ReleaseMONITIC 2026.07 — Synapse Control Plane is live: topology, blast radius & AI-driven RCASee what's new
Integration

Monitic + OPNsense

OPNsense is a favorite of teams who like open-source firewalls they can actually reason about — but reasoning about them still means logging into the web UI and reading logs by hand. The Monitic OPNsense integration connects to the firewall over its API and pulls what you actually reach for during an incident into your IT management console: device health, DHCP scope and lease visibility, and a filter-log based policy lookup that tells you why traffic was blocked or allowed.

That last capability matters most in practice. When a user reports "the app doesn't connect," someone eventually has to answer whether the firewall dropped the traffic. With Monitic, you ask that question directly and get an evidence-backed answer from the OPNsense filter log — without leaving the console where the ticket, the endpoint, and the user already live.

What syncs

DataWhat you get in Monitic
Device healthThe OPNsense box monitored alongside your servers and endpoints, so firewall trouble shows up in the same alerting surface
DHCP scopesWhich address pools exist on the firewall and how they are laid out
DHCP leasesWhich client holds which address — the raw material for tracing an IP back to a device and a user
Filter-log dataThe evidence base for policy lookup: what the firewall actually did with traffic

What you can do

ActionWhat it does
Policy lookupAsk whether specific traffic was blocked or allowed; Monitic answers from the OPNsense filter log, so the verdict reflects what really happened rather than what the rulebase implies
Trace an addressPair DHCP lease data with Monitic's endpoint inventory to move from an IP in a log line to a named machine
Monitor healthKeep the firewall inside the same health monitoring you run for the rest of the fleet

Setup summary

The integration is API-based — nothing is installed on the OPNsense host.

  1. Generate API credentials on your OPNsense firewall.
  2. Add the device in Monitic's integrations screen with its address and the credentials.
  3. Monitic connects and begins collecting device health and DHCP data; policy lookup becomes available on demand.

A few minutes of setup, and the firewall is a first-class citizen of your management console.

Works with the rest of your stack

OPNsense data lands in Monitic's firewall management module next to whatever else guards your perimeter. Mixed environments are the norm, not the exception — Monitic also integrates with FortiGate and SonicWall, so multi-vendor estates get one consistent view. The full list is on the integrations hub.

Give your OPNsense a seat in the main console

Connect an OPNsense firewall during the 14-day trial and run a policy lookup on the next connectivity ticket that lands. The time saved is the pitch.

Start free trial · Get a demo

FAQ

Frequently asked questions

How does the OPNsense policy lookup differ from reading rules?

It works from the filter log — the record of what the firewall actually did — rather than from a static reading of the rulebase. That means the verdict you get reflects real firewall behavior for real traffic.

Does anything get installed on the firewall?

No. Monitic talks to OPNsense over its API using credentials you create. The firewall keeps running exactly as before.

Can Monitic modify OPNsense rules?

The integration focuses on visibility and diagnosis: device health, DHCP scopes and leases, and policy lookup. Rule editing remains in your existing OPNsense workflow.

We run OPNsense at several sites — does that work?

Yes. Each firewall you connect appears in the same firewall management view, so distributed deployments are monitored side by side rather than one browser tab per site.

Ready when you are

See Monitic on your own fleet

Full-featured 14-day trial · no credit card · your real fleet in the console on day one.