# Open-source firewalls

11 open-source firewalls rated against public privacy criteria.

1. [Lockdown](https://privacyratings.com/firewalls/lockdown/): B (80/100). Open-source firewall app for iPhone, iPad and Mac that blocks connections to tracking, ad and malware domains on the device, with custom block lists.
2. [LuLu](https://privacyratings.com/firewalls/lulu/): B (80/100). Free, open-source firewall for macOS that blocks unknown outgoing connections and asks the user to allow or deny each new one.
3. [OpenSnitch](https://privacyratings.com/firewalls/opensnitch/): B (80/100). Application firewall for Linux that shows outgoing connections from each program and lets users allow or deny them with per-app rules.
4. [Portmaster](https://privacyratings.com/firewalls/portmaster/): B (80/100). Application firewall for Windows and Linux that monitors and blocks network connections per app, with DNS filtering, tracker blocklists and an optional paid multi-hop network (SPN).
5. [Shorewall](https://privacyratings.com/firewalls/shorewall/): B (80/100). Configuration tool for the Linux Netfilter firewall that generates iptables rules from high-level zone and policy files. Development has ended and it is no longer maintained.
6. [simplewall](https://privacyratings.com/firewalls/simplewall/): B (80/100). Windows tool that configures the Windows Filtering Platform (WFP) to allow or block network access per application, with a rules editor and built-in blocklists.
7. [TinyWall](https://privacyratings.com/firewalls/tinywall/): B (80/100). Lightweight firewall for Windows that builds on Windows Filtering Platform, blocking all traffic by default and allowing apps through a whitelist without popups.
8. [Uncomplicated Firewall](https://privacyratings.com/firewalls/uncomplicated-firewall/): B (80/100). Command-line front end for managing Netfilter firewall rules on Linux, the default firewall tool on Ubuntu, with simple commands for allowing and denying traffic.
9. [OPNSense](https://privacyratings.com/firewalls/opnsense/): C (70/100). Open-source firewall and routing platform based on FreeBSD, with a web interface, VPN, intrusion detection and plugin support.
10. [BunkerWeb](https://privacyratings.com/firewalls/bunkerweb/): D (50/100). Open-source web application firewall (WAF) built on NGINX that sits in front of web services as a reverse proxy and blocks common attacks, with secure defaults.
11. [Gufw](https://privacyratings.com/firewalls/gufw/): D (50/100). Graphical interface for ufw (Uncomplicated Firewall) on Linux, for managing firewall rules, profiles and per-application allow or deny rules.

Source: https://privacyratings.com/open-source/firewalls/
