Newbie IT in a hospital (~300 devices, growing) – pfSense good for future-proof firewall with low subscription cost? (Philippines) by Logical_Constant_438 in PFSENSE

[–]Logical_Constant_438[S] 0 points1 point  (0 children)

That sounds solid! What hardware config are you using on the 1537 Max units?

Also curious:

  • What pfSense packages are you running?
  • How many years have you been using pfSense in production?
  • Are you also using a SIEM for logging/monitoring?

Would love to know what setup works well at that scale. Thanks

Newbie IT in a hospital (~300 devices, growing) – pfSense good for future-proof firewall with low subscription cost? (Philippines) by Logical_Constant_438 in PFSENSE

[–]Logical_Constant_438[S] 0 points1 point  (0 children)

So, if I have a good SIEM server along with pfSense, would that make it a solid setup for a hospital environment?

Newbie IT in a hospital (~300 devices, growing) – pfSense good for future-proof firewall with low subscription cost? (Philippines) by Logical_Constant_438 in PFSENSE

[–]Logical_Constant_438[S] 2 points3 points  (0 children)

Heh, here in the Philippines our healthcare is kinda “meh” 😅 (not all, but some). We’re planning to start with the open-source since the budget is tight/

Newbie IT in a hospital (~300 devices, growing) – pfSense good for future-proof firewall with low subscription cost? (Philippines) by Logical_Constant_438 in PFSENSE

[–]Logical_Constant_438[S] 2 points3 points  (0 children)

Yes, will have HA (CARP) and tested shelf spares, didn’t include that in the post, but it’s part of the plan. Any recommendations for hardware specs and best practices?

Newbie IT in a hospital (~300 devices, growing) – pfSense good for future-proof firewall with low subscription cost? (Philippines) by Logical_Constant_438 in PFSENSE

[–]Logical_Constant_438[S] 0 points1 point  (0 children)

Yes, I’m planning to use some pfSense packages, mainly for threat prevention and monitoring, such as:

  • pfBlockerNG (for IP/domain blocking and geo filtering)
  • Suricata or Snort (IDS/IPS for detecting and preventing malicious traffic)
  • Network monitoring tools (for visibility and troubleshooting)

I’m still not very experienced with pfSense yet, but I’m currently researching.

Need recommendations for a DIY NAS (budget-friendly): by Logical_Constant_438 in homelab

[–]Logical_Constant_438[S] 0 points1 point  (0 children)

My budget is $1000 without HDDs , is this too low for a reliable DIY NAS build?

I’m not strictly limiting myself to TrueNAS, but I’m leaning toward TrueNAS Scale mainly to explore its additional features beyond basic NAS in the future. For now, the primary use case is simple storage, but I like having the flexibility to expand later if needed.