pfSense is a great and reliable firewall solution
Use Cases and Deployment Scope
We use pfSense for firewall role, VPN and IPSec, DHCP, and an additional IDS with Suricata addon. We migrated IPTables and Sonicwall firewall solutions to pfSense, and it acomplish all of our needs and more. It is very flexible, easy and intuitive to configurate. We have deployed it both as stand alone and high availability with cluster, and works like a charm.
Pros
- Geo location IP blocking
- VPN with OpenVPN
- IPSec
- High availability and failover
- Networkin simple roles
Cons
- Graphs of usage
- Alerts messaging
- Updates deployment
Likelihood to Recommend
As a open source firewall solution, it is a very robust one. It has options for appliance or hardware installation. It handles very well a traffic of 500Mbps, with Suricata analising the traffic, and using very low hardware resources, and responding very fast and well. But if you need complianced or certificated solution, it may be not the best option.


