Addressing Licence Changes to pfSense Plus Home and Lab

Поделиться
HTML-код
  • Опубликовано: 24 окт 2023
  • lawrence.video/pfsense
    Addressing Changes to pfSense Plus Home+Lab
    www.netgate.com/blog/addressi...
    Business Technicalities Channel
    lawrence.video/biz
    / lawrencesystems
    Connecting With Us
    ---------------------------------------------------
    + Hire Us For A Project: lawrencesystems.com/hire-us/
    + Tom Twitter 🐦 / tomlawrencetech
    + Our Web Site www.lawrencesystems.com/
    + Our Forums forums.lawrencesystems.com/
    + Instagram / lawrencesystems
    + Facebook / lawrencesystems
    + GitHub github.com/lawrencesystems/
    + Discord / discord
    Lawrence Systems Shirts and Swag
    ---------------------------------------------------
    ►👕 lawrence.video/swag
    AFFILIATES & REFERRAL LINKS
    ---------------------------------------------------
    Amazon Affiliate Store
    🛒 www.amazon.com/shop/lawrences...
    Ubiquiti Affiliate
    🛒 store.ui.com/?a_aid=LTS
    All Of Our Affiliates that help us out and can get you discounts!
    🛒 www.lawrencesystems.com/partn...
    Gear we use on Kit
    🛒 kit.co/lawrencesystems
    Try ITProTV free of charge and get 30% off!
    🛒 go.itpro.tv/lts
    Use OfferCode LTSERVICES to get 5% off your order at
    🛒 lawrence.video/techsupplydirect
    Digital Ocean Offer Code
    🛒 m.do.co/c/85de8d181725
    HostiFi UniFi Cloud Hosting Service
    🛒 hostifi.net/?via=lawrencesystems
    Protect you privacy with a VPN from Private Internet Access
    🛒 www.privateinternetaccess.com...
    Patreon
    💰 / lawrencesystems
  • НаукаНаука

Комментарии • 473

  • @JeffGeerling
    @JeffGeerling 7 месяцев назад +309

    Feeling smug about picking OPNsense for the new office...

    • @joaopedroalbernaz
      @joaopedroalbernaz 7 месяцев назад +29

      We need a video from you about this

    • @chuxxsss
      @chuxxsss 7 месяцев назад +4

      Maybe I need that version for my network, Jeff.

    • @wiziek
      @wiziek 7 месяцев назад +1

      So you are cheap guy?

    • @TheBlaser55
      @TheBlaser55 7 месяцев назад +9

      I will have to try OPNsence based on your choice, Jeff. Hope you put out a video on it as well.

    • @joansparky4439
      @joansparky4439 7 месяцев назад +33

      ​ @ wiziek
      Why is using open-source being 'cheap'? One should be very careful extrapolating from ones own mindset onto that of others..

  • @ericneo2
    @ericneo2 7 месяцев назад +159

    This seems to be an ongoing problem with open source and open source licensing. Companies want others to contribute but once the product becomes good enough they lock the open source product and change the license by hiding it behind a SAAS subscription with a new user agreement. Seems like it's time the big players and the Foundation need to address this before it gets out of control.

    • @bdd7881
      @bdd7881 7 месяцев назад +9

      When the companies are young they can do things that don't always make shareholders happy. Once they reach a certain size/income they focus more and more on shareholders/profit and open licensing does not work well with that.

    • @northblue8216
      @northblue8216 7 месяцев назад

      Exactly... Now-a-days, everyone doing SAAS because they want to be next week's new Billionaire with a Russian Super Yacht docked in port, a Bill Gates moon sized mansion, bitches in Dubai, and all of YOUR money in their back pocket and their bank accounts.

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад +7

      open source allows them the freedom to do this, locking them out is against the tenets of open source.

    • @Traumatree
      @Traumatree 7 месяцев назад +3

      That's the problem (for us) with the BSD license, and is also the solution for companies to hide and keep what they want.

    • @shady4tv
      @shady4tv 7 месяцев назад

      @@marcogenovesi8570 Actually - Copyleft licenses like the GPL prevent this because it requires you to release any contributions back upstream. The BSD license allows this. besides BSD itself - most projects built from BSD are closed-source.

  • @KP_Macro
    @KP_Macro 7 месяцев назад +111

    I remember when Plus came out, there were people warning that Netgate would be doing this or something similar in the future. Many people didn't believe it or eventually decided to ignore it. Netgate has a weird history and a record of missteps and questionable decisions that they then defended in a not-so-professional manner. Like many, I would be more than willing to pay - even for CE - but not nearly that much.

    • @it-monkey3280
      @it-monkey3280 7 месяцев назад +7

      This is true, and it is not that long ago either

    • @KimmoJaskari
      @KimmoJaskari 7 месяцев назад +9

      I don't want to pay for CE. I would pay (a more sane amount than $399) for plus assuming they managed to differentiate the Plus option and put in features that legit made it better. Without gutting CE to artificially create a rift, anyway.

    • @myhometvaccount9365
      @myhometvaccount9365 7 месяцев назад

      if it wasn't for toms videos i wouldn't never have got my head round pfsense, only later did i find out what a idiot prat "man child" jamie thompson was, but i stuck to it because of time/effort invested.. if i had known beforehand..... Thats i would never pay for it, knowing that i was putting money in that tossers pocket, come on Tom lets have the openwrt vids :)

    • @thudtheace
      @thudtheace 7 месяцев назад +9

      Looks like netgate is going to pull a unity, and that worked out so well for them.

    • @forid200
      @forid200 7 месяцев назад +3

      ​@@KimmoJaskariproblem is they want to charge you 399$ for pretty much the same feature set and barely any next gen features built into the core.

  • @thepontiff7505
    @thepontiff7505 7 месяцев назад +42

    I went to opnsense about a year ago when netgate just kept being insufferable rude pigs. Took a bit of getting used to, but it's rock solid. Now I wouldn't use anything else.

  • @abbiedogthree856
    @abbiedogthree856 7 месяцев назад +64

    Sad I converted to Plus, CE did everything I needed. Time to give OpenSense a second look.

    • @zunar_j5_933
      @zunar_j5_933 7 месяцев назад +10

      Same here...this is BS.

    • @ralph4370
      @ralph4370 7 месяцев назад

      Switched over a few months ago from pfsense. Since Pfsense CE was not being updated as much. Opnsense has worked flawlessly for me, no regrets, and is updated WAY more than pfsense.

    • @rahilarious
      @rahilarious 7 месяцев назад +13

      at this point, Netgate updates license more than to CE version

    • @MattVickers
      @MattVickers 7 месяцев назад +1

      CE would be fine if it supported the zfs boot slice feature. Pushing that to CE would go a long way to solving the issue IMO

    • @ericneo2
      @ericneo2 7 месяцев назад

      @@rahilariousSounds like they're taking business lessons from Suse, Oracle & Redhat.

  • @LackofFaithify
    @LackofFaithify 7 месяцев назад +89

    be optimistic all you want. Once a company starts these sorts of rug pulls they don't stop. Period. Never have been in the doom in gloom crowd, but this pattern of behavior is a well cemented one in the corporate world. You give a mouse a cookie, and it will inevitably not stop till it gets the house.

    • @maxbroomfield5392
      @maxbroomfield5392 7 месяцев назад +8

      I gave my wife a cookie once….
      It all makes sense now, Netgate is my wife.

  • @droknron
    @droknron 7 месяцев назад +51

    They told us to move from CE to Plus because it was better and free for home use. Now if I change any hardware on my box that runs Plus, my license becomes invalid and I have to pony up $400 or revert back to pfSense CE and lose features..... just wonderful. I've already had my license invalidated once when I changed network cards so this is a real possibility again.
    Netgate isn't a good company, no morals, no ability to stick to what they say etc

    • @ericneo2
      @ericneo2 7 месяцев назад +12

      At $400 that's 3 times more expensive than Meraki.

    • @lllongreen
      @lllongreen 7 месяцев назад

      400 USD is a complete no go ! if they dont develop CE further or dont make a max 99 USD lab license this will be it for them, but maybe they finally decided to stop the CE version going forward @@ericneo2

  • @SpookyLurker
    @SpookyLurker 7 месяцев назад +11

    My pfSense install f-ed up at some point and wouldn't do OS or plugin updates no more. I guess it was a good choice to revert back to OPNsense.
    I will not do subscription models.. ever.

  • @brett-m
    @brett-m 7 месяцев назад +51

    I've been a subscribe of this channel for many years, so i understand your reasons as you've mentioned it many times before.... But.... i think it could be a very lucrative/wise move to make a start on making some videos about that "other" firewall. It sure would boost the subscriber base! Diversity is key...Lets be honest... at some point Netgate "might" close the door, and when or if that happens it will leave a lot of home users like myself without an option.When that happens you'll already have well produced/trustworthy content to help us switch. It would be really nice to have a channel as good as yours to supply well produced/trustworthy content on setting up that "other" firewall...
    When that time comes.... You'll already be there ;)

    • @lllongreen
      @lllongreen 7 месяцев назад +12

      No need to call it the other firewall its OPNSense, and Yes time to make videos about this going forward. And 399 is a no go, 129 USD was already pushing it, 99 USD should be new license for small environment/lab use.

    • @techno_john
      @techno_john 7 месяцев назад

      Yeah, no, thankfully he doesn't do this. Like he said, he's worked with OpnSense and it's frustrating (I've done the same and had the same conclusion)
      He's making videos about what *is* working, not what *might* or *could* work down the road. Keep up the great vids Lawrence Systems!

  • @antonmaier5172
    @antonmaier5172 7 месяцев назад +23

    Bybye.
    Hello OPNSense.
    Pfsense doesn't appear to do much of developing and bugfixing anyway.

    • @arturk3810
      @arturk3810 7 месяцев назад +4

      Yep, they feel like bunch of salesmans not developers. More I learn about them the more obvious it is.

  • @blademan7671
    @blademan7671 7 месяцев назад +26

    They pushed Plus, and I moved to Plus a few months ago. These guys keep changing their tune. Super annoying. Oh well, time to set aside some time and move to Opnsense. I hear Opnsense community is much nicer too.

  • @kevinhilton8683
    @kevinhilton8683 7 месяцев назад +40

    What an opportunity for you to expand your audience and start producing some opnsense videos. You could keep producing videos for both firewalls

    • @lllongreen
      @lllongreen 7 месяцев назад +8

      1000 % time for OPNSense videos !

    • @techno_john
      @techno_john 7 месяцев назад

      Sure, if you want him making vids about the frustrations he *clearly* brought out in his video... 🤔

  • @go2guy
    @go2guy 7 месяцев назад +10

    Getting sick of companies (Vader voice) "I have altered the terms of service pray I don't change them further"

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  7 месяцев назад +7

      I considered putting that i the thumbnail, but did not want the real tyrant of a company after me....Disney..

  • @vaidkun
    @vaidkun 7 месяцев назад +24

    10-15usd per month for home user license sounds not that bad, but the 400USD per year is a bit steep... the worst thing is they had strong push to free plus home/lab licenses that were free and now they just pulled this stuff...

    • @ericneo2
      @ericneo2 7 месяцев назад +11

      At $400 that's 3 times more expensive than Meraki.

    • @maxbroomfield5392
      @maxbroomfield5392 7 месяцев назад

      I could’ve swore Meraki was more expensive than that. IIRC my school pays ~$13,000 a YEAR to keep our MX appliance on.

    • @maxbroomfield5392
      @maxbroomfield5392 7 месяцев назад

      Edit: it’s $16,557 for a 5 year license. I was WAY off. But still overly expensive…

    • @ericneo2
      @ericneo2 7 месяцев назад

      @@maxbroomfield5392 PSfsense is $1,197 per device and Meraki is $400 per device both for 3 years.
      Work out how many UTMs, APs and Switches your school has and times it by the cost per device.
      The discount you get from Meraki increases as your license period increases.

    • @ericneo2
      @ericneo2 7 месяцев назад

      @@maxbroomfield5392Assuming you have ~ 50 devices and licensed for 3 years...
      PFSense: 50 x $1,197 = $59,850
      Meraki: 50 x $400 = $20,00

  • @CraftComputing
    @CraftComputing 7 месяцев назад +11

    HEY! This is my livestream timeblock!

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  7 месяцев назад +2

      Hahaha oops

    • @APT4308
      @APT4308 7 месяцев назад +4

      @@LAWRENCESYSTEMSwould be cool if you make OpenSense migration video!!!

    • @TechySpeaking
      @TechySpeaking 7 месяцев назад +1

      And mine.

  • @MattVickers
    @MattVickers 7 месяцев назад +9

    I would happily pay around $30-40 per year for home use of an open source product. Income from home users will be a drop in the ocean compared to commercial income whether they charge $10 or $200

    • @ericneo2
      @ericneo2 7 месяцев назад +2

      At $400 that's 3 times more expensive than Meraki.

  • @JonathanSwiftUK
    @JonathanSwiftUK 7 месяцев назад +7

    $399 is totally unaffordable for home users. So back to CE. Most likely I'll immediately try Opensense. I thought it said TAC lite is gone. They just screwed themselves, and all of us who followed their advice to move to the free home lab versions. I feel like "how to install Opensense" is going to be trending.

  • @iankester-haney3315
    @iankester-haney3315 7 месяцев назад +37

    It's not the change that bothers me. It just costs so much. For a home use case, $30 to $60 is a more reasonable yearly cost.

    • @johanea
      @johanea 7 месяцев назад +1

      So 5 dollars a month for a year is too much for you?
      Don't know, maybe unsubscribe your Internet from the ISP so that you save some money for bread.

    • @ericneo2
      @ericneo2 7 месяцев назад +10

      @@johanea You sound like those Adobe apologists.

    • @NeptuneSega
      @NeptuneSega 7 месяцев назад

      @@johanea What a moronic take

    • @matthewnirenberg
      @matthewnirenberg 7 месяцев назад +8

      @@johanea The problem is everything is $5-$25 per month. It all ads up. The solution is to abolish subscriptions and either keep opensource free or to have once-off fee's every major version. Subscriptions are a disease that rapidly cost thousands all up each year.

    • @BenTyger
      @BenTyger 7 месяцев назад

      What the cost of a prosumer embedded firewall? Usually around 200-300USD and will last you about 3-4 years. PfSense is a hell of lot more capable than most prosumer routers. Hardware is the cheap part for pfSense. Old computer or hardware like protecti or Qotom are basically drop in hardware for pfSense. Paying 25-60/year for a router license seems very reasonable.

  • @JBK63
    @JBK63 7 месяцев назад +5

    Would pay a one time fee but that’s it. Even $129 per year for a home user is too much.
    Seems like solution would be to either buy one of their appliances or switch to something else..
    I think they’ve got one day to straighten this out. As of 9:55 AM this morning this video already has 13,000 views. If they don’t straighten this out quickly it’s going to be difficult to stop the momentum of people looking for alternatives and being aggravated about the whole thing

  • @nadtz
    @nadtz 7 месяцев назад +3

    When people said this wouldn't happen back when I read the writing on the wall (same with Red Hat and other projects) and moved to opnsense.

  • @trebekanalbumcover
    @trebekanalbumcover 7 месяцев назад +9

    I was hesitant to upgrade to Plus because I was afraid of a rug pull. Now, I gotta redeploy to CE. Just disappointing.

  • @johncavanaugh6481
    @johncavanaugh6481 7 месяцев назад +6

    Nobody was going to pay $129/yr. Pfsense is now going down a death spiral as the dev/enthusiast community will abandon them. The writing on the wall is clear that they will abandon CE as well. The race is now on to see which project/team will rise up to take this marketshare...

  • @-Good4Y0u
    @-Good4Y0u 7 месяцев назад +7

    And this is one of the huge reasons I didn't upgrade to plus. The other being that my system works fine and I didnt feel like doing an upgrade like that for features I didn't need.

  • @RandomTechChannel
    @RandomTechChannel 7 месяцев назад +5

    Changes like this kept me suspicios moving from CE to Plus that this will happen sooner than later. Sadly that was true. 👎Good luck with convicing the pfSense community that CE will not be ditched sooner than later. Nothing wrong with willing to make money but turning your back on community who preach your products and services is something I cannot agree with. However, all the best to Netgate and their future plans!

  • @myhometvaccount9365
    @myhometvaccount9365 7 месяцев назад +12

    shock horror ... drip drip drip :) watch the community edition *slowly* become the "poor mans edition" over the coming years... money talks and money walks! time to get my head around openwrt over the coming months, so much choice of hardware once reflashed with it, please please please do some vids on it Tom :)

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад +2

      the CE version has always been the poor man edition with less features, in what world have you been living in

    • @TylerB_777
      @TylerB_777 7 месяцев назад

      ​@@marcogenovesi8570Ugh we've been here for years and over those years they've been removing features. It's just the reality. Where have you been?

  • @Dr.Bojie-Chan
    @Dr.Bojie-Chan 7 месяцев назад +4

    I recently got an email that my 3100 is EOL because FreeBSD no longer supports 32 bit. I have only had it for a few years.... I have supported PFSense for 15 years plus, deployed it for many customers. How could they sell these in good conscience knowing they would pre-maturely hit with EOL? Very frustrating business lately

    • @TeflonBilly426
      @TeflonBilly426 7 месяцев назад +2

      If I'm reading it right, the 3100 uses an Atom C3338R, which is a 64-bit CPU. They might be EOL that model of hardware, but that doesn't necessarily mean you won't be able to get future updates of pfSense.

  • @mr.needmoremhz4148
    @mr.needmoremhz4148 7 месяцев назад +17

    I think one of the core issues they failed to address is the bigger why? Their appliances aren't perceived that good anymore, from a hardware perspective (whether people actually use the computing or not). I think people want to pay extra for a pre-installed box, they are just doing that by buying (mostly) compatible, tested hardware from those other vendors. These vendors ask a hefty fee themselves if you look at it from a hardware POV.
    I think if they paid a bit more attention to that side of the market and toward the prosumer, much could be solved here. This has been a question mark for me as well. You have the decade old 1537 and the 1541 whom even gotten pricier over the years (where I live). The side of the business they have neglected, in my opinion, is conveniently the one they are blaming others appliance vendors to fill.

  • @EagleSightLabs
    @EagleSightLabs 7 месяцев назад +4

    I am in the process of buying the gear to build my own homelab and was looking at using pfSense. I was ok with the $129/year for TAC Lite. It sucks that they just removed that option completely. I feel like $129/year is a reasonable price for home use. Obviously I would prefer it to be free for home use but if I have to pay then $129/year then I'm ok with that. I'll have to load pfSense CE into a VM and see what's features are available there. If it has what I need then I'll go that route because the experience of knowing how to use pfSense is definitely worth it for a career in IT.

  • @TheJensss
    @TheJensss 7 месяцев назад +6

    Bye bye pfSense, im transitioning to OPNsense
    Maybe the future of OPNsense is a linux based fork? (if FreeBSD is slowly dying)

  • @slipknottin
    @slipknottin 7 месяцев назад +18

    As long as they keep offering the community edition for free I’ll keep using it.

  • @Salad360
    @Salad360 7 месяцев назад +1

    I was debating on upgrading to the free + for homelab. Glad I’m still on CE!

  • @BersekViking
    @BersekViking 7 месяцев назад +4

    How do I downgrade?
    If I backup the config pf-plus and restore it on a CE, it shows a warning message that does not seem to go away.

  • @techjeff6227
    @techjeff6227 7 месяцев назад

    I remember running ipcop in highschool on an old HP netserver (8u, ~125lbs full of 18K SCSI drives, 4x1,800W PSUs) that I diverted from a landfill when my ESD company let our computer class have REALLY old systems collecting dust in their warehouse. It was completely overkill and I was way in over my head, but it was a great primer and taught me how to negotiate with Verizon's Tech Support to get them release the 11 day DHCP lease that our home router had been given. Great throwback! 😂

  • @jerryfaircloth
    @jerryfaircloth 7 месяцев назад +1

    Glad I switched to OPNSense a couple years ago. Don't think I will ever go back.

  • @ericapelz260
    @ericapelz260 7 месяцев назад +1

    I'm so glad I chose to install CE. Now, I just wonder how long CE will be supported.

  • @williamp6800
    @williamp6800 7 месяцев назад +6

    The GL.iNet travel routers use OpenWrt with a much more refined interface on top of it. It’s limited to the particular configurations they want to promote on their devices, but you can drop down to the full OpenWrt interface when you want to.

    • @Major_Thorn
      @Major_Thorn 7 месяцев назад +2

      Openwrt is nice for small configs and small home networks. However, it does not have the power behind it for complex configs.

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад +2

      @@Major_Thorn it's just a frontend for Linux iptables/nftables/whatever so I'm not sure how "it does not have the power for complex configs". If you just want to replace a router/firewall no matter how complex it's fine.
      It's the software ecosystem that is less developed (in the sense that yes you have lots of packages but they often do not have a web gui)

    • @snakeplissken8887
      @snakeplissken8887 7 месяцев назад

      The only problem with GL.iNet routers is that they are severely limited by storage and memory.

    • @snakeplissken8887
      @snakeplissken8887 7 месяцев назад

      If you really want to do any meaningful blocking you need more storage and more memory otherwise the device locks up and reboots.

  • @garyandersontech
    @garyandersontech 7 месяцев назад +2

    Ce is not a bad option. Ive been using it since the early 2000s as well. I have clients with IPSec tunnels and remote offices using Ce, and have been for years, no issues. Keep a spare appliance, and a current config backup, and your gold.

  • @kf4hqf2
    @kf4hqf2 7 месяцев назад +3

    Personally, I've paid $5/mo for Arista NG (formerly Untangle) for years, and IMHO it's a much better experience than PFS. Arista Plus version is $150/yr I think, which includes things like Threat Prevention, WireGuard, etc. Maybe worth a look for some.

  • @EdFromOhio
    @EdFromOhio 7 месяцев назад

    I'm glad I procrastinated and stuck with CE.

  • @GrossGeneralization
    @GrossGeneralization 7 месяцев назад +1

    Remind me again why people want a web interface for this stuff? It's pretty trivial to install freebsd or openbsd and update rc.conf and pf.conf as required. 30 mins in a text editor in exchange for not dealing with some third party changing the rules on me on a whim sounds like a good tradeoff. If you're not competent enough to edit some config files you're probably not competent enough to configure a firewall.

  • @AdamsLab
    @AdamsLab 7 месяцев назад +13

    Their reasoning doesn’t make sense and they expect home labs to spend $400/yr for a license.

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      Too many businness customers were using "home lab" versions of Pro. That's what happens when you make a "exactly like businness but free" product line

    • @AdamsLab
      @AdamsLab 7 месяцев назад

      @@marcogenovesi8570 - Doesn't make sense they had a revenue stream of $129/year (that I paid for) and they took that away...?

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      @@AdamsLab Do you understand what does "Too many businness customers were using "home lab" versions of Pro." mean?
      It means companies that should be getting the 400$ and bigger license were paying only 129$. That's a lot less money from their main customer base.

  • @zeusde86
    @zeusde86 7 месяцев назад +4

    boot-envs are cool and such, but another feature you're missing out on it Intel QAT, which is also only available on plus

    • @Darkk6969
      @Darkk6969 7 месяцев назад

      I am running the plus version of pfsense on my current Dell OptiPlex desktop PC' and the processor is old so QAT is not available. This shouldn't be an issue for most home labs as they tend to run old hardware anyway.

    • @zeusde86
      @zeusde86 7 месяцев назад

      @@Darkk6969 i don't agree on this. for one, users tend to pick low-power hardware for 24/7 instances, that often is not compatible with old hardware. and on the other hand, ultra-low-power CPUs like an intel atom c3558 (which i run) does indeed support QAT, as it is designed for usecases like networking-devices (beside others). if you get alot of crypto-offloading basically for free in hardware with QAT and AES-NI this is indeed a major benefit, especially for VPN-Gateways.

  • @michnl1772
    @michnl1772 7 месяцев назад

    Glad i switched to OPNsense a month ago and get an better Firewall with Zenarmor IDS/IPS built in. No more ADS and Secure in one package.

  • @CayoBuay
    @CayoBuay 7 месяцев назад

    I use OPNSense with multiple network handled by firewall rules. It was really easy to get up and running.

  • @DawidKellerman
    @DawidKellerman 7 месяцев назад

    Really good news for OpnSense!

  • @linuxdragon57
    @linuxdragon57 7 месяцев назад +1

    I actually bought a PFSense appliance in 2020. I wanted an easy path for installation of PFSense, but more importantly, I wanted an ARM-based appliance. Also, I felt more like I was supporting Netgate for their work on PFSense. Commonly we talk about how Free is Free as in freedom rather than free beer, but I feel that the community doesn’t actually believe that. The dichotomy around the price of free software really needs to change.

    • @Flash2171
      @Flash2171 7 месяцев назад

      I’ve purchased a few appliances from them for similar reasons, but the intel based 6100’s. Awesome product that I don’t have to worry about compatibility or validation of new versions of software.

  • @Jeff-hw8is
    @Jeff-hw8is 6 месяцев назад +1

    Using Protectli FW6C, tried to upgrade to 2023.5 from 2023.1, seem to work but after uninstalling pfBlockerNG, the reboot failed. Not sure if the boot failure was related to the licensing or the package corrupted the OS. Was just trying to get closer to the 2023.09 version. Ended up installing CE 2.7.1. Perhaps I will try installing pfBlockerNG again, but not today. The re-install took a couple hours as I don't do networking often and forgot some of the steps. If netgate lowers the price to under $50/year, perhaps I will go back to plus.

  • @fordsrmaster
    @fordsrmaster 4 месяца назад +1

    I'm a bit behind ( 3 months I guess ), but I just watched this video. It got me curious so I just checked my plus version and PFSense+ is reporting the last update was December 9th and I am on the current version ( at least that is what the dashboard is reporting ). Maybe updates stopped after December 31st for me? I'm not sure.

    • @operationstayalive
      @operationstayalive 4 месяца назад

      i just logged into my pfsense, was going to look into installing CE version, but tried to update plus version first. to my surprise it worked. i now have 23.09.1-RELEASE (amd64) built on Wed Jan 10 9:58:00 CST 2024. hopefully this continues to work because i love the interface and features.

  • @RebootTechnologies
    @RebootTechnologies 7 месяцев назад +1

    I have tested the sophos free firewall and there are some futures I love but still preferred pfsense since the main futures I need is easier to setup

    • @bandit8623
      @bandit8623 7 месяцев назад

      switched to opnsense. was an easy transition

  • @androbourne
    @androbourne 7 месяцев назад

    I run my own business as an MSP and can tell you all, the normal enterprise grade firewall licenses go for way more then $125/yr... last one I quoted was a Watchguard T45W license that goes close to $500 and that was just Basic Live Security (mine you still has a lot of security features) the Total Support was like $1k/yr. I do agree the current prices are a little much $125 would be a good price point. Especially when I can get a tried and true Watchguard license for the same price or cheaper.

  • @x3roxide
    @x3roxide 7 месяцев назад +1

    I switched to OPNsense when they pulled the shenanigans last time - haven't looked back.
    It does everything I need it to do and I feel more comfortable knowing that I don't need to switch and reconfigure due to a licensing issue.
    If I needed web filtering, I'd pay for something that actually does it properly. On PFSense it always felt like a feature in a beta state.

  • @jvnetsl
    @jvnetsl 7 месяцев назад

    Untangle is more reasonable for home now?

  • @snakeplissken8887
    @snakeplissken8887 7 месяцев назад

    I believe, and I could be wrong here, but QAT was a PFSense+ feature. I may have to move to OpnSense as it is enabled by default if the hardware is there.

  • @zacharylewis417
    @zacharylewis417 7 месяцев назад +1

    I initially did Opnsense but was having issues with firewall rules. Could not get the dang thing to work. Switched to pfsense and no issues with firewall. Might have to take a crack at it again.

  • @alex.prodigy
    @alex.prodigy 7 месяцев назад +2

    thanks Tom for the video
    I'm pretty sure netflix contributes quite a lot of networking related code , simply because you can't have streaming without networking

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      serving content is different from filtering network traffic. Netflix is using as a server, pfsense is using as a firewall

    • @alex.prodigy
      @alex.prodigy 7 месяцев назад

      @@marcogenovesi8570 that doesn't mean the network stack is not important for Netflix , quite the contrary i would argue

  • @orthodoxNPC
    @orthodoxNPC 7 месяцев назад +2

    6:09 QAT accelerator support is the best feature

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      is QAT really necessary for home/lab use tho

  • @Ramss3s
    @Ramss3s 7 месяцев назад +1

    Why din’t they made an “optional update” button to revert back to CE… 😢

  • @cwilliams9635
    @cwilliams9635 7 месяцев назад

    I've looked on the site today and I see the Lite TAC license for $129. I feel that they've maybe come to a point where functionality has improved enough for subscription and the support demanded by subscribers may be achievable. I hope the CE version continues and improves.

  • @drew5367
    @drew5367 Месяц назад

    I really like pfsense and netgate. Good bank for the buck.

  • @mikeh7704
    @mikeh7704 7 месяцев назад

    Thanks for this informative video Tom. I bought a Netgate 1100 appliance for home use nearly 2 years ago, currently with pfSense Plus 23.05.1-RELEASE. I've been quite happy with it and have learnt a lot about networking and firewall setup in the process. My question is (for anyone who might know), does this change affect current users of Netgate appliances (meaning I would need to pay licence fees for future upgrades)? Like many here who are thinking of jumping ship to OPNsense, would that be possible with a Netgate appliance?

    • @techno_john
      @techno_john 7 месяцев назад +1

      The answer is NO... all this does not affect any of the appliances.

  • @gedavids84
    @gedavids84 7 месяцев назад +1

    My annoyance is that they insisted we move to plus from CE if we wanted new features sooner (like finally moving away from FreeBSD12).

  • @JimmyArogen
    @JimmyArogen 7 месяцев назад +1

    399 per year for a firewall is a lot even for my small company. 129 a year I would pay, 399 I might, but will not be happy about it.

  • @ivanr5315
    @ivanr5315 7 месяцев назад +4

    I do not disagree with their policy going forward but giving something on which people base their system and then taking it away is not reasonable in my view. Eventually I will have to revert back to the CE edition or move to something else, great!

  • @anon_opensource
    @anon_opensource 7 месяцев назад +1

    It is a paid option, but what are your thoughts on Mikrotik RouterOS.

  • @arubial1229
    @arubial1229 7 месяцев назад

    So CE is going to stick around, and people are ok if they want to continue using it?

  • @phasechange5053
    @phasechange5053 7 месяцев назад +3

    The current version should be the new CE then.
    What bugs me is because i was able to build my own free box i was able to test and use the platform for myself first and then in turn i purchased negate hardware for my actual clients for deployment.
    This does push a nerve for me it was a perk for supporting them imho.
    I don't want to support hardware i don't use myself and i don't want to spend more and more $ on my personal network when i don't need too.
    Guess i need to drop Netgate as an appliance for my customers going forward, it was nice while it lasted.

    • @rjy8960
      @rjy8960 7 месяцев назад

      This is a very good and valid point. You want me to design in your kit, make it easy for me and don't put up barriers to people that will do the sales job for you.

  • @ErikS-
    @ErikS- Месяц назад

    About time the complete open source society should go to court in a class action! And show a judge how they gave free contributions to this FREE open source software projects with the understanding it IS FREE and STAYS FREE!
    These filthy license changes are nothing different than a wolve in sheeps clothing!

  • @philippe_demartin
    @philippe_demartin 7 месяцев назад

    Strangely, my pfsense box with pfSense+ Software Subscription Home (Non-commercial use) update without a problem to 23.09-RELEASE (amd64) built on Tue Oct 31 16:56:00 -03 2023

  • @JustPlainRob
    @JustPlainRob 7 месяцев назад +3

    "China won't respect our copyright and illegally sells products with our software. You know what will totally stop them? License changes that only our loyal hobbyist users abide by. Screwing them over instead of the problem people totally won't have any negative effect on our brand..."

  • @DominikZalewski85
    @DominikZalewski85 7 месяцев назад +1

    I agree missed opportunity here and some people will go to opnsense just for a sake of doing it. Home lab $99/yr licence will be ok for most and will pay some netgate dev time.

  • @starlite528
    @starlite528 7 месяцев назад

    Whats on that old box, FreeSCO?

  • @heli.thatSTEVE
    @heli.thatSTEVE 7 месяцев назад

    I am confused. I purchased a Netgate router for my home. Do I now have to play for a subscription to get updates?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  7 месяцев назад

      Nope, pfsense plus is free with Netgate appliances

  • @LordApophis100
    @LordApophis100 7 месяцев назад

    MacOS isn't FreeBSD, the added parts of BSD to their Mach kernel and userland.

  • @rene.duranona
    @rene.duranona 7 месяцев назад

    Was that smoothwall on the old picture?

  • @SirFancyPantsMcee
    @SirFancyPantsMcee 7 месяцев назад

    I just started getting into pfsense....😢 Back to looking for other projects.

  • @AdamsLab
    @AdamsLab 7 месяцев назад

    Getting rid of the $129/yr option doesn't make sense. I paid for that sub but they don't say what's happening with that...?

  • @ElliottPartridge
    @ElliottPartridge 7 месяцев назад

    Looks like there's now a $129/yr option on pricing (for TAC "Lite")

  • @r7_guy941
    @r7_guy941 6 месяцев назад +1

    Hi Tom I am about to purchase the netgate SG2100 appliance, will I have to pay for a license every year to use this appliance from netgate ? I am confused now.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  6 месяцев назад +1

      Nope, the appliance come with free licences for plus

    • @r7_guy941
      @r7_guy941 6 месяцев назад

      @@LAWRENCESYSTEMS Also for future upgrades and updates ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  6 месяцев назад +1

      @@r7_guy941 Yes, future upgrades as well.

    • @r7_guy941
      @r7_guy941 6 месяцев назад

      @@LAWRENCESYSTEMS Tom will the CE version still be supported and receive updates ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  6 месяцев назад +1

      @@r7_guy941 Yes, another update came out last night

  • @mx338
    @mx338 7 месяцев назад

    OpenWRT is also just super minimalist, as it is trimmed for efficiency, so you can still load on weak SoHo Routers and even access points.

  • @nalle475
    @nalle475 7 месяцев назад

    Nice to remember that old IP Cop. Build a heap of them

  • @TylerB_777
    @TylerB_777 7 месяцев назад +1

    First the license changes were to keep the code base similar, thus faster updates. That clearly wasnt the case. CE updates are far behind and growing! Now even more restrictions... At what point do you see the writing on the wall?

  • @LordApophis100
    @LordApophis100 7 месяцев назад +1

    I'm currently looking into VyOS, looks very promising so far. But it is CLI only for now, but very suitable to deploy with Ansible.

    • @rogerthomas368
      @rogerthomas368 7 месяцев назад

      But for homelab users the only options are the very dated 1.2.9 stable release or the daily rolling 1.5 build releases from development code branch. Home lab and small businesses are not really part of their target markets, they did try some options to provide low cost current releases to home users over the last few years but those were dropped.

    • @LordApophis100
      @LordApophis100 7 месяцев назад

      @@rogerthomas368 Yes, at the moment they don't have Patreon/OC open for access to LTS release. Maybe they now see an opening with the pfSense change and add an option again. Also there is the option to build the LTS image yourself if you have the necessary knowledge.

    • @YaroKasear
      @YaroKasear 7 месяцев назад

      @@rogerthomas368 Homelabbers can use any versiom they want, they just don't get to use PRE-BUILT images without money or contributing. But you can easily follow their instructions for building vyOS yourself which costs nothing but time and energy. Personally, I just use their rolling release. There is the occasional breakage, but at least vyOS hasn't pulled any crap like Netgate has from time to time.

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      OPnsense and OpenWrt are the main competition for a home user market. pfsense CE still exists too

  • @theotherguy6155
    @theotherguy6155 7 месяцев назад

    I just got my first ofsense up and running and honestly ifnyoubsaw the open wrt is not polished ... I can't imagine what it looks like cause I think pfsense interface is meh at best
    I mean I set a static route... removed it but it was still in the routing table. That's like a basic thing I should expect from a router. Notnhaving to reboot after changes

  • @mikeoreilly4020
    @mikeoreilly4020 7 месяцев назад

    The voice of reason. Thank you Tom.

  • @BrianSimmons
    @BrianSimmons 7 месяцев назад

    I have a "valid" license of for Plus Home/Lab version, but I never actually converted from CE to that version on my firewall hardware. My understanding is that it is impossible for me to change over now. This is the problem I have with the situation (if that is in fact true).

    • @garzdiva
      @garzdiva 7 месяцев назад +1

      Well you wouldn't wanna convert it even if you could. They're saying existing Home/Lab installations aren't likely to get updates so they really wanna kill that.

  • @paulantoine1696
    @paulantoine1696 7 месяцев назад

    There is absolutely a happy middle ground... but few organisations are frankly mature enough management wise to do so.

  • @maxherman11
    @maxherman11 7 месяцев назад +4

    They haven’t added any truly good features to plus that would make it worth the cost. If they added some AI features, cloud managed environments, a new UI, and some other stuff than maybe. But other than that it’s not worth it. I’ve supported pfsense so much over the years but this is a bridge too far. I’ve never looked into OPNSense but may do so now. How to shoot yourself in the foot as a small company that was built by home users. Yikes.

  • @glennmcgurrin8397
    @glennmcgurrin8397 7 месяцев назад

    I imagine Netflix is heavily invested on networking performance which likely benefits firewall use cases, though they probably contribute only limited actual firewall code other than performance tweaks. They also probably have interest in stability and general core functions which benefit everyone.

  • @AshKirby
    @AshKirby 7 месяцев назад +2

    Would be interesting to know how many people bother with the downgrade to CE compared with how many people take this as an opportunity to jump over to OPNsense or try something else

  • @TheAyrrow
    @TheAyrrow 7 месяцев назад

    How about just using pf(4) & pf.conf(5) on openbsd? (Not serious - fun lab project though)

  • @jmcbri
    @jmcbri 7 месяцев назад +1

    Switched to H+L two weeks ago. *Sigh*. But no hate. They are doing what they think they need to for their org. I'll go back to CE.

  • @derekp6636
    @derekp6636 7 месяцев назад

    Sad to see but thats the way companies are going. I'm using the CE 2.7 version for now still.

  • @BlueLiquidCell69
    @BlueLiquidCell69 7 месяцев назад

    From what I see on the pfsense-software-subscription page they still have the pfsence+ tac lite for $0 now and $129 in the future (scroll down to the middle).
    Isn't that what you were looking for or mentioning that it would be good to keep it? Or am I missing something?

    • @brianbuell975
      @brianbuell975 7 месяцев назад

      Yes, it is on the page, but it is not available on the page for purchase for $0 or $129. It is gone...

    • @stephenuk6490
      @stephenuk6490 7 месяцев назад

      So does that mean the tac lite license won't be available for their own appliances going forward ?

    • @Darkk6969
      @Darkk6969 7 месяцев назад

      @@stephenuk6490 When you buy the official Netgate appliance it comes with Tac Lite for the life of the appliance. So it will always get updates.

  • @orthodoxNPC
    @orthodoxNPC 7 месяцев назад

    Whats a better option than pfSense for layer7 filtering??

  • @_Miner
    @_Miner 7 месяцев назад +1

    Tom, isnt the TAC lite (127/year) still an option from within the CE as an upgrade path? Even though its currently $0/year

  • @michaeljaques77
    @michaeljaques77 7 месяцев назад +3

    I'm willing to pay, but not $129/yr
    I don't need or want negate support, i just want the software.
    I would pay a one time fee of $89, or maybe $19.99/yr. I've bought other software, namely Plex and unRAID.
    I would have stayed with CE but the compelling reason for plus was zfs and boot environments.

    • @ericneo2
      @ericneo2 7 месяцев назад

      Meraki is $150 for 1 year, $400 for 3 years...

    • @michaeljaques77
      @michaeljaques77 7 месяцев назад +1

      @@ericneo2 I'm not paying that much for that either. If they are simply providing the x64 code they compiled anyways with no warranty or support, I don't think it unreasonable to come in well under $100/yr. I'm not asking for free, but I also have a wife who wouldn't blink at $20 but might start to question why if I tell her $129/yr just to have a secure well maintained internet experience from her perspective.

  • @notta3d
    @notta3d 7 месяцев назад +1

    Can you do some videos on OpenSense? I have so much stuff going on and having to deal with this bombshell right now is totally unexpected. Damn!

  • @linuxdragon57
    @linuxdragon57 7 месяцев назад

    I use OpenWRT for my Ubiquity Unifi 6 Lite wireless access point.

  • @lucsegers6931
    @lucsegers6931 7 месяцев назад

    OK, I'm confused. So pfsense+ is not an option because of the cost (too costy for home use), so I would use pfsense CE. But did I understand correctly that CE will not be maintained...

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  7 месяцев назад

      CE is still being maintained as of today.

    • @marcogenovesi8570
      @marcogenovesi8570 7 месяцев назад

      CE will receive an update every year or two as normal

  • @georgelza
    @georgelza 7 месяцев назад +1

    ... $129 is 20x in South African Currency... its to much for me as a home user... it this is their demand... for something I installed and it just sat there, working.