UNSET=DNS_HELPER IPFILTER PINGER STACKTRACES STRICT_HTTP_DESC USERAGENT_LOG WCCPV2;squid_SET=PF LDAP_AUTH NIS_AUTH SASL_AUTH ARP_ACL AUFS CACHE_DIGESTS CARP COSS DELAY_POOLS FOLLOW_XFF HTCP IDENT KERB_AUTH KQUEUE LARGEFILE REFERER_LOG SNMP SSL VIA_DB WCCP;SQUID_UID=proxy;SQUID_GID=proxy http://www.pfsense.org/packages/config/squidGuard/squidguard.xml squidguard.xml squidGuard-devel High perfomance web proxy URL filter. Requires proxy Squid 2.x package. http://www.squidGuard.org/ gugabsd@mundounix.com.br Network Management 1.5_1 beta Beta 2.1 http://files.pfsense.org/packages/8/All/ squidguard-devel-1.5_1-i386.pbi databases/db46 www/squidguard-devel squidguard-devel squidGuard-devel_UNSET=SQUID32 SQUID33;squidGuard-devel_SET=LDAP STRIPNT SQUID27;squid_UNSET=DNS_HELPER IPFILTER PINGER STACKTRACES STRICT_HTTP_DESC USERAGENT_LOG WCCPV2;squid_SET=PF LDAP_AUTH NIS_AUTH SASL_AUTH ARP_ACL AUFS CACHE_DIGESTS CARP COSS DELAY_POOLS FOLLOW_XFF HTCP IDENT KERB_AUTH KQUEUE LARGEFILE REFERER_LOG SNMP SSL VIA_DB WCCP;SQUID_UID=proxy;SQUID_GID=proxy http://www.pfsense.org/packages/config/squidGuard-devel/squidguard.xml squidguard.xml squidGuard-squid3 High perfomance web proxy URL filter. Requires proxy Squid 3.x package. http://www.squidGuard.org/ dv_serg@mail.ru Network Management 1.4_4 pkg v.1.9.5 Experimental 2.1 http://files.pfsense.org/packages/8/All/ squidguard-squid3-1.4_4-i386.pbi www/squid33 databases/db41 security/cyrus-sasl2 www/squidguard squidguard-squid3 OPTIONS_SET=FETCH LDAP;squidGuard_UNSET=SQUID27;squidGuard_SET=SAMPLE_BL SASL SQUID33;c-icap_UNSET=IPV6 squid33_UNSET=AUTH_SMB AUTH_SQL DNS_HELPER FS_COSS ESI SNMP ECAP STACKTRACES STRICT_HTTP TP_IPF TP_IPFW VIA_DB DEBUG DOCS EXAMPLES;squid33_SET=ARP_ACL AUTH_KERB AUTH_LDAP AUTH_NIS AUTH_SASL CACHE_DIGESTS DELAY_POOLS FOLLOW_XFF TP_PF MSSL_CRTD WCCP WCCPV2 FS_AUFS HTCP ICAP ICMP IDENT IPV6 KQUEUE LARGEFILE SSL SSL_CRTD http://www.pfsense.org/packages/config/squidGuard/squidguard.xml squidguard.xml Zabbix Agent Monitoring agent. Services http://www.pfsense.com/packages/config/zabbix-agent/zabbix-agent.xml 1.8.10,2 pkg v1.1 FINAL 1.2.3 zabbix-agent.xml remco.verhoef@redfive.biz /usr/ports/net-mgmt/zabbix-agent zabbix-agent net-mgmt/zabbix-agent WITHOUT_CARES=true;WITHOUT_CURL_DEBUG=true;WITHOUT_DEBUGGING=true;WITHOUT_DMALLOC=true;WITHOUT_ETCSYMLINK=true;WITHOUT_EXTRA_PATCHES=true;WITHOUT_GDBM=true;WITHOUT_GNUTLS=true;WITHOUT_IODBC=true;WITHOUT_IPMI=true;WITHOUT_KERBEROS4=true;WITHOUT_LDAP=true;WITHOUT_LDAPS=true;WITHOUT_LIBIDN=true;WITHOUT_LIBSIGSEGV=true;WITHOUT_LIBSSH2=true;WITHOUT_MFD_REWRITES=true;WITHOUT_MULTIPLICITY=true;WITHOUT_MYSQL=true;WITHOUT_NTLM=true;WITHOUT_PERL_MALLOC=true;WITHOUT_PGSQL=true;WITHOUT_RTMP=true;WITHOUT_SITECUSTOMIZE=true;WITHOUT_SSH=true;WITHOUT_SUIDPERL=true;WITHOUT_THREADS=true;WITHOUT_TKMIB=true;WITHOUT_TRACKMEMORY=true;WITHOUT_UNIXODBC=true;WITH_CA_BUNDLE=true;WITH_CURL=true;WITH_DUMMY=true;WITH_EXTRA_ENCODINGS=true;WITH_FETCH=true;WITH_FPING=true;WITH_IPV6=true;WITH_JABBER=true;WITH_LDAP=true;WITH_OPENSSL=true;WITH_PERL=true;WITH_PERL_64BITINT=true;WITH_PERL_EMBEDDED=true;WITH_PROXY=true;WITH_SASL=true;WITH_SQLITE=true;WITH_USE_PERL=true;WITH_WERROR=true http://files.pfsense.org/packages/8/All/ zabbix-agent-1.8.10,2.tbz zabbix-agent-1.8.13-i386.pbi Zabbix Proxy Monitoring agent proxy. Services http://www.pfsense.com/packages/config/zabbix-proxy/zabbix-proxy.xml 1.8.8,2 pkg v1.1 FINAL 1.2.3 zabbix-proxy.xml cmb@pfsense.org /usr/ports/net-mgmt/zabbix-proxy zabbix-proxy net-mgmt/zabbix-proxy WITHOUT_CARES=true;WITHOUT_CURL_DEBUG=true;WITHOUT_DEBUGGING=true;WITHOUT_DMALLOC=true;WITHOUT_ETCSYMLINK=true;WITHOUT_EXTRA_PATCHES=true;WITHOUT_GDBM=true;WITHOUT_GNUTLS=true;WITHOUT_IODBC=true;WITHOUT_IPMI=true;WITHOUT_KERBEROS4=true;WITHOUT_LDAP=true;WITHOUT_LDAPS=true;WITHOUT_LIBIDN=true;WITHOUT_LIBSIGSEGV=true;WITHOUT_LIBSSH2=true;WITHOUT_MFD_REWRITES=true;WITHOUT_MULTIPLICITY=true;WITHOUT_MYSQL=true;WITHOUT_NTLM=true;WITHOUT_PERL_MALLOC=true;WITHOUT_PGSQL=true;WITHOUT_RTMP=true;WITHOUT_SITECUSTOMIZE=true;WITHOUT_SSH=true;WITHOUT_SUIDPERL=true;WITHOUT_THREADS=true;WITHOUT_TKMIB=true;WITHOUT_TRACKMEMORY=true;WITHOUT_UNIXODBC=true;WITH_CA_BUNDLE=true;WITH_CURL=true;WITH_DUMMY=true;WITH_EXTRA_ENCODINGS=true;WITH_FETCH=true;WITH_FPING=true;WITH_IPV6=true;WITH_JABBER=true;WITH_LDAP=true;WITH_OPENSSL=true;WITH_PERL=true;WITH_PERL_64BITINT=true;WITH_PERL_EMBEDDED=true;WITH_PROXY=true;WITH_SASL=true;WITH_SQLITE=true;WITH_USE_PERL=true;WITH_WERROR=true http://files.pfsense.org/packages/8/All/ zabbix-proxy-1.8.8,2.tbz zabbix-proxy-1.8.13-i386.pbi OpenVPN Client Export Utility Allows a pre-configured OpenVPN Windows Client or Mac OSX's Viscosity configuration bundle to be exported directly from pfSense. Security http://files.pfsense.org/packages/8/All/ p7zip-9.20.1.tbz zip-3.0.tbz zip-3.0-i386.pbi p7zip-9.20.1-i386.pbi /usr/ports/archivers/p7zip /usr/ports/archivers/zip 1.1.5 RELEASE 2.0 http://www.pfsense.com/packages/config/openvpn-client-export/openvpn-client-export.xml openvpn-client-export.xml HAVP antivirus http://www.server-side.de/ Antivirus: HAVP (HTTP Antivirus Proxy) is a proxy with a ClamAV anti-virus scanner. The main aims are continuous, non-blocking downloads and smooth scanning of dynamic and password protected HTTP traffic. Havp antivirus proxy has a parent and transparent proxy mode. It can be used with squid or standalone. And File Scanner for local files. Network Management http://files.pfsense.org/packages/8/All/ havp-0.91_1.tbz havp-0.91_1-i386.pbi /usr/ports/www/havp CLAMAVUSER=havp;CLAMAVGROUP=havp 0.91_1 pkg v1.01 BETA 1.2.2 http://www.pfsense.com/packages/config/havp/havp.xml havp.xml dv_serg@mail.ru Please check the HAVP settings. pfJailctl pfSense wrapper for jailctl - a jail management tool. Allows you to run jails on pfSense. http://anduin.net/jailctl/ System 0.51 1.2.3 BETA http://doc.pfsense.org/index.php/PfJailctl_package http://www.pfsense.com/packages/config/jailctl.xml jailctl.xml ltning-jailctl@anduin.net jail_template Basic template for jails, probably requires pfJailctl to be useful. Includes 'base' and 'manpages' dists. http://anduin.net/jailctl/ System 0.2 1.2.3 BETA http://doc.pfsense.org/index.php/PfJailctl_package http://www.pfsense.com/packages/config/jail_template.xml jail_template.xml ltning-jailctl@anduin.net blinkled Allows you to use LEDs for network activity on supported platforms (ALIX, WRAP, Soekris, etc) System 0.4 Beta jimp@pfsense.org 1.2.3 http://www.pfsense.org/packages/config/blinkled8/blinkled.xml blinkled.xml http://doc.pfsense.org/index.php/BlinkLED_Package http://doc.pfsense.org/index.php/BlinkLED_Package /usr/ports/sysutils/blinkled sysutils/blinkled http://files.pfsense.org/packages/8/All/ blinkled-0.1.tbz blinkled-0.1-i386.pbi gwled Allows you to use LEDs for gateway status on supported platforms (ALIX, WRAP, Soekris, etc) System 0.2 Beta jimp@pfsense.org 2.0 http://www.pfsense.org/packages/config/gwled/gwled.xml gwled.xml Dashboard Widget: Snort Dashboard widget for Snort. System http://www.pfsense.com/packages/config/widget-snort/widget-snort.xml 0.3.5 BETA 1.2 widget-snort.xml Dashboard Widget: HAVP Dashboard widget for HAVP alerts. System http://www.pfsense.com/packages/config/widget-havp/widget-havp.xml 0.1 BETA 1.2 widget-havp.xml Dashboard Widget: Antivirus Status Dashboard widget for HAVP status. System http://www.pfsense.com/packages/config/widget-antivirus/widget-antivirus.xml 0.1 BETA 1.2 widget-havp.xml RRD Summary RRD Summary Page, which will give a total amount of traffic passed In/Out during this and the previous month. System 1.1 Beta jimp@pfsense.org 1.2.3 http://www.pfsense.org/packages/config/rrd-summary/rrd-summary.xml rrd-summary.xml ifBWStats Interface Bandwidth Stats. Tracks data usage on each interface. Helpful if your isp caps your montly data usage. No dependancies (ie rrd). Diagnostics http://www.pfsense.org/packages/config/ifbwstats/ifbwstats.xml 1.0 Beta 3.0 ifbwstats.xml Unbound Unbound is a validating, recursive, and caching DNS resolver. This package is a drop in replacement for Services: DNS Forwarder and also supports DNSSEC extensions. Once installed please configure the Unbound service by visiting Services: Unbound DNS. http://www.unbound.net/ Services 1.4.21_1 Alpha warren@decoy.co.za 2.0 http://doc.pfsense.org/index.php/Unbound_package http://www.pfsense.com/packages/config/unbound/unbound.xml unbound.xml http://files.pfsense.org/packages/8/All/ unbound-1.4.21_1.tbz ldns-1.6.16.tbz expat-2.0.1_2.tbz libevent-1.4.14b_2.tbz /usr/ports/dns/unbound/ /usr/ports/dns/ldns /usr/ports/textproc/expat2 /usr/ports/devel/libevent2 dns/ldns textproc/expat2 devel/libevent2 dns/unbound unbound-1.4.21_1-i386.pbi unbound_UNSET=GOST ECDSA;unbound_SET=LIBEVENT THREADS unbound unbound.log Unbound Please visit Services: Unbound DNS to configure the Unbound DNS service. Remember you will need to disable Services: DNS Forwarder before starting Unbound. Also note if your DHCP server makes use of pfSense as the DNS server, then you will now need to add the IP address of the respective interface to the DNS servers field, in the DHCP server configuration page. Shellcmd The shellcmd utility is used to manage commands on system startup. Services http://www.pfsense.com/packages/config/shellcmd/shellcmd.xml 0.5 Beta 1.2 markjcrane@gmail.com shellcmd.xml widescreen The package makes pfSense adapt to browser's current width. It is particularly convenient for Status->Dashboard page that allocates columns for widgets according to browser's current width. ATTENTION: the package heavily modifies pfsense_ng theme and affects other's themes appearance. Please REFRESH your browser's window after installing/uninstalling this package. Enhancements 0.2 BETA 2.0 ey@tm-k.com http://www.pfsense.org/packages/config/widescreen/widescreen.xml widescreen.xml 2.0.1 NRPE v2 http://wiki.nagios.org/index.php/Howtos:nrpe_nsca NRPE is an addon for Nagios that allows you to execute plugins on remote Linux/Unix hosts. This is useful if you need to monitor local resources/attributes like disk usage, CPU load, memory usage, etc. on a remote host. Services http://files.pfsense.org/packages/8/All/ nrpe-2.12_3.tbz nagios-plugins-1.4.15_1,1.tbz nrpe-2.13_2-i386.pbi /usr/ports/net-mgmt/nrpe2 /usr/ports/net-mgmt/nagios-plugins net-mgmt/nagios-plugins net-mgmt/nrpe2 nrpe2_SET=SSL;nrpe2_UNSET=ARGS http://www.pfsense.com/packages/config/nrpe2/nrpe2.xml 2.12_3 v2.2 Beta 1.2 erik@erikkristensen.com nrpe2.xml Check_mk agent https://github.com/sileht/check_mk/blob/master/doc/README For each host to be monitored check_mk is called by Nagios only once per time period.]]> Services http://files.pfsense.org/packages/8/All/ /usr/ports/sysutils/muse /usr/ports/sysutils/ipmitool devel/libstatgrab sysutils/ipmitool devel/libstatgrab sysutils/muse http://www.pfsense.com/packages/config/checkmk-agent/checkmk.xml v0.1 RC1 2.0 marcellocoutinho@gmail.com checkmk.xml SSHDCond This package acts as an access list frontend for ssh connections]]> Enhancements 1.0 Beta 2.0 http://www.pfsense.com/packages/config/sshdcond/sshdcond.xml namezero@afim.info sshdcond.xml mailreport Allows you to setup periodic e-mail reports containing command output, log file contents, and RRD graphs. Network Management 2.0.6 Stable 2.0 http://www.pfsense.com/packages/config/mailreport/mailreport.xml mailreport.xml zebedee This allows traffic such as telnet, ftp and X to be protected from snooping as well as potentially gaining performance over low-bandwidth networks from compression.]]> Services 1.0 BETA www.winton.org.uk/zebedee/ jorgelustosa@gmail.com marcellocoutinho@gmail.com 2.0 http://files.pfsense.org/packages/8/All/ zebedee-2.5.3.tbz zebedee-2.5.3-i386.pbi http://www.pfsense.com/packages/config/zebedee/zebedee.xml zebedee.xml /usr/ports/security/zebedee OpenVPN tap Bridging Fix Patch to fix OpenVPN tap bridging on 2.0.x. WARNING! Cannot be uninstalled. System http://www.pfsense.com/packages/config/openvpn_tapfix_20x/openvpn_tapfix_20x.xml 0.4 BETA 2.0 2.0.4 Quagga OSPF OSPF routing protocol using Quagga -- WARNING! Installs files to the same place as OpenOSPFD and OpenBGPD. Installing both will break things. jimp@pfsense.org 0.99.22.3 v0.6 Routing BETA http://files.pfsense.org/packages/8/All/ quagga-0.99.22.3.tbz quagga-0.99.22.3-i386.pbi http://www.pfsense.com/packages/config/quagga_ospfd/quagga_ospfd.xml /usr/ports/net/quagga 2.0 quagga_ospfd.xml System Patches A package to apply and maintain custom system patches. jimp@pfsense.org 1.0 System RELEASE http://www.pfsense.com/packages/config/systempatches/systempatches.xml 2.0 systempatches.xml bacula-client http://www.bacula.org/ http://www.bacula.org/ Services 5.2.6 pkg v 1.0.1 Stable 2.0 http://www.pfsense.com/packages/config/bacula-client/bacula-client.xml http://ftp.freebsd.org/pub/FreeBSD/ports/i386/packages-8.3-release/All/ bacula-client-5.2.6.tbz bacula-5.2.12-i386.pbi /usr/ports/sysutils/bacula-client sysutils/bacula-client marcioc.antao@gmail.com bacula-client.xml Please visit the bacula client tab on services menu. urlsnarf http://forum.pfsense.org/ Services 2.3_4 Beta 2.1 http://www.pfsense.com/packages/config/urlsnarf/urlsnarf.xml jimp@pfsense.org urlsnarf.xml net/libnet10 security/dsniff http://files.pfsense.org/packages/8/All/ dsniff-2.3_4-i386.pbi iftop http://forum.pfsense.org/ Services 0.17 Beta 2.1 http://www.pfsense.com/packages/config/iftop/iftop.xml jimp@pfsense.org iftop.xml net-mgmt/iftop http://files.pfsense.org/packages/8/All/ iftop-0.17-i386.pbi git http://forum.pfsense.org/ Services 1.8.1.3 Beta 2.1 http://www.pfsense.com/packages/config/git/git.xml jimp@pfsense.org git.xml git_UNSET=GITWEB GUI HTMLDOCS CVS P4 SVN;git_SET=CONTRIB CURL ETCSHELLS ICONV NLS PERL /usr/ports/devel/git devel/git http://files.pfsense.org/packages/8/All/ git-1.8.1.3-i386.pbi tinc http://www.tinc-vpn.org/ tinc is a Virtual Private Network (VPN) daemon that uses tunnelling and encryption to create a secure private mesh network between hosts on the Internet. Network Management http://files.pfsense.org/packages/8/All/ tinc-1.0.21-i386.pbi security/tinc 1.0.21 ALPHA http://doc.pfsense.org/index.php/tinc_package 2.1 http://www.pfsense.com/packages/config/tinc/tinc.xml tinc.xml tinc tinc.log tinc syslog-ng http://www.balabit.com/network-security/syslog-ng/ Syslog-ng syslog server. This service is not intended to replace the default pfSense syslog server but rather acts as an independent syslog server. Services 3.3.6_3 ALPHA 2.1 http://files.pfsense.org/packages/8/All/ syslog-ng-3.3.7_4-i386.pbi sysutils/logrotate sysutils/syslog-ng laleger@gmail.com http://www.pfsense.com/packages/config/syslog-ng/syslog-ng.xml syslog-ng.xml Zabbix-2 Agent Monitoring agent. Services http://www.pfsense.org/packages/config/zabbix2/zabbix2-agent.xml zabbix2-agent-2.0.8 pkg v0.7_1 BETA 2.0 zabbix2-agent.xml dbaio@bsd.com.br /usr/ports/net-mgmt/zabbix2-agent zabbix2-agent net-mgmt/zabbix2-agent http://files.pfsense.org/packages/8/All/ zabbix2-agent-2.0.8.tbz zabbix2-agent-2.0.8-i386.pbi Zabbix-2 Proxy Monitoring agent proxy. Services http://www.pfsense.org/packages/config/zabbix2/zabbix2-proxy.xml zabbix2-proxy-2.0.8 pkg v0.7_1 BETA 2.0 zabbix2-proxy.xml dbaio@bsd.com.br /usr/ports/net-mgmt/zabbix2-proxy zabbix2-proxy net-mgmt/zabbix2-proxy OPTIONS_SET+= SQLITE IPV6;OPTIONS_UNSET+= MYSQL JABBER GSSAPI http://files.pfsense.org/packages/8/All/ zabbix2-proxy-2.0.8.tbz zabbix2-proxy-2.0.8-i386.pbi ipmitool http://forum.pfsense.org/ Services 1.8.12 Beta 2.1 http://www.pfsense.com/packages/config/ipmitool/ipmitool.xml jimp@pfsense.org ipmitool.xml sysutils/ipmitool ipmitool_SET=FREEIPMI;freeipmi_UNSET=DOCS DEBUG IOPERM http://files.pfsense.org/packages/8/All/ ipmitool-1.8.12_3-i386.pbi sudo http://doc.pfsense.org/index.php/Sudo_Package Security 0.2 Beta 2.0.2 http://www.pfsense.com/packages/config/sudo/sudo.xml jimp@pfsense.org sudo.xml security/sudo /usr/ports/security/sudo http://files.pfsense.org/packages/8/All/ sudo-1.8.6.p8.tbz sudo-1.8.6p8-i386.pbi Service Watchdog Monitors for stopped services and restarts them. jimp@pfsense.org 1.4 Services BETA http://www.pfsense.com/packages/config/servicewatchdog/servicewatchdog.xml 2.1 servicewatchdog.xml softflowd http://code.google.com/p/softflowd/ Softflowd is flow-based network traffic analyser capable of Cisco NetFlow data export. Softflowd semi-statefully tracks traffic flows recorded by listening on a network interface or by reading a packet capture file. These flows may be reported via NetFlow to a collecting host or summarised within softflowd itself. Softflowd supports Netflow versions 1, 5 and 9 and is fully IPv6-capable - it can track IPv6 flows and send export datagrams via IPv6. It also supports export to multicast groups, allowing for redundant flow collectors. Network Management http://www.pfsense.com/packages/config/softflowd/softflowd.xml http://files.pfsense.org/packages/8/All/ softflowd-0.9.8_2-i386.pbi 0.9.8 Beta 2.1 softflowd.xml net-mgmt/softflowd