> ## Documentation Index
> Fetch the complete documentation index at: https://docs.onefirewall.com/llms.txt
> Use this file to discover all available pages before exploring further.

# pfSense Integration Guide

## Overview

This guide explains how to integrate **OneFirewall Alliance (OFA) Threat Feeds** with **pfSense** using **pfBlockerNG** and **External Dynamic Feeds**.

## Prerequisites

* pfSense 2.7.0 or later.

## Step 1: Generate API Token

1. Log into your **OneFirewall Alliance** dashboard.
2. Go to the **API Access** section.
3. Click **Generate JWT Token**.
4. Save the token securely — this will be used to authenticate feed requests.

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/fortigate-1.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=be685734218f716431dbe532b4663e97" alt="" width="2920" height="928" data-path="images/fortigate-1.webp" />

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/fortigate-2.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=a3d2dea08e78a061078e32523ba21a1b" alt="" width="1460" height="680" data-path="images/fortigate-2.webp" />

## Step 2: Generate the Agent Configuration

Go to the OneFirewall Alliance Dashboard -> Install Agent, activate pfSense license, and save the configuration setup provided.

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-6.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=eb768975022b28da2622492ba4e1cbc8" alt="" width="1441" height="840" data-path="images/pfsense-6.webp" />

## Step 3: Configure IP Address List and URL List

From pfSense Dashboard, go to System -> Package Manager and install pfBlockerNG if not already installed.

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-1.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=9c2308fda28e629b857ecb0cb2eea7d0" alt="" width="955" height="790" data-path="images/pfsense-1.webp" />

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-2.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=8333511a0d7c550349864fe1e6c23d38" alt="" width="1643" height="420" data-path="images/pfsense-2.webp" />

### Configure pfBlockerNG

Go to Firewall -> pfBlockerNG and configure the package.

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-3.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=6ae04c32d4a80b7a9260fac7240af6d2" alt="" width="747" height="745" data-path="images/pfsense-3.webp" />

Follow all "Next" steps until the "Finish" section.

### Configure the OneFirewall Threat Feeds

Go to Firewall -> pfBlockerNG -> IP section, and apply the following steps:

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-4.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=28d74049f4bb32bd308fd5c02975fd76" alt="" width="721" height="1126" data-path="images/pfsense-4.webp" />

Go to Firewall -> pfBlockerNG -> IP -> IPv4 section, and apply the following steps:

<img src="https://mintcdn.com/onefirewall/WDi-dI7jVFz2iVVH/images/pfsense-5.webp?fit=max&auto=format&n=WDi-dI7jVFz2iVVH&q=85&s=fa30e922587e608fd04578123571a665" alt="" width="746" height="1118" data-path="images/pfsense-5.webp" />

The OFA\_API\_WITH\_TOKEN is the configuration URL provided by the OneFirewall Install Agent section.

## Notes

* OneFirewall uses **JWT-based Bearer Authentication**.
* Feeds are **auto-refreshable** and optimized for pfSense integration.
