pfSense is a firewall and load management product available through the open source pfSense Community Edition, as well as a the licensed edition, pfSense Plus (formerly known as pfSense Enterprise). The solution provides combined firewall, VPN, and router functionality, and can be deployed through the cloud (AWS or Azure), or on-premises with a Netgate appliance. It as scalable capacities, with functionality for SMBs. As a firewall, pfSense offers Stateful packet inspection, concurrent…
$179
per appliance
VMware NSX
Score 8.8 out of 10
N/A
VMware NSX is network virtualization technology. VMware NSX is no longer sold as a standalone product and is now available as a part of VMware Cloud Foundation.
N/A
Pricing
pfSense
VMware NSX
Editions & Modules
SG-1100
$179
per appliance
SG-2100
$229
per appliance
SG-3100
$399
per appliance
SG-5100
$699
per appliance
XG-7100-DT
$899
per appliance
XG-7100-1U
$999
per appliance
XG-1537
$1,949
per appliance
XG-1541
$2,649
per appliance
No answers on this topic
Offerings
Pricing Offerings
pfSense
VMware NSX
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
pfSense
VMware NSX
Features
pfSense
VMware NSX
Firewall
Comparison of Firewall features of Product A and Product B
pfSense
7.6
Ratings
13% below category average
VMware NSX
-
Ratings
Identification Technologies
5.00 Ratings
00 Ratings
Visualization Tools
7.00 Ratings
00 Ratings
Content Inspection
4.00 Ratings
00 Ratings
Policy-based Controls
10.00 Ratings
00 Ratings
Active Directory and LDAP
7.00 Ratings
00 Ratings
Firewall Management Console
9.50 Ratings
00 Ratings
Reporting and Logging
8.00 Ratings
00 Ratings
VPN
10.00 Ratings
00 Ratings
High Availability
10.00 Ratings
00 Ratings
Stateful Inspection
7.00 Ratings
00 Ratings
Proxy Server
6.10 Ratings
00 Ratings
Best Alternatives
pfSense
VMware NSX
Small Businesses
Sophos UTM
Score 8.1 out of 10
No answers on this topic
Medium-sized Companies
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
No answers on this topic
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
pfSense is incredibly budget friendly and capable for organizations of all sizes. My specific scenario, working for a non-profit organization, requires budget consciences decisions without compromising security and function. pfSense has helped tremendously in accomplishing this. It specifically tackles advanced routing, static routing, remote access, intrusion prevention, in a single platform, mostly available for free.
Our high-security environments require end to end encryption, but also tend to have larger budgets. Since beginning utilization of VMware NSX, we've been able to meet the unique requirements for our high-security clients, but it does have a large price tag that goes along with it. This isn't a particularly well-suited solution for environments with tighter budgets, but it definitely provides security where we need it and are willing to pay for this solution
Easy to use. Good user interface design! Easy to understand and easy to set up.
Lower hardware requirement. 3 years ago, we used an old PC to run it. Now, we have changed to a router device with Celeron CPU and 8GB RAM. It runs smoothly with a 1000G commercial broadband.
Broadcast Suppression: By suppressing broadcast traffic, we have been able to deploy a single VDI network in a /18 network space, allowing for rapid growth and proper DHCP lease timing for a VDI instant clone environment.
Networking HA: Leveraging internal mechanisms for high availability, it provides disaster resiliency to a virtual networking environment.
Cost Savings: All available features of NSX are licensed simultaneously. Load balancers, firewalls, and routers are all licensed as features, not per object, allowing for the deployment of as many of these objects as are needed.
There is no API for making changes. This can be a hindrance in environments where auto-deploying something needs firewall rules or HAProxy configs updated. Since all settings are stored in an XML file and then configs are generated from that, even manually updating config files cannot be done.
Beware that some network cards can have issues. pfSense is based on FreeBSD, so it's best to look on their compatibility list before deploying.
pfSense can be a very elementary firewall but can also be as comples as you want, according your needs. I'd always reccomend a HA solution when used in a company and, for bigger companies, commercial license is recommended. It's also very adptable to everyone's needs.
PFSense is not a fully featured and supported enterprise-grade solution; however, it does offer a lot of similar functionality at a fraction of the cost for more minor requirements.
We use both Cisco ACI and VMware NSX, and while they have different strengths and capabilities, I would recommend VMware NSX, as it can be used in all VMware environments, without costly physical infrastructure changes. Cisco ACI provides some of the same capabilities, but not all. It's focus relies on physical networking changes.
pfSense has only had positive impacts on our company. We are not a huge company so not having to buy licenses to get all these features have been excellent.
I was not around when our current sysadmin decided to use pfSense, but I am assuming from day one it was probably a 100% return on investment since it does everything we need it to and it was open source software.