Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI β†’ MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE β†— (opens in a new tab)
  • llms.txt β†— (opens in a new tab)
  • Catalog JSON β†— (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub β†— (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
Β© 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. πŸ”’ Security
  3. OPNSenseMCP
OPNSenseMCP logo
Health: ActiveRecent health check succeeded.Last checked 9/11/2026, 4:45:36 PM

OPNSenseMCP

User RatingsBe the first to rate and review this MCP server!
View Repository83 GitHub StarsTotal stargazers on GitHub for the source repository (83 stars).Visit Website
opnsensefirewallnetworkingsecurity

Manage OPNsense firewall rules, NAT, routing, interfaces, VLANs, backups, and services through MCP tools.

Quick Install

Automated & IDE Setup

Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β€” or use 1-click editor setup below.

Add to CursorAdd to VS Code
We couldn’t automatically confirm this listing starts correctly

We ran the install command below but it didn't respond within our test window β€” this can mean a slow first-time install rather than a real problem.

npx -y opnsense-mcp-server

No response to initialize.

This is an experimental automated check and can have false negatives β€” missing environment variables, a slow cold install, etc. It doesn’t necessarily mean something’s wrong. Last checked 8d ago.

Manual Client & Custom JSON ConfigExpand JSON β–Ύ

Client Config & Setup

Choose your client or environment
Target File:~/Library/Application Support/Claude/claude_desktop_config.json
claude_desktop_config.json
{
  "mcpServers": {
    "vespo92-opnsensemcp": {
      "command": "npx",
      "args": [
        "-y",
        "opnsense-mcp-server"
      ]
    }
  }
}

πŸ’‘ Paste the JSON block into your client's configuration file under mcpServers, then restart the application.

Install Tool Schemas (18) Directory Badge Claim listing AlternativesπŸ”’ More in Security

Overview

vespo92/OPNSenseMCP MCP server connects AI assistants to an OPNsense firewall through its API, with optional SSH access for advanced operations. It exposes tools for firewall rule CRUD, outbound NAT management, routing diagnostics, ARP inspection, VLAN creation, CLI commands, backups, and service restarts. Reach for it when an agent needs to inspect or change OPNsense configuration using natural-language requests. OPNsense API credentials are required, while SSH credentials are needed for NAT and other SSH-based features.

Use cases

β€’Create and update OPNsense firewall rules
β€’Diagnose and fix routing problems
β€’Analyze and modify outbound NAT configuration
β€’Inspect ARP entries and network interfaces
β€’Create backups or restart OPNsense services

Key features

β€’Firewall rule CRUD and change application
β€’Outbound NAT management and analysis
β€’Routing diagnostics and automatic fixes
β€’ARP, interface, and VLAN operations
β€’OPNsense CLI command execution over SSH
β€’Configuration backups and service restarts

Capabilities & Tool Schemas (18) ~164 tokensApproximate context cost of this server’s tool schemas (~4 chars/token), before any tool is called. Actual usage depends on your client and model.Self-reported Self-reportedParsed from the repository README, not verified against a live server β€” may be incomplete or out of date.

Inspect callable tools, capabilities, and parameters exposed to AI agents by OPNSenseMCP.

firewall_list_rules

List all firewall rules

firewall_create_rule

Create a new rule

firewall_update_rule

Update existing rule

firewall_delete_rule

Delete a rule

firewall_apply_changes

Apply pending changes

nat_list_outbound

List outbound NAT rules

How OPNSenseMCP works

What vespo92/OPNSenseMCP does

vespo92/OPNSenseMCP MCP server gives an MCP-compatible assistant tools for administering an OPNsense firewall. Its listed operations cover firewall rules, outbound NAT, network inspection, routing troubleshooting, VLAN creation, configuration backups, service restarts, and direct command execution.

Firewall tools support listing, creating, updating, deleting, and applying changes to rules. NAT tools can inspect outbound rules, change the NAT mode, create rules, analyze the configuration, and address documented DMZ NAT issues. Network-oriented tools expose ARP entries and interfaces, diagnose routing, attempt routing fixes, and create VLANs.

The server also includes system_execute_command, which can run a CLI command on OPNsense, and backup_create for configuration backups. These capabilities mean the connected assistant can both inspect state and make administrative changes, so access should be limited to an appropriately privileged OPNsense account.

How it works

The primary connection uses the OPNsense API. The server reads the firewall address, API key, API secret, and SSL verification setting from environment variables. SSH is an optional second connection method. The README identifies SSH as necessary for NAT management and for advanced features that depend on shell or configuration-file access.

MCP clients invoke individual tools with structured arguments. For example, a client can request a firewall rule listing, pass network details to routing diagnostics, or provide source, destination, protocol, and port values when creating a rule. Changes that remain pending can be applied through the dedicated firewall tool.

Setup and configuration

The project supports Node.js 18 or newer and Bun 1.0 or newer. The published npm package is opnsense-mcp-server; the README shows installation with npm install -g opnsense-mcp-server, followed by the opnsense-mcp-server executable. The repository can also be cloned and run with Bun or built from source with npm.

Set these required variables before starting the server:

  • OPNSENSE_HOST: OPNsense URL and port.
  • OPNSENSE_API_KEY: OPNsense API key.
  • OPNSENSE_API_SECRET: OPNsense API secret.
  • OPNSENSE_VERIFY_SSL: Whether SSL certificate verification is enabled.

For SSH-dependent functions, configure the SSH host, username, and either a password or key path. SSH must be enabled on OPNsense, and the account needs sufficient privileges. The README recommends OPNsense 24.7 or later.

Claude Desktop can launch the npm package through an MCP server entry and pass the OPNsense variables in its env object. The documentation also shows a Bun-based Claude Desktop configuration, but its paths are examples that must be replaced for a local checkout.

Tools and capabilities

The listed MCP tools include:

  • firewall_list_rules, firewall_create_rule, firewall_update_rule, firewall_delete_rule, and firewall_apply_changes
  • nat_list_outbound, nat_set_mode, nat_create_outbound_rule, nat_fix_dmz, and nat_analyze_config
  • arp_list, routing_diagnostics, routing_fix_all, interface_list, and vlan_create
  • system_execute_command, backup_create, and service_restart

Limitations and notes

API authentication failures can result from incorrect credentials, disabled API access, or firewall rules that block access. NAT functionality requires SSH configuration. CLI execution and automatic fixes should be tested against the target firewall’s permissions and operational requirements before being used in an unattended workflow. The repository is licensed under MIT.

Getting started with this vespo92/OPNSenseMCP MCP server

Always refer to the official documentation for the most accurate and up-to-date information.

Read the full README β†’View source on GitHub β†’

Related MCP Servers

View all in Security View all alternatives
  • Opnsense MCP logoOpnsense MCP

    OPNsense firewall operations via API. Query ARP, DHCP, firewall rules, logs, interfaces, system status, and packet capture via STDIO or SSE.

    πŸ”’ Security4 views
    Compare vs Opnsense MCP β†’
  • Apktool MCP Server logoApktool MCP Server

    APKTool MCP Server is a MCP server for the Apk Tool to provide automation in reverse engineering of Android APKs.

    πŸ”’ Security3 views
    Compare vs Apktool MCP Server β†’
  • Jadx AI MCP logoJadx AI MCP

    JADX-AI-MCP is a plugin and MCP Server for the JADX decompiler that integrates directly with Model Context Protocol (MCP) to provide live reverse engineering support with LLMs like Claude.

    πŸ”’ Security3 views
    Compare vs Jadx AI MCP β†’
  • Mobb Vibe Shield MCP logoMobb Vibe Shield MCP

    Mobb Vibe Shield identifies and remediates vulnerabilities in both human and AI-written code, ensuring your applications remain secure without slowing development.

    πŸ”’ Security2 views
    Compare vs Mobb Vibe Shield MCP β†’

Adoption & maintenance

Factual signals from GitHub, npm, and our automated checks β€” not a rating.

GitHub stars
83
Stargazers on the source repository.
npm downloads
602
Package downloads in the last 30 days.
Last commit
1mo ago
Most recent push to the default branch.
Install check
Inconclusive
Didn't respond in our test window β€” often a slow first install.
Tools exposed
18
Callable tools this server registers over MCP.
Directory activity
4 views
Config copies, upvotes, and views on AllMCPs.

Reviews

No reviews yet β€” be the first to share how this listing worked for you.

Frequently Asked Questions about OPNSenseMCP

Install the npm package with `npm install -g opnsense-mcp-server`, then start it with the `opnsense-mcp-server` command.

AllMCPs Directory Badge

Full Badge Customizer

Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.

Badge Style:
Live Dynamic SVG PreviewOPNSenseMCP AllMCPs Directory Badge
Markdown (GitHub README)
[![AllMCPs](https://allmcps.com/api/badge/vespo92-opnsensemcp?style=directory)](https://allmcps.com/mcp/vespo92-opnsensemcp)
HTML Embed
<a href="https://allmcps.com/mcp/vespo92-opnsensemcp"><img src="https://allmcps.com/api/badge/vespo92-opnsensemcp?style=directory" alt="OPNSenseMCP on AllMCPs" /></a>

Technical Specs & Signals

CategoryπŸ”’Security
PricingFree
More technical detailsExpand β–Ύ
TransportSTDIO
RuntimeNode.js
AuthAPI key
LicenseMIT
ClientsClaude Desktop
Last updatedSep 4, 2026
5/6 checks healthy over the last 33d
Views4
Unique ViewsTotal visits recorded for this listing page on AllMCPs.
Installs0
Installs & Copy ActionsTotal times users copied install commands or configuration snippets for this server.
GitHub stars83
GitHub Star CountTotal stargazers on GitHub representing community popularity (83 stars).
Last commit1mo ago
Last Repository CommitThe most recent commit or push recorded for this server's GitHub repository.Last commit on Jul 21, 2026
npm downloads602/mo
Monthly npm DownloadsAverage monthly package installs recorded from npm registry statistics.
61Quality signal: Good Β· 61/100How this signal is calculated β–Ύ
Server availabilityNot measured

Not scored for repo-hosted servers β€” we can't reach the running server, only its GitHub page. Hosted MCP endpoints are health-checked live.

Verified ownership10/20
Documentation & tools26/30
Adoption & activity9/15
Community engagement1/10

A guidance signal from public completeness & health data β€” not a user rating. New listings start lower and rise as they add docs, get verified, and grow adoption. Signals we can't observe for a listing are skipped, not counted against it.

Supply-chain signal

No high-severity advisories surfaced by our automated scan.

Critical 0High 0Medium 0Low 0

Scanned 9d ago via OSV.dev Β· opnsense-mcp-server (npm)

β˜… FeaturedMoxie Docs MCP logo

Moxie Docs MCP

MCP & Agent Skills for Automated Documentation, and codebase conventions + context

Explore Server β†’

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to unlock edit access and the Official badge β€” proof is checked automatically, then reviewed by our team.

Free dofollow backlink: add your website and place the AllMCPs badge on it β€” no claim needed. We detect it automatically and keep it verified as long as the badge stays live.

Claim & get free dofollow

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.

Explore more

More in πŸ”’ Security β†’Best MCP servers for Security β†’Alternatives to OPNSenseMCP β†’Install in Claude DesktopInstall in CursorInstall in VS Code