11001010110001101010
Module 5.2.7 - Installing the pfSense Firewall
ne of the best ways to learn about a technology is to use it. Installation of the pfSense firewall can be completed by
a person with a basic understanding of computer hardware using the web interface for configuration.
Because pfSense is based on FreeBSD, the list of compatible hardware is the same. The FreeBSD Hardware
11001010101010
Notes webpage at https://www.freebsd.org/releases/11.2R/hardware.html includes a detailed listing of processors,
11001010101010
system boards, and self-contained devices, including cameras and video recording devices. The website is
updated as new options become available.
You can install pfSense on a local firewall, on a large-scale security device, or in the cloud. pfSense is the software
element of the firewall, which means you must select specific hardware based on known compatibilities. The
pfSense support documentation offers guidance and troubleshooting resources.
pfSense software can be downloaded from https://www.pfsense.org/download. On the website, you will need to
make selections based on the version, architecture (hardware), and installer type (options listed below) to identify
the specific download version needed.
Sources:
11001010110001101010
11001010110001101010
Module 5.2.7 - Installing the pfSense Firewall
To install pfSense, choose between three installer options for the ISO image (an .iso file is an exact copy of a file
system):
● Optical disc - Systems with a CD or DVD drive can use an optical disc.
11001010101010
11001010101010
● USB - The BIOS of the system must be set to boot from USB (if not, make the necessary modification or elect
a different method).
● Memstick - This option uses a serial memory stick (Memstick) via a serial console.
As with most Unix and Linux products, a hash value is provided for verification of the file after download. If the
hashes match, the contents are unaltered. If the hashes do not match, the file may have been altered; it should be
discarded and the file should be downloaded again.
Once successfully downloaded, the file must be saved to the appropriate media from the list above so that it may
be installed on the selected hardware. (Although it is possible to install pfSense via PXE, most installations are on
local media.) Specific information about each installation is available on the website.
Sources:
11001010110001101010
11001010110001101010
Module 5.2.7 - Installing the pfSense Firewall
Click the following links to perform the Installation
● Installation Walkthrough (Installing on a PC/Laptop)
● Virtualizing pfSense Software with VMware vSphere / ESXi
11001010101010
11001010101010
You can find more articles about performing the installation of
pfSense here:
https://docs.netgate.com/pfsense/en/latest/install/index.html
Alternatively you can watch the following youtube video for
pfSense virtualization
TASK: Installing the pfSense Firewall
- Create a dedicated vmware for pfSense (read/watch the
instructions; you need two NICs)
- Another virtual machine is needed to configure and test
Sources:
11001010110001101010
11001010110001101010
Module 5.2.7 - Installing the pfSense Firewall
After boot-up, you will need to assign interfaces using the system console. NOTE
Most people use the default installation, with pre-selected options common to Netgate provides step-by-step
most applications of the product, because it is configured for the most common installation troubleshooting
use of the product. The next questions are predicated by your specific use for guidance on its website:
the product. You are first prompted to assign a virtual local area network https://docs.netgate.com/pfsense/
11001010101010
11001010101010
(VLAN), if used. There are additional instructions for using a VLAN on the en/latest/troubleshooting/installati
installation website. on.html.
Many YouTube videos
pfSense prompts you for the WAN and LAN interfaces. If you know the demonstrate the installation
information, enter the specifics (such as em0 for the WAN or em1 for the LAN); process, as well.
otherwise, press “Enter” to accept the defaults. pfSense requires one interface;
once that is configured, there is no need to enter any others, but you may if
they exist. pfSense deems a single network interface assigned to the WAN as
“Appliance Mode.” You also have the option of using the pfSense “Auto Assign”
procedure if all network cables are unplugged from the system. To use it,
simply type “a” and press “Enter.” If the process is not successful, consult the
Installation Troubleshooting guide online, or restart using the previous
instructions.
Sources:
11001010110001101010