PacketFence

Open-source network access control for wired, wireless and IoT environments

PacketFence is a fully supported, trusted open-source network access control (NAC) solution that provides comprehensive device visibility, policy-based access control and compliance enforcement across wired, wireless and IoT network environments. The platform helps organizations control which devices access the network, enforce security policies at connection time and automatically isolate non-compliant or unauthorized endpoints.

icon-802.1X & RADIUS Authentication
802.1X & RADIUS Authentication
Standards-based network authentication across wired and wireless infrastructure.
icon-Device Profiling
Device Profiling
Automatic identification of all connected devices without requiring agents.
icon-Open-Source NAC
Open-Source NAC
No per-device licensing with full source code access and enterprise support.
icon-VLAN Assignment & Segmentation
VLAN Assignment & Segmentation
Dynamic VLAN assignment based on user role, device type and compliance status for automated network segmentation.
icon-Compliance Enforcement
Compliance Enforcement
Endpoint health checks verify antivirus status, OS patches, firewall configuration and security requirements before granting access.
icon-IoT Device Security
IoT Device Security
Specialized profiling and policy enforcement for IoT devices that cannot run traditional NAC agents.
icon-Multi-Vendor Support
Multi-Vendor Support
Works with network equipment from Cisco, HPE/Aruba, Juniper, Ruckus, Dell and Meraki through standard protocols.
Solution overview

PacketFence provides 802.1X authentication, MAC authentication bypass (MAB), captive portal access, RADIUS-based policy enforcement and VLAN assignment across multi-vendor network infrastructure. The platform integrates with Active Directory, LDAP, SAML and other identity sources for user-based network access decisions.

Device profiling uses DHCP fingerprinting, HTTP user-agent analysis, network behavior analysis and SNMP data to automatically identify and classify all connected devices including IoT endpoints, BYOD devices, printers, medical devices and industrial equipment. Compliance enforcement checks endpoint security posture before granting full network access.

Advanced Threat Intelligence
Main benefits and features
Proactive cybersecurity capabilities designed to detect, analyze and reduce modern digital threats.
802.1X and RADIUS authentication
Standards-based network authentication supporting EAP-TLS, PEAP, EAP-TTLS and other authentication methods across wired and wireless infrastructure.
Device profiling and classification
Automatic identification of all network-connected devices using DHCP fingerprinting, HTTP analysis and behavioral profiling without requiring agents.
VLAN assignment and segmentation
Dynamic VLAN assignment based on user role, device type and compliance status for automated network segmentation.
Captive portal
Customizable captive portal for guest access, device registration, acceptable use policy acceptance and self-service onboarding.
Compliance enforcement
Endpoint health checks verify antivirus status, OS patches, firewall configuration and other security requirements before granting access.
IoT device security
Specialized profiling and policy enforcement for IoT devices that cannot run traditional NAC agents.
Multi-vendor support
Works with network equipment from Cisco, HPE/Aruba, Juniper, Ruckus, Dell, Meraki and other vendors through standard protocols.
Open-source with enterprise support
No per-device licensing. Full source code access with commercial support options available.
Inline and out-of-band deployment
Flexible deployment modes including 802.1X, inline enforcement, SNMP-based VLAN switching and web authentication.
Integration ecosystem
REST API and integrations with SIEM, firewalls, MDM, vulnerability scanners and ticketing systems for coordinated access decisions.
Cloud image

90 Days of Enterprise-Grade Cyber Defense

Step into the future of cybersecurity with full access to a unified, intelligent platform — free for 90 days. Empower your security team with:

  • Advanced SIEM for real-time visibility, smart alerting, and deep forensics across cloud, on-prem, and hybrid environments

  • Continuous Vulnerability Management to identify, prioritize, and remediate risk across all assets

  • Live Cyber Threat Intelligence integrated directly into your workflows, with global insights and attacker profiling

  • AI-Powered Threat Detection that learns from your environment, explains alerts in plain language, and suggests next steps

  • Built-in Compliance Readiness for NIS2, GDPR, ISO 27001, and more, with automated reporting and audit tools

Whether you're managing a lean SOC or a full-scale enterprise security team, this platform gives you the tools to detect faster, respond smarter, and stay ahead of evolving threats — all without the complexity.

Experience enterprise-grade protection, streamlined workflows, and total control.

Your 90-day head start begins now.

Unlock Your 3-Month Free Trial