Privacy Ratings

Open-source firewalls

11 firewalls whose code is public under an OSI-approved license, rated for privacy with evidence. Picks first, then by score.

  1. Lockdown Grade B

    Open-source firewall app for iPhone, iPad and Mac that blocks connections to tracking, ad and malware domains on the device, with custom block lists.

    GPL-3.0. Source code

  2. LuLu Grade B

    Free, open-source firewall for macOS that blocks unknown outgoing connections and asks the user to allow or deny each new one.

    GPL-3.0. Source code

  3. OpenSnitch Grade B

    Application firewall for Linux that shows outgoing connections from each program and lets users allow or deny them with per-app rules.

    GPL-3.0. Source code

  4. Portmaster Grade B

    Application firewall for Windows and Linux that monitors and blocks network connections per app, with DNS filtering, tracker blocklists and an optional paid multi-hop network (SPN).

    GPL-3.0. Source code

  5. Shorewall Grade B

    Configuration tool for the Linux Netfilter firewall that generates iptables rules from high-level zone and policy files. Development has ended and it is no longer maintained.

    GPL-2.0. Source code

  6. simplewall Grade B

    Windows tool that configures the Windows Filtering Platform (WFP) to allow or block network access per application, with a rules editor and built-in blocklists.

    GPL-3.0. Source code

  7. TinyWall Grade B

    Lightweight firewall for Windows that builds on Windows Filtering Platform, blocking all traffic by default and allowing apps through a whitelist without popups.

    GPL-3.0. Source code

  8. Uncomplicated Firewall Grade B

    Command-line front end for managing Netfilter firewall rules on Linux, the default firewall tool on Ubuntu, with simple commands for allowing and denying traffic.

    GPL-3.0. Source code

  9. OPNSense Grade C

    Open-source firewall and routing platform based on FreeBSD, with a web interface, VPN, intrusion detection and plugin support.

    BSD-2-Clause. Source code

  10. BunkerWeb Grade D

    Open-source web application firewall (WAF) built on NGINX that sits in front of web services as a reverse proxy and blocks common attacks, with secure defaults.

    AGPL-3.0. Source code

  11. Gufw Grade D

    Graphical interface for ufw (Uncomplicated Firewall) on Linux, for managing firewall rules, profiles and per-application allow or deny rules.

    GPL-3.0. Source code

Compare all 15 firewalls, open source or not.