222
packagecopy@files.pfsense.org
/usr/local/www/files/packages/8/All/
Strikeback
Detect port scans with iplog and strikeback
http://forum.pfsense.org/index.php/topic,37225.0.html
Services
0.1
BETA
2.0
tom@tomschaefer.org
http://www.pfsense.com/packages/config/strikeback/strikeback.xml
strikeback.xml
MAC-to-Vendor
The package make pfSense show NIC Vendor names instead of MAC addresses in the form Asustek:xx:xx:xx, full info about MAC and vendor is available in tooltip. Applies to pages Status->Interfaces, Status->DHCP leases, Status->Wireless, Diagnostics->ARP table. Vendor names are stored in the file /usr/local/pkg/mactovendor/mac-prefixes
Enhancements
0.2
BETA
3.0
ey@tm-k.com
http://www.pfsense.com/packages/config/mactovendor/mactovendor.xml
mactovendor.xml
File Manager
PHP File Manager
Diagnostics
http://forum.pfsense.org/index.php/topic,26974.0.html
http://pfsense.org/packages/config/filemgr/filemgr.xml
0.1.1
Beta
2.0
tom@tomschaefer.org
filemgr.xml
Country Block
Block countries
Firewall
http://forum.pfsense.org/index.php/topic,25732.0.html
http://pfsense.org/packages/config/countryblock/countryblock.xml
http://files.pfsense.org/packages/7/All/
0.2.4
Beta
2.0
tom@tomschaefer.org
countryblock.xml
IP-Blocklist
IP-Blocklist is the new PeerBlock. IP lists are used to add deny/allow rules to the firewall for in & out traffic.
Firewall
http://forum.pfsense.org/index.php/topic,24769.0.html
http://pfsense.org/packages/config/ipblocklist/8/ipblocklist.xml
http://files.pfsense.org/packages/7/All/
0.3.5
Beta
2.0
tom@tomschaefer.org
ipblocklist.xml
anyterm
Ajax Interactive Shell - Have you ever wanted SSH or telnet access to your system from an internet desert - from behind a strict firewall, from an internet cafe, or even from a mobile phone? Anyterm is a combination of a web page and a process that runs on your web server that provides this access. WARNING! We suggest using Stunnel in combination with this package!
http://anyterm.org/
http://doc.pfsense.org/index.php/AnyTerm_package
Diagnostics
0.5
BETA
1.2.3
http://www.pfsense.com/packages/config/anyterm/anyterm.xml
anyterm.xml
http://doc.pfsense.org/index.php/haproxy_package
haproxy
The Reliable, High Performance TCP/HTTP Load Balancer
http://haproxy.1wt.eu/
Services
0.29
BETA
1.2.3
http://www.pfsense.com/packages/config/haproxy/haproxy.xml
haproxy.xml
/usr/ports/net/haproxy-devel
Proxy Server with mod_security
http://doc.pfsense.org/index.php/ProxyServerModSecurity_package
http://www.modsecurity.org/
ModSecurity is a web application firewall that can work either embedded or as a reverse proxy. It provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis. In addition this package allows URL forwarding which can be convenient for hosting multiple websites behind pfSense using 1 IP address.
Network Management
0.1.2
ALPHA
1.2.3
http://www.pfsense.com/packages/config/apache_mod_security/apache_mod_security.xml
http://files.pfsense.org/packages/8/All/
db42-4.2.52_5.tbz
gdbm-1.8.3_3.tbz
apr-gdbm-db42-1.3.5.1.3.7_3.tbz
ap22-mod_memcache-0.1.0_4.tbz
apache-2.2.16.tbz
ap22-mod_security-2.5.12.tbz
apache_mod_security.xml
/usr/ports/devel/gettext
/usr/ports/misc/help2man
/usr/ports/devel/apr1
/usr/ports/devel/pkg-config
/usr/ports/databases/db42
/usr/ports/databases/gdbm
/usr/ports/www/mod_security
/usr/ports/www/apache22
/usr/ports/www/mod_memcache
Please visit the ProxyServer settings tab and set the service up so that it may be started.
pure-ftpd
http://www.pureftpd.org/
*DO NOT RUN THIS ON A FIREWALL. USE A DEDICATED MACHINE!* Pure FTPd Server is a fast, production quality, standards-conformant FTP server based on Troll-FTPd. It has no known vulnerabilities, is trivial to set up, and is especially designed for modern kernels. Features include PAM support, IPv6, chroot()ed home directories, virtual domains, built-in 'ls', FXP protocol, anti-warez system, bandwidth throttling, restricted ports for passive downloads, an LDAP backend, XML output, and more.
FTP
http://www.pfsense.com/packages/config/pure-ftpd.xml
http://files.pfsense.org/packages/8/All/
pure-ftpd-1.0.29_1.tbz
/usr/ports/ftp/pure-ftpd
1.0.21
Stable
pure-ftpd.xml
1.0
1.0
ftp
pure-ftpd.log
true
Avahi
http://doc.pfsense.org/index.php/Avahi_package
http://www.avahi.org/
Avahi is a system which facilitates service discovery on a local network. This means that you can plug your laptop or computer into a network and instantly be able to view other people who you can chat with, find printers to print to or find files being shared. This kind of technology is already found in Apple MacOS X (branded Rendezvous, Bonjour and sometimes Zeroconf) and is very convenient. Avahi is mainly based on Lennart Poettering's flexmdns mDNS implementation for Linux which has been discontinued in favour of Avahi.
Network Management
http://files.pfsense.org/packages/8/All/
/usr/ports/net/avahi
/usr/ports/net/avahi-app
0.6.25_1
ALPHA
1.2.3
http://www.pfsense.com/packages/config/avahi/avahi.xml
avahi.xml
Please visit the Avahi settings tab and select which interfaces you do not wish Avahi to listen on and click save to start the service.
ntop
http://www.ntop.org/
ntop is a network probe that shows network usage in a way similar to what top does for processes. In interactive mode, it displays the network status on the user's terminal. In Web mode it acts as a Web server, creating an HTML dump of the network status. It sports a NetFlow/sFlow emitter/collector, an HTTP-based client interface for creating ntop-centric monitoring applications, and RRD for persistently storing traffic statistics.
Network Management
http://files.pfsense.org/packages/8/All/
rrdtool-1.2.26_1.tbz
gdbm-1.8.3_3.tbz
perl-5.12.3.tbz
libpcap-1.1.1_1.tbz
GeoIP-1.4.8_1.tbz
font-util-1.2.0.tbz
webfonts-0.30_6.tbz
ntop-4.0.1_1.tbz
/usr/ports/net/GeoIP
/usr/ports/databases/gdbm
/usr/ports/databases/rrdtool12
/usr/ports/x11-fonts/font-util
/usr/ports/graphics/graphviz
/usr/ports/x11-fonts/webfonts
/usr/ports/net/ntop
WITHOUT_APNG=true WITHOUT_COLLATION_FIX=true WITHOUT_DEBUGGING=true WITHOUT_DEJAVU=true WITHOUT_DEVIL=true WITHOUT_DIGCOLA=true WITHOUT_EXTRA_PATCHES=true WITHOUT_FONTCONFIG=true WITHOUT_FPECTL=true WITHOUT_GAM_POLLER=true WITHOUT_GDBM=true WITHOUT_GDK_PIXBUF=true WITHOUT_GHOSTSCRIPT=true WITHOUT_GLITZ=true WITHOUT_GNOMEUI=true WITHOUT_GTK=true WITHOUT_GUILE=true WITHOUT_HUGE_STACK_SIZE=true WITHOUT_ICONV=true WITHOUT_IPSEPCOLA=true WITHOUT_LIBSIGSEGV=true WITHOUT_LOCALE=true WITHOUT_LUA=true WITHOUT_MING=true WITHOUT_MMAP=true WITHOUT_MULTIPLICITY=true WITHOUT_PANGOCAIRO=true WITHOUT_PCAP_PORT=true WITHOUT_PERL=true WITHOUT_PERL_MALLOC=true WITHOUT_PERL_MODULE=true WITHOUT_PHP=true WITHOUT_PTH=true WITHOUT_PYTHON=true WITHOUT_PYTHON_MODULE=true WITHOUT_RSVG=true WITHOUT_RUBY=true WITHOUT_RUBY_MODULE=true WITHOUT_SEM=true WITHOUT_SIMD=true WITHOUT_SITECUSTOMIZE=true WITHOUT_SMYRNA=true WITHOUT_SUIDPERL=true WITHOUT_TCL=true WITHOUT_THREADS=true WITHOUT_TK=true WITHOUT_X11=true WITHOUT_XCB=true WITHOUT_XMLDUMP=true WITHOUT_XPM=true WITHOUT_ZSH=true WITH_BASH=true WITH_EXTRA_ENCODINGS=true WITH_ICONV=true WITH_IPV6=true WITH_NLS=true WITH_PERL_64BITINT=true WITH_PYMALLOC=true WITH_TCPWRAPPER=true WITH_THREADS=true WITH_UCS4=true WITH_USE_PERL=true
4.0.1_1 v2
BETA
2.0
http://www.pfsense.com/packages/config/ntop2/ntop.xml
ntop.xml
FreeSWITCH
http://www.freeswitch.org/
FreeSWITCH is an open source telephony platform designed to facilitate the creation of voice and chat driven products scaling from a soft-phone up to a soft-switch. It can be used as a simple switching engine, a PBX, a media gateway or a media server to host IVR applications using simple scripts or XML to control the callflow.
Services
http://doc.pfsense.org/index.php/FreeSWITCH
http://www.pfsense.com/packages/config/freeswitch/freeswitch.xml
http://files.pfsense.org/packages/8/All/
/usr/ports/net/freeswitch
0.8.3.6
Beta
1.2.1
markjcrane@gmail.com
freeswitch.xml
true
FreeSWITCH Dev
http://www.freeswitch.org/
FreeSWITCH package development version.
Services
http://doc.pfsense.org/index.php/FreeSWITCH
http://www.pfsense.com/packages/config/freeswitch_dev/freeswitch.xml
http://files.pfsense.org/packages/8/All/
/usr/ports/net/freeswitch
0.9.7.26
Beta
1.2.3
markjcrane@gmail.com
freeswitch.xml
true
Notes
Track things you want to note for this system.
Status
http://www.pfsense.com/packages/config/notes/notes.xml
http://files.pfsense.org/packages/8/All/
0.2.4
Alpha
1.2.1
markjcrane@gmail.com
notes.xml
TFTP
Trivial File Transport Protocol is a very simple file transfer protocol. Often used with routers, voip phones and more.
Services
http://www.pfsense.com/packages/config/tftp2/tftp.xml
http://files.pfsense.org/packages/8/All/
2.0
Stable
2.0
tftp.xml
PHPService
PHP run as a service it can do anything PHP can do including but not limited to monitoring files, CPU, RAM, and send alerts to the syslog.
Services
http://doc.pfsense.org/index.php/PHPService
http://www.pfsense.com/packages/config/phpservice/phpservice.xml
http://files.pfsense.org/packages/8/All/
0.4.1
Beta
1.2.1
markjcrane@gmail.com
phpservice.xml
Backup
Tool to Backup and Restore files and directories.
System
http://www.pfsense.com/packages/config/backup/backup.xml
http://files.pfsense.org/packages/8/All/
0.1.5
Beta
1.2
markjcrane@gmail.com
backup.xml
Cron
The cron utility is used to manage commands on a schedule.
Services
http://www.pfsense.com/packages/config/cron/cron.xml
http://files.pfsense.org/packages/8/All/
0.1.5
Beta
1.2
markjcrane@gmail.com
cron.xml
vHosts
It is a web server package that can host HTML, Javascript, CSS, and PHP. It uses the lighttpd web server that is already installed. It uses PHP5 in FastCGI mode and has access to PHP Data Ojbects and PDO SQLite.
Services
http://doc.pfsense.org/index.php/vhosts
http://www.pfsense.com/packages/config/vhosts/vhosts.xml
http://files.pfsense.org/packages/8/All/
0.7.4
Stable
1.2.3
markjcrane@gmail.com
vhosts.xml
snort
http://forum.pfsense.org/index.php/topic,16847.0.html
http://www.snort.org
Snort is an open source network intrusion prevention and detection system (IDS/IPS). Combining the benefits of signature, protocol, and anomaly-based inspection.
Security
http://files.pfsense.org/packages/8/All/
mysql-client-5.1.53.tbz
snort-2.9.0.5.tbz
perl-threaded-5.10.1_3.tbz
/usr/ports/devel/pcre
/usr/ports/net/daq
/usr/ports/net/libnet
/usr/ports/lang/perl5.10
/usr/ports/databases/mysql51-client
/usr/ports/security/snort
WITH_THREADS=yes WITH_IPV6=true WITH_MPLS=true WITH_GRE=true WITHOUT_TARGETBASED=true WITH_DECODERPRE=true WITH_ZLIB=true WITH_NORMALIZER=true WITH_REACT=true WITH_PERFPROFILE=true WITH_FLEXRESP3=true WITHOUT_MYSQL=true WITHOUT_ODBC=true WITHOUT_POSTGRESQL=true WITHOUT_PRELUDE=true WITH_SNORTSAM=true WITHOUT_PFSENSE=true
http://www.pfsense.com/packages/config/snort/snort.xml
2.9 pkg v. 2.0
2.0
Stable
/snort.xml
Please visit the Snort settings tab and enter your oinkid code. Afterwards visit the update rules tab to download the snort rules.
snort-dev
http://forum.pfsense.org/index.php/topic,16847.0.html
http://www.snort.org
Testing Install Only, Currently Broken as of 09212011
Security
http://www.pfsense.com/packages/config/snort-dev/snort.xml
2.9.1 pkg v. 2.0
2.0
UnStable
/snort.xml
spamd
http://www.openbsd.org/spamd/
Tarpits like spamd are fake SMTP servers, which accept connections but don't deliver mail. Instead, they keep the connections open and reply very slowly. If the peer is patient enough to actually complete the SMTP dialogue (which will take ten minutes or more), the tarpit returns a 'temporary error' code (4xx), which indicates that the mail could not be delivered successfully and that the sender should keep the mail in their queue and retry again later.
Services
http://www.pfsense.com/packages/config/spamd/spamd.xml
http://files.pfsense.org/packages/8/All/
spamd-4.5.0_4.tbz
4.5.0_4
Beta
1.2.1
spamd.xml
/usr/ports/mail/spamd
spamd
spamd.log
Postfix Forwarder
http://www.postfix.org/
It can do first and second line antispam combat before sending incoming mail to local mail servers.
Postfix can also detect zombies, check RBLS, SPF, seach ldap for valid recipients and use third part antispam engines like policyd and mailscanner for better antispam solution.]]>
Services
http://www.pfsense.com/packages/config/postfix/postfix.xml
http://files.pfsense.org/packages/8/All/
postfix-2.8.5,1.tbz
2.8.5,1 pkg v.2.1
RC1
2.0
postfix.xml
/usr/ports/mail/postfix
WITH_PCRE=true WITH_SPF=true
siproxd
http://siproxd.sourceforge.net/
Proxy for handling NAT of multiple SIP devices to a single public IP.
Services
http://www.pfsense.com/packages/config/siproxd.xml
http://files.pfsense.org/packages/8/All/
siproxd-0.8.0.tbz
http://doc.pfsense.org/index.php/Siproxd_package
/usr/ports/net/siproxd
0.8.0_2
Beta
1.2.1
siproxd.xml
OpenBGPD
OpenBGPD is a FREE implementation of the Border Gateway Protocol, Version 4. It allows ordinary machines to be used as routers exchanging routes with other systems speaking the BGP protocol.
NET
http://www.pfsense.com/packages/config/openbgpd/openbgpd.xml
/usr/ports/net/openbgpd
0.5.2
STABLE
http://doc.pfsense.org/index.php/OpenBGPD_package
1.3
openbgpd.xml
http://files.pfsense.org/packages/8/All/
openbgpd-4.7.20100410.tbz
OpenOSPFD
OSPF routing protocol
cmb@pfsense.org
0.5.1
Routing
BETA
http://files.pfsense.org/packages/8/All/
openospfd-4.6.tbz
http://www.pfsense.com/packages/config/openospfd/openospfd.xml
/usr/home/pfsense/tools/pfPorts/openospfd
/usr/ports/devel/libevent
1.2.1
openospfd.xml
libevent-1.4.14b_1.tbz
Lightsquid
High perfomance web proxy report. Requires squid HTTP proxy.
http://lightsquid.sf.net/
Network Report
1.8.0 pkg v.1.5
dv_serg@mail.ru
http://files.pfsense.org/packages/8/All/
lightsquid-1.8_2.tbz
perl-5.12.3.tbz
/usr/ports/www/lightsquid
/usr/ports/lang/perl5.12
Beta
2
http://www.pfsense.com/packages/config/lightsquid/lightsquid.xml
lightsquid.xml
true
Varnish
Varnish is a state-of-the-art, high-performance HTTP accelerator. It uses the advanced features in FreeBSD 6/7/8 to achieve its high performance.
http://varnish-cache.org
http://doc.pfsense.org/index.php/Varnish_package
Services
2.1.5 pkg v.0.8.9.1
RC1
2.0
http://www.pfsense.com/packages/config/varnish64/varnish_backends.xml
varnish_backends.xml
http://files.pfsense.org/packages/8/All/
varnish-2.1.5.tbz
gcc-4.2.5.20090325_5.tbz
/usr/ports/www/varnish
/usr/ports/lang/gcc42
Varnish-dev
Varnish is a state-of-the-art, high-performance HTTP accelerator. It uses the advanced features in FreeBSD 6/7/8 to achieve its high performance.
http://varnish-cache.org
http://doc.pfsense.org/index.php/Varnish_package
Services
3.0.1 pkg v.0.9
BETA
2.0
http://www.pfsense.com/packages/config/varnish64/varnish_backends.xml
varnish_backends.xml
http://files.pfsense.org/packages/8/All/
varnish-3.0.1.tbz
gcc-4.2.5.20090325_4.tbz
/usr/ports/www/varnish
/usr/ports/lang/gcc42
vnstat2
http://humdi.net/vnstat/
Vnstat is a console-based network traffic monitor<br />The vnstat PHP frontend and vnstati adds a more user friendly way of displaying traffic usage.
http://forum.pfsense.org/index.php/topic,14179.0.html
Network Management
http://files.pfsense.org/packages/8/All/
vnstat-1.10_2.tbz
/usr/ports/net/vnstat
1.10_2
Beta
2.0
crazypark2@yahoo.dk
http://www.pfsense.com/packages/config/vnstat2/vnstat2.xml
vnstat2.xml
phpSysInfo
http://phpsysinfo.sourceforge.net/
PHPSysInfo is a customizable PHP Script that parses /proc, and formats information nicely. It will display information about system facts like Uptime, CPU, Memory, PCI devices, SCSI devices, IDE devices, Network adapters, Disk usage, and more.
System
2.5.4
Beta
1.0
1.2.3
http://www.pfsense.com/packages/config/phpsysinfo/bin/
mbmon-205_5.tbz
/usr/ports/sysutils/mbmon
http://www.pfsense.com/packages/config/phpsysinfo/phpsysinfo.xml
phpsysinfo.xml
true
dns-server
pfSense version of TinyDNS which features failover host support
http://cr.yp.to/djbdns.html
Services
1.0.6.16
Beta
http://doc.pfsense.org/index.php/Tinydns_package
2.0
http://www.pfsense.com/packages/config/tinydns/tinydns.xml
tinydns.xml
http://files.pfsense.org/packages/8/All/
ucspi-tcp-0.88_2.tbz
daemontools-0.76_16.tbz
djbdns-ipv6-1.05.b23_13.tbz
/usr/ports/sysutils/ucspi-tcp
/usr/ports/sysutils/daemontools
/home/pfsense/tools/pfPorts/djbdns
WITHOUT_MAN=true WITH_SRV=true
YES
Open-VM-Tools
VMware Tools
http://open-vm-tools.sourceforge.net/
Services
313025
Stable
http://doc.pfsense.org/index.php/Open_VM_Tools_package
2.0
http://www.pfsense.org/packages/config/open-vm-tools_2/open-vm-tools.xml
open-vm-tools.xml
http://files.pfsense.org/packages/8/All/
/usr/ports/emulators/open-vm-tools-nox11/
open-vm-tools-nox11-313025_2.tbz
icu-4.6.1.tbz
/usr/ports/devel/icu
fusefs-kmod-0.3.9.p1.20080208_7.tbz
/usr/ports/sysutils/fusefs-kmod
fusefs-libs-2.7.4.tbz
/usr/ports/sysutils/fusefs-libs
glib-2.28.8.tbz
/usr/ports/devel/glib2
libdnet-1.11_3.tbz
/usr/ports/net/libdnet
libiconv-1.13.1_1.tbz
/usr/ports/converters/libiconv
pcre-8.12.tbz
/usr/ports/devel/pcre
perl-5.12.3.tbz
/usr/ports/lang/perl5.12
pkg-config-0.25_1.tbz
/usr/ports/devel/pkg-config
python27-2.7.2_1.tbz
/usr/ports/lang/python27
AutoConfigBackup
portal@bsdperimeter.com
Automatically backs up your pfSense configuration. All contents are encrypted on the server. Requires pfSense Premium Support Portal Subscription from https://portal.pfsense.org
https://portal.pfsense.org
Services
1.19
Stable
1.2
http://doc.pfsense.org/index.php/AutoConfigBackup
http://www.pfsense.com/packages/config/autoconfigbackup/autoconfigbackup.xml
autoconfigbackup.xml
arping
Broadcasts a who-has ARP packet on the network and prints answers.
http://www.habets.pp.se/synscan/programs.php?prog=arping
Services
2.09.1
Stable
1.0.1
http://www.pfsense.com/packages/config/arping/arping.xml
arping.xml
http://files.pfsense.org/packages/8/All/
arping-2.09.tbz
/usr/ports/net/arping
http://doc.pfsense.org/index.php/Arping
nmap
billm@pfsense.org
NMap is a utility for network exploration or security auditing. It supports ping scanning (determine which hosts are up), many port scanning techniques (determine what services the hosts are offering), version detection (determine what application/service is runing on a port), and TCP/IP fingerprinting (remote host OS or device identification). It also offers flexible target and port specification, decoy/stealth scanning, SunRPC scanning, and more. Most Unix and Windows platforms are supported in both GUI and command line modes. Several popular handheld devices are also supported, including the Sharp Zaurus and the iPAQ.
Security
http://files.pfsense.org/packages/8/All/
nmap-5.51.tbz
http://www.pfsense.com/packages/config/nmap/nmap.xml
5.51
Stable
http://doc.pfsense.org/index.php/Nmap_package
1.2.1
nmap.xml
/usr/ports/security/nmap
libpcap-1.1.1.tbz
imspector
IMSpector is an Instant Messenger transparent proxy with logging capabilities. Currently it supports MSN, AIM, ICQ, Yahoo and IRC to different degrees.
http://www.imspector.org/
Network Management
billm@pfsense.org
0.9-4
2.0
BETA
http://doc.pfsense.org/index.php/IMSpector_package
http://www.pfsense.com/packages/config/imspector/imspector.xml
imspector.xml
http://files.pfsense.org/packages/8/All/
imspector-0.9.tbz
/usr/home/pfsense/tools/pfPorts/imspector
nut
Network UPS Tools
http://www.networkupstools.org/
Network Management
2.2.2_5 pkg 1.4
BETA
2.0
rswagoner@gmail.com
http://www.pfsense.com/packages/config/nut/nut.xml
nut.xml
http://files.pfsense.org/packages/8/All/
nut-2.2.2_5.tbz
/usr/ports/sysutils/nut22
http://doc.pfsense.org/index.php/Nut_package
diag_new_states
Paul Taylors version of Diagnostics States which utilizes pftop.
http://www.addressplus.net
Network Management
0.2
ptaylor@addressplus.net
1.2.1
BETA
http://www.pfsense.org/packages/config/diag_states_pt/diag_new_states.xml
http://www.pfsense.com/packages/config/diag_states_pt/diag_new_states.xml
darkstat
http://dmr.ath.cx/net/darkstat/
darkstat is a network statistics gatherer. It's a packet sniffer that runs as a background process on a cable/DSL router, gathers all sorts of statistics about network usage, and serves them over HTTP.
Network Management
http://files.pfsense.org/packages/8/All/
darkstat-3.0.712.tbz
3.0.712
Stable
1.2.1
sullrich+pfsp@gmail.com
http://www.pfsense.com/packages/config/darkstat/darkstat.xml
darkstat.xml
/usr/ports/net-mgmt/darkstat
pfflowd
http://www.mindrot.org/pfflowd.html
pfflowd converts OpenBSD PF status messages (sent via the pfsync interface) to Cisco NetFlow datagrams. These datagrams may be sent (via UDP) to a host of one's choice. Utilising the OpenBSD stateful packet filter infrastructure means that flow tracking is very fast and accurate.
Network Management
http://www.pfsense.com/packages/config/pfflowd.xml
http://files.pfsense.org/packages/8/All/
pfflowd-0.8.tbz
0.8.2
Stable
2.0
pfflowd.xml
/usr/ports/net/pfflowd
widentd
RFC1413 auth/identd daemon with fixed fake reply
http://www.webweaving.org/widentd
Services
http://files.pfsense.org/packages/8/All/
widentd-1.03_1.tbz
1.03_1
Stable
http://doc.pfsense.org/index.php/Widentd_package
1.2.1
http://www.pfsense.com/packages/config/widentd.xml
widentd.xml
/usr/ports/net/widentd
freeradius
http://www.freeradius.org/
A free implementation of the RADIUS protocol.
System
1.1.8 pkg v1.0.3
Beta
2.0
none
http://files.pfsense.org/packages/8/All/
freeradius-1.1.8_2.tbz
libltdl-2.2.10.tbz
http://www.pfsense.org/packages/config/freeradius.xml
freeradius.xml
/usr/ports/net/freeradius
/usr/ports/devel/libltdl
bandwidthd
http://bandwidthd.sourceforge.net/
BandwidthD tracks usage of TCP/IP network subnets and builds html files with graphs to display utilization. Charts are built by individual IPs, and by default display utilization over 2 day, 8 day, 40 day, and 400 day periods. Furthermore, each ip address's utilization can be logged out at intervals of 3.3 minutes, 10 minutes, 1 hour or 12 hours in cdf format, or to a backend database server. HTTP, TCP, UDP, ICMP, VPN, and P2P traffic are color coded.
System
2.0.1.3
BETA
1.2.1
http://files.pfsense.org/packages/8/All/
bandwidthd-2.0.1_4.tbz
libpcap-1.1.1.tbz
postgresql-client-8.4.7.tbz
http://www.pfsense.org/packages/config/bandwidthd/bandwidthd.xml
bandwidthd.xml
/usr/ports/net/libpcap
/usr/ports/databases/postgresql84-client
/usr/ports/net-mgmt/bandwidthd
WITH_NLS=true WITHOUT_PAM=true WITHOUT_LDAP=true WITHOUT_MIT_KRB5=true WITHOUT_HEIMDAL_KRB5=true WITHOUT_OPTIMIZED_CFLAGS=true WITHOUT_XML=true WITHOUT_TZDATA=true WITHOUT_DEBUG=true WITHOUT_GSSAPI=true WITHOUT_ICU=true WITH_INTDATE=true
stunnel
http://www.stunnel.org/
An SSL encryption wrapper between remote client and local or remote servers.
Network Management
http://files.pfsense.org/packages/8/All/
stunnel-4.33.tbz
4.33.0
Stable
http://doc.pfsense.org/index.php/Stunnel_package
1.2.1
http://www.pfsense.com/packages/config/stunnel.xml
stunnel.xml
/usr/ports/security/stunnel
WITHOUT_FORK=true WITH_PTHREAD=true WITHOUT_UCONTEXT=true WITHOUT_IPV6=true WITH_LIBWRAP=true WITHOUT_SSL_PORT=true
iperf
http://dast.nlanr.net/Projects/Iperf/
Iperf is a tool for testing network throughput, loss, and jitter.
Network Management
http://www.pfsense.com/packages/config/iperf.xml
http://files.pfsense.org/packages/8/All/
iperf-2.0.4.tbz
2.0.2_1
Beta
http://doc.pfsense.org/index.php/Iperf_package
1.2.1
iperf.xml
/usr/ports/benchmarks/iperf
netio
http://freshmeat.net/projects/netio/
This is a network benchmark for DOS, OS/2 2.x, Windows NT/2000 and Unix. It measures the net throughput of a network via NetBIOS and/or TCP/IP protocols (Unix and DOS only support TCP/IP) using various different packet sizes.
Network Management
http://www.pfsense.com/packages/config/netio.xml
http://files.pfsense.org/packages/8/All
netio-1.26.tbz
1.26
2.0
ALPHA
netio.xml
/usr/ports/benchmarks/netio
mtr-nox11
billm@pfsense.org
Enhanced traceroute replacement
http://www.bitwizard.nl/mtr/
Network Management
http://files.pfsense.org/packages/8/All/
mtr-nox11-0.80.tbz
0.65_2
Stable
2.0
http://www.pfsense.com/packages/config/mtr-nox11.xml
mtr-nox11.xml
/usr/ports/net/mtr
squid
High performance web proxy cache.
http://www.squid-cache.org/
Network
2.7.9_4.2
Stable
2
fernando@netfilter.com.br seth.mos@xs4all.nl mfuchs77@googlemail.com jimp@pfsense.org
http://files.pfsense.org/packages/8/All/
squid-2.7.9_1.tbz
squid_radius_auth-1.10.tbz
libwww-5.4.0_4.tbz
/usr/ports/www/squid
/usr/ports/www/squid_radius_auth
/usr/ports/www/libwww
WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_CARP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_AUFS=true WITH_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true
http://www.pfsense.org/packages/config/squid/squid.xml
squid.xml
squid3
EXPERIMENTAL! Not all directives are ported yet! High performance web proxy cache.
http://www.squid-cache.org/
Network
3.1.9_0.1
ALPHA
2.0
fernando@netfilter.com.br seth.mos@xs4all.nl mfuchs77@googlemail.com
http://files.pfsense.org/packages/8/All/
squid-3.1.9.tbz
squid_radius_auth-1.10.tbz
libwww-5.4.0_4.tbz
WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_IPV6=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITHOUT_SQUID_IPFW=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_ECAP=true WITH_SQUID_ICAP=true WITHOUT_SQUID_ESI=true WITH_SQUID_AUFS=true WITHOUT_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITHOUT_SQUID_DEBUG=true
http://www.pfsense.org/packages/config/squid3/squid.xml
squid.xml
true
squid3-reverse
EXPERIMENTAL! High performance web proxy cache with reverse proxy.
http://www.squid-cache.org/
Network
3.1.14_0.1
PRE-ALPHA
3.0
fernando@netfilter.com.br seth.mos@xs4all.nl mfuchs77@googlemail.com
http://files.pfsense.org/packages/8/All/
squid-3.1.14.tbz
squid_radius_auth-1.10.tbz
libwww-5.4.0_4.tbz
WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_IPV6=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITHOUT_SQUID_IPFW=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_ECAP=true WITH_SQUID_ICAP=true WITHOUT_SQUID_ESI=true WITH_SQUID_AUFS=true WITHOUT_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITHOUT_SQUID_DEBUG=true
http://www.pfsense.org/packages/config/squid3-reverse/squid.xml
squid.xml
true
LCDproc
LCD display driver
http://www.lcdproc.org/
Utility
lcdproc-0.5.3_1
BETA
1.2.1
seth.mos@xs4all.nl
http://files.pfsense.org/packages/8/All/
lcdproc-0.5.3_1.tbz
http://www.pfsense.org/packages/config/lcdproc/lcdproc.xml
lcdproc.xml
/usr/ports/sysutils/lcdproc
WITH_USB=true
arpwatch
Arpwatch monitors ethernet/ip address pairings. It also logs certain changes to syslog.
http://www-nrg.ee.lbl.gov/
Security
http://files.pfsense.org/packages/8/All/
arpwatch-2.1.a15_4.tbz
/usr/ports/net-mgmt/arpwatch
2.1.a14_4
ALPHA
2.0
http://www.pfsense.com/packages/config/arpwatch.xml
arpwatch.xml
arpwatch
arpwatch.log
squidGuard
High perfomance web proxy URL filter. Requires proxy Squid package.
http://www.squidGuard.org/
dv_serg@mail.ru
Network Management
1.4_2 pkg v.1.9
Beta
1.1
http://files.pfsense.org/packages/8/All/
squidGuard-1.4_3.tbz
db41-4.1.25_4.tbz
db3-3.3.11_3,1.tbz
cyrus-sasl-2.1.23_3.tbz
/usr/ports/www/squidguard
/usr/ports/databases/db41
/usr/ports/databases/db3
/usr/ports/security/cyrus-sasl2
WITH_SQUID_KERB_AUTH=true WITH_SQUID_LDAP_AUTH=true WITH_SQUID_NIS_AUTH=true WITH_SQUID_SASL_AUTH=true WITH_SQUID_DELAY_POOLS=true WITH_SQUID_SNMP=true WITH_SQUID_CARP=true WITH_SQUID_SSL=true WITHOUT_SQUID_PINGER=true WITHOUT_SQUID_DNS_HELPER=true WITH_SQUID_HTCP=true WITH_SQUID_VIA_DB=true WITH_SQUID_CACHE_DIGESTS=true WITH_SQUID_WCCP=true WITHOUT_SQUID_WCCPV2=true WITHOUT_SQUID_STRICT_HTTP=true WITH_SQUID_IDENT=true WITH_SQUID_REFERER_LOG=true WITHOUT_SQUID_USERAGENT_LOG=true WITH_SQUID_ARP_ACL=true WITH_SQUID_PF=true WITHOUT_SQUID_IPFILTER=true WITH_SQUID_FOLLOW_XFF=true WITH_SQUID_AUFS=true WITH_SQUID_COSS=true WITH_SQUID_KQUEUE=true WITH_SQUID_LARGEFILE=true WITHOUT_SQUID_STACKTRACES=true WITH_SAMPLE_BL=true WITH_LDAP=true WITH_SASL=true WITH_FETCH=true
http://www.pfsense.org/packages/config/squidGuard/squidguard.xml
squidguard.xml
Zabbix Agent
Monitoring agent.
Services
http://www.pfsense.com/packages/config/zabbix-agent/zabbix-agent.xml
1.8.5,2
FINAL
1.2.3
zabbix-agent.xml
remco.verhoef@redfive.biz
/usr/ports/net-mgmt/zabbix-agent
http://files.pfsense.org/packages/8/All/
zabbix-agent-1.8.5,2.tbz
Zabbix Proxy
Monitoring agent proxy.
Services
http://www.pfsense.com/packages/config/zabbix-proxy/zabbix-proxy.xml
1.8.5,2_1
FINAL
1.2.3
zabbix-proxy.xml
cmb@pfsense.org
/usr/ports/net-mgmt/zabbix-proxy
WITHOUT_CARES=true WITHOUT_CURL_DEBUG=true WITHOUT_DEBUGGING=true WITHOUT_DMALLOC=true WITHOUT_ETCSYMLINK=true WITHOUT_EXTRA_PATCHES=true WITHOUT_GDBM=true WITHOUT_GNUTLS=true WITHOUT_IODBC=true WITHOUT_IPMI=true WITHOUT_KERBEROS4=true WITHOUT_LDAP=true WITHOUT_LDAPS=true WITHOUT_LIBIDN=true WITHOUT_LIBSIGSEGV=true WITHOUT_LIBSSH2=true WITHOUT_MFD_REWRITES=true WITHOUT_MULTIPLICITY=true WITHOUT_MYSQL=true WITHOUT_NTLM=true WITHOUT_PERL_MALLOC=true WITHOUT_PGSQL=true WITHOUT_RTMP=true WITHOUT_SITECUSTOMIZE=true WITHOUT_SSH=true WITHOUT_SUIDPERL=true WITHOUT_THREADS=true WITHOUT_TKMIB=true WITHOUT_TRACKMEMORY=true WITHOUT_UNIXODBC=true WITH_CA_BUNDLE=true WITH_CURL=true WITH_DUMMY=true WITH_EXTRA_ENCODINGS=true WITH_FETCH=true WITH_FPING=true WITH_IPV6=true WITH_JABBER=true WITH_LDAP=true WITH_OPENSSL=true WITH_PERL=true WITH_PERL_64BITINT=true WITH_PERL_EMBEDDED=true WITH_PROXY=true WITH_SASL=true WITH_SQLITE=true WITH_USE_PERL=true WITH_WERROR=true
http://files.pfsense.org/packages/8/All/
zabbix-proxy-1.8.5,2.tbz
OpenVPN Client Export Utility
Allows a pre-configured OpenVPN Windows Client or or Mac OSX's Viscosity configuration bundle to be exported directly from pfSense.
Security
http://files.pfsense.org/packages/8/All/
p7zip-9.13.tbz
zip-3.0.tbz
/usr/ports/archivers/p7zip
/usr/ports/archivers/zip
0.9.1
BETA
2.0
http://www.pfsense.com/packages/config/openvpn-client-export/openvpn-client-export.xml
openvpn-client-export.xml
HAVP antivirus
http://www.server-side.de/
Antivirus: HAVP (HTTP Antivirus Proxy) is a proxy with a ClamAV anti-virus scanner. The main aims are continuous, non-blocking downloads and smooth scanning of dynamic and password protected HTTP traffic. Havp antivirus proxy has a parent and transparent proxy mode. It can be used with squid or standalone. And File Scanner for local files.
Network Management
http://files.pfsense.org/packages/8/All/
havp-0.91_1.tbz
/usr/ports/www/havp
0.91_1
BETA
1.2.2
http://www.pfsense.com/packages/config/havp/havp.xml
havp.xml
dv_serg@mail.ru
Please check the HAVP settings.
pfJailctl
pfSense wrapper for jailctl - a jail management tool. Allows you to run jails on pfSense.
http://anduin.net/jailctl/
System
0.51
1.2.3
BETA
http://doc.pfsense.org/index.php/PfJailctl_package
http://www.pfsense.com/packages/config/jailctl.xml
jailctl.xml
ltning-jailctl@anduin.net
jail_template
Basic template for jails, probably requires pfJailctl to be useful. Includes 'base' and 'manpages' dists.
http://anduin.net/jailctl/
System
0.2
1.2.3
BETA
http://doc.pfsense.org/index.php/PfJailctl_package
http://www.pfsense.com/packages/config/jail_template.xml
jail_template.xml
ltning-jailctl@anduin.net
blinkled
Allows you to use LEDs for network activity on supported platforms (ALIX, WRAP, Soekris, etc)
System
0.2
Beta
jimp@pfsense.org
1.2.3
http://www.pfsense.org/packages/config/blinkled8/blinkled.xml
blinkled.xml
http://doc.pfsense.org/index.php/BlinkLED_Package
http://doc.pfsense.org/index.php/BlinkLED_Package
gwled
Allows you to use LEDs for gateway status on supported platforms (ALIX, WRAP, Soekris, etc)
System
0.2
Beta
jimp@pfsense.org
2.0
http://www.pfsense.org/packages/config/gwled/gwled.xml
gwled.xml
Dashboard Widget: Snort
Dashboard widget for Snort.
System
http://www.pfsense.com/packages/config/widget-snort/widget-snort.xml
0.3
BETA
1.2
widget-snort.xml
Dashboard Widget: HAVP
Dashboard widget for HAVP alerts.
System
http://www.pfsense.com/packages/config/widget-havp/widget-havp.xml
0.1
BETA
1.2
widget-havp.xml
Dashboard Widget: Antivirus Status
Dashboard widget for HAVP status.
System
http://www.pfsense.com/packages/config/widget-antivirus/widget-antivirus.xml
0.1
BETA
1.2
widget-havp.xml
RRD Summary
RRD Summary Page, which will give a total amount of traffic passed In/Out during this and the previous month.
System
1.1
Beta
jimp@pfsense.org
1.2.3
http://www.pfsense.org/packages/config/rrd-summary/rrd-summary.xml
rrd-summary.xml
ifBWStats
Interface Bandwidth Stats. Tracks data usage on each interface. Helpful if your isp caps your montly data usage. No dependancies (ie rrd).
Diagnostics
http://www.pfsense.org/packages/config/ifbwstats/ifbwstats.xml
1.0
Beta
3.0
ifbwstats.xml
Unbound
Unbound is a validating, recursive, and caching DNS resolver. This package is a drop in replacement for Services: DNS Forwarder and also supports DNSSEC extensions. Once installed please configure the Unbound service by visiting Services: Unbound DNS.
http://www.unbound.net/
Services
1.4.13_02
Alpha
warren@decoy.co.za
2.0
http://doc.pfsense.org/index.php/Unbound_package
http://www.pfsense.com/packages/config/unbound/unbound.xml
unbound.xml
http://files.pfsense.org/packages/8/All/
unbound-1.4.13.tbz
ldns-1.6.10.tbz
expat-2.0.1_1.tbz
libevent-1.4.14b_2.tbz
/usr/ports/dns/unbound
WITH_LIBEVENT=true WITH_THREADS=true WITHOUT_GOST=true WITHOUT_MAN=true
unbound
unbound.log
Unbound
Please visit Services: Unbound DNS to configure the Unbound DNS service. Remember you will need to disable Services: DNS Forwarder before starting Unbound. Also note if your DHCP server makes use of pfSense as the DNS server, then you will now need to add the IP address of the respective interface to the DNS servers field, in the DHCP server configuration page.
Shellcmd
The shellcmd utility is used to manage commands on system startup.
Services
http://www.pfsense.com/packages/config/shellcmd/shellcmd.xml
0.5
Beta
1.2
markjcrane@gmail.com
shellcmd.xml
widescreen
The package makes pfSense adapt to browser's current width. It is particularly convenient for Status->Dashboard page that allocates columns for widgets according to browser's current width. ATTENTION: the package heavily modifies pfsense_ng theme and affects other's themes appearance. Please REFRESH your browser's window after installing/uninstalling this package.
Enhancements
0.2
BETA
2.0
ey@tm-k.com
http://www.pfsense.org/packages/config/widescreen/widescreen.xml
widescreen.xml
NRPE v2
http://wiki.nagios.org/index.php/Howtos:nrpe_nsca
NRPE is an addon for Nagios that allows you to execute plugins on remote Linux/Unix hosts. This is useful if you need to monitor local resources/attributes like disk usage, CPU load, memory usage, etc. on a remote host.
Services
http://files.pfsense.org/packages/8/All/
nrpe-2.12_3.tbz
nagios-plugins-1.4.15_1,1.tbz
/usr/ports/net-mgmt/nrpe2
WITH_SSL=true WITHOUT_ARGS=true
http://www.pfsense.com/packages/config/nrpe2/nrpe2.xml
2.12_3 v2
Beta
1.2
erik@erikkristensen.com
nrpe2.xml
mailreport
Allows you to setup periodic e-mail reports containing RRD graphs.
Network Management
1.1
BETA
2.0
http://www.pfsense.com/packages/config/mailreport/mailreport.xml
mailreport.xml