<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://mediawiki.comfac.net/index.php?action=history&amp;feed=atom&amp;title=PfSense_Sales_Training_Material</id>
	<title>PfSense Sales Training Material - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://mediawiki.comfac.net/index.php?action=history&amp;feed=atom&amp;title=PfSense_Sales_Training_Material"/>
	<link rel="alternate" type="text/html" href="https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;action=history"/>
	<updated>2026-06-05T11:01:05Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.45.1</generator>
	<entry>
		<id>https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;diff=253&amp;oldid=prev</id>
		<title>Justinaquino: Restructure: client-friendly networking table, expand myths section, add 5-Pillar Scoping Framework</title>
		<link rel="alternate" type="text/html" href="https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;diff=253&amp;oldid=prev"/>
		<updated>2026-04-23T11:59:49Z</updated>

		<summary type="html">&lt;p&gt;Restructure: client-friendly networking table, expand myths section, add 5-Pillar Scoping Framework&lt;/p&gt;
&lt;a href=&quot;https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;amp;diff=253&amp;amp;oldid=36&quot;&gt;Show changes&lt;/a&gt;</summary>
		<author><name>Justinaquino</name></author>
	</entry>
	<entry>
		<id>https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;diff=36&amp;oldid=prev</id>
		<title>BabiSender: Created page with &quot;= pfSense Sales Training Material =  &#039;&#039;&#039;Reference:&#039;&#039;&#039; [https://chatgpt.com/share/67c82515-7074-800e-b29c-0df75f5492f3 Full Session Log]  ----  == 1. Introduction ==  ; Objective : Provide a clear, layman-friendly explanation of what a firewall is, why pfSense is a powerful solution, and how its key features protect networks.  ; Audience : Sales teams who need to explain the technology to potential customers (non-technical decision-makers, IT managers, SMB owners).  ----...&quot;</title>
		<link rel="alternate" type="text/html" href="https://mediawiki.comfac.net/index.php?title=PfSense_Sales_Training_Material&amp;diff=36&amp;oldid=prev"/>
		<updated>2026-02-25T06:53:28Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;= pfSense Sales Training Material =  &amp;#039;&amp;#039;&amp;#039;Reference:&amp;#039;&amp;#039;&amp;#039; [https://chatgpt.com/share/67c82515-7074-800e-b29c-0df75f5492f3 Full Session Log]  ----  == 1. Introduction ==  ; Objective : Provide a clear, layman-friendly explanation of what a firewall is, why pfSense is a powerful solution, and how its key features protect networks.  ; Audience : Sales teams who need to explain the technology to potential customers (non-technical decision-makers, IT managers, SMB owners).  ----...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;= pfSense Sales Training Material =&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Reference:&amp;#039;&amp;#039;&amp;#039; [https://chatgpt.com/share/67c82515-7074-800e-b29c-0df75f5492f3 Full Session Log]&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 1. Introduction ==&lt;br /&gt;
&lt;br /&gt;
; Objective&lt;br /&gt;
: Provide a clear, layman-friendly explanation of what a firewall is, why pfSense is a powerful solution, and how its key features protect networks.&lt;br /&gt;
&lt;br /&gt;
; Audience&lt;br /&gt;
: Sales teams who need to explain the technology to potential customers (non-technical decision-makers, IT managers, SMB owners).&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 2. Network Basics ==&lt;br /&gt;
&lt;br /&gt;
; Definition&lt;br /&gt;
: Networking is the ability to connect computers and systems together. It occurs when more than one device communicates with another device or group of devices.&lt;br /&gt;
&lt;br /&gt;
=== Networking Disciplines ===&lt;br /&gt;
&lt;br /&gt;
==== ECE (Electronics and Communication Engineering) ====&lt;br /&gt;
* Focuses on how electronic devices work and on designing/building network hardware from basic components.&lt;br /&gt;
* In the Philippines, a PRC ECE license is required to sign off plans for CCTV installations—the only legally mandated network designs (CCTV and phone lines).&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Sales Note:&amp;#039;&amp;#039;&amp;#039; Clients needing custom electronic solutions (for automation or high-security requirements) will require ECE expertise.&lt;br /&gt;
&lt;br /&gt;
==== IT (Information Technology) ====&lt;br /&gt;
* Specializes in deploying and integrating off-the-shelf networking equipment.&lt;br /&gt;
* Advanced configurations improve reliability, scalability (hundreds to thousands of users), and automation for convenience.&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Sales Note:&amp;#039;&amp;#039;&amp;#039; Larger-scale deployments and convenience features command higher-level IT skills and corresponding investment.&lt;br /&gt;
&lt;br /&gt;
=== Networking Functions ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Function&lt;br /&gt;
! Description&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;WAN&amp;#039;&amp;#039;&amp;#039; (Wide Area Network)&lt;br /&gt;
| Connects the facility to external networks (Internet or other sites).&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;LAN&amp;#039;&amp;#039;&amp;#039; (Local Area Network)&lt;br /&gt;
| Connects devices within the facility for internal communications.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;High Availability&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Builds redundancy and resilience so services stay online despite failures.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;User Management&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Implements captive portals, LDAP, RADIUS to organize users by roles and privileges and control access.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;Security&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Establishes hardened systems using DMZs (buffer zones), proxy servers (middlemen), and data hygiene practices.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;Wireless&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Deploys mesh or enterprise Wi-Fi for convenient, flexible connectivity.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;Wired&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Provides high-bandwidth, low-latency connections for critical systems.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 3. Why pfSense? ==&lt;br /&gt;
&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Open Source:&amp;#039;&amp;#039;&amp;#039; No recurring feature licenses; you pay only for support and updates. When support lapses, pfSense continues to work—only security updates stop.&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Enterprise Features:&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
** LAN/WAN routing and segmentation&lt;br /&gt;
** VPN (remote access and site-to-site)&lt;br /&gt;
** IDS/IPS (intrusion detection and prevention)&lt;br /&gt;
** High Availability &amp;amp; Load Balancing&lt;br /&gt;
** DHCP, DNS, and user Authentication&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Competitor Critique:&amp;#039;&amp;#039;&amp;#039; Other vendors &amp;quot;rent&amp;quot; features that expire with licenses. pfSense features remain available indefinitely.&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 4. Core Functions ==&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Function&lt;br /&gt;
! Explanation&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;LAN&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Segments and protects internal network traffic to enforce security zones.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;WAN&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Controls access to the Internet; filters inbound/outbound traffic.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;VPN&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Creates encrypted tunnels for secure remote access or site-to-site links.&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;&amp;#039;IDS/IPS&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
| Monitors traffic for threats and automatically blocks or alerts on intrusions.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 5. Secondary Features ==&lt;br /&gt;
&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Authentication:&amp;#039;&amp;#039;&amp;#039; Integrates with Active Directory, LDAP, RADIUS for user-based firewall policies.&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;DHCP:&amp;#039;&amp;#039;&amp;#039; Assigns IP addresses automatically to devices on the network.&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;DNS:&amp;#039;&amp;#039;&amp;#039; Acts as resolver or forwarder to improve name lookup speed and security.&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Load Balancer / HA:&amp;#039;&amp;#039;&amp;#039; Distributes traffic across multiple WAN links or appliances and provides failover.&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 6. Dispelling Key Misunderstandings ==&lt;br /&gt;
&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;&amp;quot;Anyone doesn&amp;#039;t need a firewall&amp;quot;&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
#: &amp;#039;&amp;#039;Reality:&amp;#039;&amp;#039; Anyone hosting servers (web, NAS, ERP, AI apps) or running remote networks needs a firewall to block attacks and manage user access.&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;&amp;quot;Firewalls only block traffic&amp;quot;&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
#: &amp;#039;&amp;#039;Reality:&amp;#039;&amp;#039; They also segment networks, prioritize critical traffic (e.g., video calls), and enable secure VPN connections.&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;&amp;quot;Hardware firewalls exist&amp;quot;&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
#: &amp;#039;&amp;#039;Reality:&amp;#039;&amp;#039; All firewalls are computers running software—performance scales by upgrading NICs (100 Mbps → 1 Gbps → 10 Gbps → 100 Gbps).&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;&amp;quot;Competitors offer better out-of-the-box&amp;quot;&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
#: &amp;#039;&amp;#039;Reality:&amp;#039;&amp;#039; Competitors lock features behind licenses that expire. pfSense provides full features without license lock-in—only updates and support require payment.&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 7. Sizing &amp;amp; Total Cost of Ownership (TCO) ==&lt;br /&gt;
&lt;br /&gt;
=== Sizing Guidelines ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Company Size / Bandwidth&lt;br /&gt;
! Recommended Model&lt;br /&gt;
! Notes&lt;br /&gt;
|-&lt;br /&gt;
| Under 1 Gbps Internet&lt;br /&gt;
| Netgate 6100 Series&lt;br /&gt;
| Fits most small-to-medium offices&lt;br /&gt;
|-&lt;br /&gt;
| Up to 500 Users&lt;br /&gt;
| 2× Netgate 4200 MAX (HA setup)&lt;br /&gt;
| ~120k PHP one-time cost for both appliances&lt;br /&gt;
|-&lt;br /&gt;
| Large Networks / ISPs (&amp;gt;1 Gbps)&lt;br /&gt;
| Netgate 6100+ or higher&lt;br /&gt;
| Only ISPs or large enterprises need these models&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=== Example: Makati Office (200 Users) ===&lt;br /&gt;
&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Hardware Cost:&amp;#039;&amp;#039;&amp;#039; 2×4200 MAX for HA → &amp;#039;&amp;#039;&amp;#039;120,000 PHP&amp;#039;&amp;#039;&amp;#039; (one-time)&lt;br /&gt;
* &amp;#039;&amp;#039;&amp;#039;Annual Costs:&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
** License Renewal: 7,500 PHP × 2 = &amp;#039;&amp;#039;&amp;#039;15,000 PHP/year&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
** TAC Support: &amp;#039;&amp;#039;&amp;#039;45,000 PHP/year&amp;#039;&amp;#039;&amp;#039; (one needed in HA)&lt;br /&gt;
** Snort Subscription: 24,000 PHP × 2 = &amp;#039;&amp;#039;&amp;#039;48,000 PHP/year&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
** &amp;#039;&amp;#039;&amp;#039;Total Annual: ~84,000 PHP/year&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
{{Note|&amp;#039;&amp;#039;&amp;#039;Competitor Comparison:&amp;#039;&amp;#039;&amp;#039; Fortinet equivalent: 150k PHP hardware + 200k PHP/year support → pfSense is more cost-effective.}}&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 8. Selling Process &amp;amp; Key Observations ==&lt;br /&gt;
&lt;br /&gt;
=== Footprint ===&lt;br /&gt;
* Small office (&amp;lt;10 users), medium/large office (&amp;gt;100 users), or multi-building campus.&lt;br /&gt;
* Determine how many locations must operate as a single network to size solutions and costs.&lt;br /&gt;
&lt;br /&gt;
=== Value of Data &amp;amp; Communication ===&lt;br /&gt;
* Quantify by manpower cost to change processes—high communication workloads indicate greater impact.&lt;br /&gt;
&lt;br /&gt;
=== Pain Points ===&lt;br /&gt;
* Losses from unreliable or insecure networks: downtime, lost sales, and productivity hits.&lt;br /&gt;
&lt;br /&gt;
=== Process Steps ===&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;Discovery:&amp;#039;&amp;#039;&amp;#039; Gather requirements (users, bandwidth, locations).&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;Footprint Assessment:&amp;#039;&amp;#039;&amp;#039; Map office layout and device count.&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;Prioritize:&amp;#039;&amp;#039;&amp;#039; Identify critical applications and data flows.&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;Risk Analysis:&amp;#039;&amp;#039;&amp;#039; Pinpoint security and availability concerns.&lt;br /&gt;
# &amp;#039;&amp;#039;&amp;#039;Tailored Proposal:&amp;#039;&amp;#039;&amp;#039; Match pfSense functions to customer needs.&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== 9. Next Steps for Sales ==&lt;br /&gt;
&lt;br /&gt;
# Select the right appliance (6100 vs 4200 MAX vs higher models).&lt;br /&gt;
# Prepare TCO comparison (pfSense vs competitor).&lt;br /&gt;
# Send proposal template and service brochure.&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
== Resources &amp;amp; References ==&lt;br /&gt;
&lt;br /&gt;
* [https://www.comfac-it.com/services/netgate-pfsense-setup Setup Services]&lt;br /&gt;
* [https://www.comfac-it.com/blog-post/making-sense-of-unified-threat-management-utm UTM Deep Dive]&lt;br /&gt;
* [https://www.pfsense.org/products/ Netgate Product Info]&lt;/div&gt;</summary>
		<author><name>BabiSender</name></author>
	</entry>
</feed>