OPNsense Manager lets you monitor and manage OPNsense from a mobile device. It supports firewall management, network monitoring, VPN management, services, profiles, and system information through the OPNsense API.
The app is free to download on Google Play and the App Store. Banner ads appear on informational screens such as the Dashboard and Settings, and are never shown on operational screens such as firewall rule editing or VPN controls. A one-time in-app supporter purchase removes all ads permanently. F-Droid and GitHub builds are always ad-free and include no in-app purchases.
If you find OPNsense Manager useful, you can also support its development with a crypto donation:
USDT / USDC:
0xe0b9015117a4a69131481c2e9c1553dde839df18
Supported networks include BEP20, BSC, ERC20, Base, Polygon, Arbitrum, and Avalanche C-Chain. Binance gift cards can be sent to etreginwow@gmail.com.
- API key and secret authentication.
- Multiple OPNsense profiles.
- Encrypted credential storage.
- Profile import and export.
- PIN and biometric app locking.
- Demo mode for exploring the app without a firewall connection.
- System information, version, platform, uptime, and resource usage.
- Gateway and service status.
- Thermal sensor information where supported.
- Firmware update checks, live logs, upgrade detection, and reboot handling.
- Start, stop, restart, and inspect OPNsense services.
- Create, edit, delete, enable, and disable firewall rules.
- Automatic rules with read-only restrictions where applicable.
- Advanced rule options, protocols, ports, aliases, categories, and interfaces.
- Live firewall logs with filtering, search, detail views, and copy support.
- Firewall alias management with search, filtering, create, edit, delete, enable, disable, and detail views.
- Host, network, port, URL, GeoIP, and other alias types.
- Alias autocomplete, GeoIP region selection, URL authentication, expiry fields, and API validation.
- Live network monitoring with connection details, filtering, and device controls.
- DHCP lease management with search, supported DHCP backends, text selection, and long-press copy.
- Neighbor discovery with pagination, search, and service controls.
- Wake-on-LAN support where the OPNsense plugin is available.
- OpenVPN instances, client overrides, connection status, and logs.
- WireGuard servers, peers, peer generation, status, and logs.
- Tailscale authentication, settings, status, and subnet management.
- Light and dark themes.
- Multiple languages.
- Configurable automatic refresh.
- Material Design interface for phones and supported screen sizes.
- Free on Google Play and the App Store; banner ads appear on informational screens only.
- One-time in-app supporter purchase removes all ads permanently.
- F-Droid and GitHub builds are ad-free and include no in-app purchases.
| Dashboard | System Info | Firewall Rules |
|---|---|---|
![]() |
![]() |
![]() |
| Firewall Logs | Live Network Monitor | DHCP Leases |
|---|---|---|
![]() |
![]() |
![]() |
| Services | Settings | Menu |
|---|---|---|
![]() |
![]() |
![]() |
- OPNsense with API access enabled.
- An API key and secret.
- Android 5.0 or newer for Android builds.
- Flutter 3.44.2 or newer when building from source.
- Open System → Access → Users in OPNsense.
- Create or edit the API user.
- Generate an API key and secret.
- Add the user to the admins group, or create a custom group with the permissions required by the features you use.
Use HTTPS whenever possible. If the OPNsense instance uses a self-signed certificate, enable the self-signed certificate option for the profile in the app.
Download the app from Google Play, F-Droid, or the latest GitHub release.
git clone https://github.com/Etregin/OPNsense_Manager.git
cd OPNsense_Manager
flutter pub get
flutter runBuild an APK with:
flutter build apk- API credentials are stored using platform-specific encrypted storage.
- HTTPS is recommended for all API communication.
- Self-signed certificates are disabled by default.
- PIN and biometric locking protect local app access.
- Destructive actions require confirmation.
- Do not share API keys, secrets, or sensitive logs in issues or screenshots.
- Confirm the OPNsense address, port, API key, and secret.
- Check that the API user has the required permissions.
- Verify network access from the mobile device.
- Check the self-signed certificate setting if applicable.
Confirm that biometrics are enabled on the device, enrolled, and available to the app. Use the configured PIN as a fallback.
Check the API user's permissions and confirm that the relevant service, plugin, or OPNsense feature is installed and available.
A one-time supporter purchase is available from Settings → Support the Project inside the app on Google Play and the App Store. Purchasing removes all banner ads permanently.
If you paid for OPNsense Manager before it became free, your ad-free experience is preserved. Email Etreginwow@gmail.com with your Google Play or App Store order number and we will send you a promo code to unlock ad-free access at no charge.
- Fork the repository.
- Create a feature branch.
- Make and test your changes.
- Run
flutter analyze. - Open a pull request with a clear description.
For bug reports, include the OPNsense version, app version, steps to reproduce, and relevant logs. Do not include credentials or other sensitive data.
The app uses Flutter with an MVVM structure. Screens, ViewModels, services, models, and shared widgets are organized under lib/.
This project is licensed under the GNU General Public License v3.0. See LICENSE.
- Report a bug
- Ask a question or start a discussion
- View the project
- Contributing guide
- Report security issues to
Etreginwow@gmail.cominstead of using the issue tracker.








