UK hosted pfSense

UK hosted Cloud Firewall & VPN

Deploy pfSense on our resilient UK cloud infrastructure with unmanaged, managed, and HA service tiers.

Enterprise-grade Firewall-as-a-Service powered by pfSense®, hosted on our resilient UK high-availability cloud.

Secure your servers, offices, and remote teams with advanced firewalling, VPN access, and traffic control – without the complexity of managing hardware. Perfect for colocation, dedicated server, and VPS customers, or anyone needing a secure UK-hosted firewall.

Unmanaged, managed, and HA tiers VPN, NAT, routing, and segmentation UK hosted cloud deployment VLAN and public subnet ready
pfsense dash overview
Unmanaged Self-Managed Cloud Firewall
£14.99
Managed Fully-Managed Cloud Firewall
£39.99
Managed Pair High Availability Firewall Pair
£89.99

Built to secure infrastructure without hardware firewalls

  • Stateful firewall and advanced traffic filtering
  • Secure remote access with OpenVPN and WireGuard
  • Site-to-site VPN connectivity between offices and servers
  • Network segmentation using VLANs and private subnets

Compare Cloud Firewall Plans

Choose between self-managed, fully managed, or high-availability pfSense firewall deployments hosted on our resilient UK cloud.

Unmanaged

£14.99 per month
  • 1 Virtual Appliance
  • Self Managed
  • 1Gbps NIC
  • Private Subnet & VLAN
  • Multiple VLANs
  • Web-Based Interface
  • Firewall & Router
  • Attack Prevention
  • VPN Support
  • Proxy & Content Filtering
  • Monitoring & Reporting
  • Highly Available (HA) Cloud

Managed HA Pair

£89.99 per month
  • 2 Virtual Appliances in HA
  • Fully Managed
  • 1Gbps NIC
  • Private Subnet & VLAN
  • Multiple VLANs
  • Web-Based Interface
  • Firewall & Router
  • Attack Prevention
  • VPN Support
  • Proxy & Content Filtering
  • Monitoring & Reporting
  • Highly Available (HA) Cloud
Prices exclude VAT.

Feature comparison

See how each plan differs in management level, availability, and operational control.

FeatureUnmanagedManagedManaged HA Pair
pfSense Virtual Firewall1 Included1 Included2 Included
High Availability (HA Pair)Included
Self ManagedIncluded
Fully ManagedIncludedIncluded
1Gbps Network InterfaceIncludedIncludedIncluded
NAT & Port ForwardingIncludedIncludedIncluded
Private Subnet & VLAN SupportIncludedIncludedIncluded
Multiple VLANsIncludedIncludedIncluded
Public IP SupportIncludedIncludedIncluded
OpenVPN ServerIncludedIncludedIncluded
Site-to-Site VPNIncludedIncludedIncluded
Remote Access VPNIncludedIncludedIncluded
DHCP ServerIncludedIncludedIncluded
DNS ForwardingIncludedIncludedIncluded
Web-Based Management InterfaceIncludedIncludedIncluded
Hosted on HA Cloud InfrastructureIncludedIncludedIncluded
Need something bespoke? We can help design a pfSense deployment around your routing, VPN, and HA requirements.

Why teams choose our cloud firewalls

Deploy enterprise-grade pfSense firewalls on resilient UK cloud infrastructure with flexible management, strong network controls, and built-in high-availability options.

Fast Security Updates

pfSense security updates and patches can be applied quickly without waiting for hardware refresh cycles.

Lower Cost Than Hardware Firewalls

Avoid the cost of purchasing and maintaining hardware firewall appliances while keeping full firewall functionality.

Flexible Management Options

Choose between unmanaged, fully managed, or high-availability firewall deployments depending on your operational needs.

Control the firewall your way

Access the full pfSense management interface, perform advanced administration through secure CLI access, or rely on our managed support depending on how hands-on you want to be. Our cloud firewall platform gives you the flexibility to operate the service exactly as your infrastructure requires.

Web UI

Full pfSense dashboard access

Manage your firewall through the familiar pfSense web interface with full access to its powerful networking features. Configure firewall rules, interfaces, VLANs, NAT policies, VPN connections, and routing directly from the dashboard.

Monitor traffic, review system status, and adjust security policies in real time. The intuitive interface makes it easy to manage complex firewall environments while maintaining full control over how traffic flows through your infrastructure.

pfsense dashboard
Operational depth

CLI access for advanced administration

For deeper control, administrators can access the firewall through secure shell (SSH) to perform advanced configuration and diagnostics. CLI access allows experienced teams to interact directly with the system for troubleshooting, custom configuration tasks, and operational workflows.

This flexibility is ideal for infrastructure teams who prefer command-line tools for automation, debugging network behaviour, or performing detailed system investigations when required.

pfsense cli

pfSense capabilities at a glance

We are proud to introduce pfSense® Plus software, one of the world’s most trusted firewall solutions. With over three million installations since 2004, the software has earned the respect and adoration of users around the world.

Read more at netgate.com
Firewall
7 capabilities
  • Stateful Packet Inspection (SPI)
  • GeoIP blocking
  • Anti-Spoofing
  • Captive portal guest network
  • Time-based rules
  • Connection Limits
  • NAT mapping (inbound / outbound)
Firewall7 capabilities
  • Stateful Packet Inspection (SPI)
  • GeoIP blocking
  • Anti-Spoofing
  • Captive portal guest network
  • Time-based rules
  • Connection Limits
  • NAT mapping (inbound / outbound)
Router7 capabilities
  • Policy-based routing
  • Concurrent IPv4 and IPv6 Support
  • Configurable static routing
  • IPv6 network prefix translation
  • IPv6 router advertisements
  • Multiple IP addresses per interface
  • PPPoE Server
Attack Prevention11 capabilities
  • IDS/IPS
  • Snort-based packet analyzer
  • Layer 7 application detection
  • Multiple rules, sources, and categories
  • Emerging threats database
  • IP blacklist database
  • Pre-set rule profiles
  • Per-interface configuration
  • False positive alert suppression
  • Deep Packet Inspection (DPI)
  • Application blocking
VPN14 capabilities
  • IPsec
  • OpenVPN
  • Wireguard
  • Site-to-site and remote access VPN
  • SSL encryption
  • VPN client for multiple operating systems
  • L2TP/IPsec for mobile devices
  • IPv6 support
  • Split tunneling
  • Multiple tunnels
  • VPN tunnel failover
  • NAT support
  • Automatic or custom routing
  • Local user authentication or RADIUS/LDAP
Proxy and Content Filtering9 capabilities
  • HTTP and HTTPS proxy
  • Non Transparent or Transparent caching proxy
  • Domain/URL filtering
  • Anti-virus filtering
  • SafeSearch for search engines
  • HTTPS URL and content screening
  • Website access reporting
  • Domain Name blacklisting (DNSBL)
  • Usage reporting
Network Services3 capabilities
  • Dynamic DNS
  • DHCP Server
  • DNS forwarding
Configuration Management13 capabilities
  • Web-based configuration
  • Setup wizard for initial configuration
  • Remote web-based administration
  • Customizable dashboard
  • Easy configuration backup/restore
  • Configuration export/import
  • Encrypted automatic backup to Netgate server
  • Variable level administrative rights
  • Multi-language support
  • Simple updates
  • Forward-compatible configuration
  • Serial console for shell access and recovery options
  • Wake-on-LAN
User Authentication Management5 capabilities
  • Local user and group database
  • User and group-based privileges
  • Optional automatic account expiration
  • External RADIUS authentication
  • Automatic lockout after repeated attempts
System Security Management6 capabilities
  • Web interface security protection
  • CSRF protection
  • HTTP Referer enforcement
  • DNS Rebinding protection
  • HTTP Strict Transport Security
  • Optional key-based SSH access
Resilience / Reliability Management9 capabilities
  • Optional multi-node High Availability Clustering
  • Multi-WAN for load balancing and failover
  • Reverse Proxy
  • Automatic connection failover
  • Bandwidth throttling
  • Traffic Shaping Wizard
  • Reserve or restrict bandwidth based on traffic priority
  • Fair sharing bandwidth
  • User data transfer quotas
System Reporting and Monitoring9 capabilities
  • Dashboard with configurable widgets
  • Local logging
  • Remote logging
  • Local monitoring graphs
  • Real-time interface traffic graphs
  • SNMP monitoring
  • Notifications via web interface, SMTP, or Growl
  • Hardware monitoring
  • Networking diagnostic tools

Frequently asked questions

What is a cloud firewall?

A cloud firewall is a virtual firewall appliance running on cloud infrastructure rather than dedicated hardware. It provides the same core functionality as a physical firewall – including traffic filtering, NAT, VPN access, and network segmentation – while avoiding the cost and maintenance of hardware appliances.

Who typically uses this service?

Our cloud firewall service is commonly used by customers running colocation servers, dedicated servers, and VPS infrastructure that require a secure gateway for inbound and outbound traffic. It is also suitable for businesses needing VPN access, network segmentation, or secure remote administration of their systems.

Can I use this firewall with servers hosted outside QuickHost?

Yes. While the service integrates easily with infrastructure hosted at QuickHost, it can also be used to protect servers or networks located anywhere on the internet. Many customers use it to create secure VPN connections between offices, cloud platforms, and data centre infrastructure.

What is the difference between unmanaged, managed, and HA plans?

The unmanaged plan provides a pfSense firewall instance with full administrative access for customers who prefer to manage configuration themselves.

The managed plan includes operational support from our team to assist with configuration, updates, and troubleshooting.

The high-availability (HA) plan deploys a pair of firewalls configured for automatic failover, helping maintain network connectivity if one firewall node becomes unavailable.

What VPN options are available?

pfSense supports several VPN technologies, including OpenVPN, WireGuard, and IPsec. These can be used for secure remote access by staff or for site-to-site connections between offices, servers, and infrastructure.

Can the firewall handle VLANs and private networks?

Yes. The firewall can be used to route and secure multiple VLANs, private subnets, and public IP ranges. This makes it suitable for environments that require network segmentation, multi-tier application architectures, or separate management networks.

Need help choosing the right firewall tier?

Our team can help you select the right pfSense deployment for your infrastructure, whether you need a self-managed firewall, fully managed support, or a high-availability pair.