pfSense 20th anniversary

Happy 20th birthday, pfSense!

This month, pfSense turns 20. In October 2006, version 1.0 of a scrappy open-source firewall hit the internet, and two decades later it still sits at the edge of home labs, small offices, schools and enterprise networks around the world.

Few pieces of networking software last that long, and fewer still keep their community along the way. So grab a coffee (or a patch cable) and let’s look back at how pfSense got here, what changed, and why so many of us still trust it with our packets.

pfSense 20th anniversary: key facts

  • First release: pfSense 1.0, October 2006.
  • Origins: forked from m0n0wall in 2004 by Chris Buechler and Scott Ullrich.
  • Built on: FreeBSD, using the PF packet filter that gives pfSense its name.
  • Developed by: Netgate (Rubicon Communications).
  • Editions: pfSense CE, free and open source under the Apache License 2.0, and pfSense Plus, Netgate’s commercial edition for its appliances and subscriptions.
  • Current releases (October 2026): pfSense CE 2.9.0, released 20 August 2026, and pfSense Plus 26.07, released 13 August 2026.

Where it all began: a fork of m0n0wall

pfSense started in 2004 as a fork of m0n0wall, an embedded FreeBSD firewall built to run on tiny hardware. Founders Chris Buechler and Scott Ullrich wanted something fuller: a firewall that could run on ordinary PCs, take add-on packages and grow beyond its minimal embedded footprint (Wikipedia).

The name is a nod to its engine. pfSense is built on PF, the packet filter that originated in OpenBSD and was ported to FreeBSD. Pair PF with a friendly web interface, and you get a firewall you can run without ever touching a FreeBSD shell.

It took two years of volunteer work before pfSense 1.0 shipped in October 2006 (Netgate). That release is the birthday we are celebrating this month.

New to pfSense? Our About pfSense page covers what it does, where it fits and who it is for.

Twenty years of milestones

Twenty years means a lot of releases: the FreeBSD base underneath has moved from 6.2 to 16.0-CURRENT, and the feature list has grown from a basic firewall to VPNs, intrusion prevention and centralized management (Netgate release history). Here are the moments that shaped it.

When Release or event Why it mattered
Aug 2026 pfSense Plus 26.07 and CE 2.9.0 Plus gains CoreDNS, ThreatGate and Snort 3 through the new Netgate Nexus controller
Feb 2022 pfSense Plus 22.01 and CE 2.6.0 ZFS becomes the default filesystem (ServeTheHome)
Jul 2021 CE 2.5.2 WireGuard returns after being pulled in March 2021
Feb 2021 pfSense Plus 21.02 and CE 2.5.0 Factory Edition is renamed pfSense Plus; kernel WireGuard arrives
Oct 2017 pfSense 2.4 Moves to FreeBSD 11.1; the 2.4 line drops 32-bit support
Jun 2016 Apache 2.0 licence The project adopts the Apache License 2.0
Jan 2015 pfSense 2.2 Jumps to FreeBSD 10.1; the same month, OPNsense forks from pfSense
Sep 2011 pfSense 2.0 Dashboard widgets, a new traffic shaper, Layer 7 filtering and a certificate manager, after three years of work
Feb 2008 pfSense 1.2 The release that carried the 1.x era, on FreeBSD 6.2
Oct 2006 pfSense 1.0 The first official release, and the birthday we are marking
2004 Project founded Forked from m0n0wall by Chris Buechler and Scott Ullrich

The pfSense 2.0 cycle is a good snapshot of the community at work: more than 108,000 unique IP addresses downloaded test snapshots during 2011 alone.

From volunteer project to Netgate, CE and Plus

What began as a volunteer effort is now developed by Netgate (Rubicon Communications), which funds the work and sells support, training and hardware. By its 10th birthday in 2016, Netgate counted an installed base of nearly 400,000 (Netgate).

Today pfSense comes in two flavours. pfSense CE (Community Edition) is the free, Apache-licensed version you can install on your own hardware or VM. pfSense Plus, renamed from Factory Edition in 2021, ships on Netgate appliances and as a subscription, and gets new features first.

The two now move at different paces: Plus follows a year-and-month version scheme with roughly annual major releases, while CE moves along a slower minor-version track (Wikipedia). Not everyone loves that split, and it is fair to say it has been the project’s most debated change.

What has not changed is the community. Forum regulars, bug reporters, beta testers, documentation writers and package maintainers have carried pfSense through two decades, and they deserve as much credit as any release.

What keeps it in the rack

The reason it has lasted is simple: it turns any spare x86-64 box or virtual machine into an enterprise-grade firewall, managed entirely from a web browser.

  • Breadth out of the box: stateful firewalling, NAT, VLANs, multi-WAN, traffic shaping, captive portal, dynamic DNS and VPNs including IPsec, OpenVPN and WireGuard.
  • Packages for everything else: add-ons cover IP blocking, intrusion detection and prevention, proxy caching, URL filtering and traffic monitoring.
  • Runs where you need it: bare metal, a hypervisor in your home lab, Netgate hardware or the public cloud.
  • A huge knowledge base: two decades of forum threads, docs, books and YouTube walkthroughs mean almost any question already has an answer.
  • A gateway to networking skills: for many admins, pfSense was the first place they learned how routing, NAT and firewall rules really work.

It also helped shape the wider ecosystem. OPNsense, itself now more than a decade old, started life as a pfSense fork in 2015, and the two projects keep pushing open-source firewalling forward.

Here’s to the next 20 years

The road ahead points toward centralized management and smarter threat blocking, with Netgate Nexus, ThreatGate and Snort 3 leading the 2026 releases. Plus 26.10 is already on the roadmap (Netgate release history).

Back in 2016, Netgate signed off its 10th-anniversary post hoping for ten more years. Those ten years happened. Whatever the next decade brings, from IPv6 everywhere to faster hardware and new threats, pfSense has earned its place at the edge of the network.

Now over to you. When did you first install pfSense, and what was it protecting? Tell us on LinkedIn or tag @itandgeneral on X. And if pfSense has saved your network (or your weekend), raise a glass to the developers and community who keep it going.

Running pfSense in your business? As a Netgate Premier Partner, our team can help you choose the right hardware, deploy it, upgrade from pfSense CE to pfSense Plus and keep it running with day-to-day support. You can buy Netgate appliances and pfSense Plus subscriptions directly from our online shop, and find out more about our pfSense support and professional services.

pfSense at 20: frequently asked questions

When was pfSense first released?

pfSense 1.0 was released in October 2006, which makes October 2026 its 20th anniversary. Work on the project began in 2004.

Who created pfSense?

Chris Buechler and Scott Ullrich started pfSense in 2004 as a fork of m0n0wall, an embedded FreeBSD firewall.

Why is it called pfSense?

The name comes from PF, the packet filter at the heart of the firewall. PF originated in OpenBSD and was ported to FreeBSD, which pfSense is built on.

Is pfSense still free?

Yes. pfSense CE (Community Edition) is free and open source under the Apache License 2.0. pfSense Plus is Netgate’s commercial edition, sold with Netgate appliances and as a subscription.

What is the difference between pfSense CE and pfSense Plus?

pfSense CE is the free community edition you install on your own hardware or virtual machine. pfSense Plus, renamed from Factory Edition in 2021, gets new features first, follows a year-and-month version scheme and is backed by Netgate support.

What is the latest version of pfSense?

As of October 2026, the latest releases are pfSense CE 2.9.0, released on 20 August 2026, and pfSense Plus 26.07, released on 13 August 2026.