OPNsense

In the Army, we talk about “knowing your terrain.” OPNsense is another primary tool for defining the digital terrain of your network.

Description

OPNsense is an open-source, easy-to-use and easy-to-build HardenedBSD based firewall and routing platform. It includes most of the features available in expensive commercial firewalls, and more in many cases.

Knowledge Check

  • Are you using Zenarmor for application control?
  • Have you set up Unbound for local DNS?

Common Pitfalls

  • Resource Management: It can be more resource-intensive than some other solutions.
  • Interface Naming: Be careful when mapping physical interfaces to logical ones.