Choose the image that matches your architecture and use case.

IPFire is a Linux-based firewall and routing appliance for protecting networks. IPFire 2.29 Core Update 203 adds current security updates, intrusion prevention, VPN, DNS filtering and modular services through a purpose-built web administration interface.
IPFire is primarily suited to servers, virtual machines and self-hosted services; authorized security testing, forensics and technical training; experienced Linux users who want detailed control over the system. Before choosing it, compare the current release lifecycle with the length of support required for the machine. This distribution is based on independent, which influences package formats, repositories and much of the available documentation. The best choice depends on hardware support, preferred software, update policy and the amount of system administration the user wants to perform.
Read the release notes and installation guide before downloading. Select an image that matches the processor architecture and intended use: desktop, server, live media, virtual machine or another published edition. Test Wi-Fi, graphics, audio, storage and suspend from live media when that option is available. Back up important files before repartitioning, encryption changes or dual-boot installation. Security distributions should only be used against systems and networks you own or are explicitly authorized to assess. For production deployment, verify application compatibility, upgrade paths, backup restoration and the project security-support policy in a non-production environment first. Download from an official project page or mirror, compare the published SHA-256 checksum, and verify a signed checksum when the project provides one. After installation, apply updates before adding third-party repositories or drivers.
Requirements depend on the target appliance, network interfaces, storage layout and deployment method. Consult the official hardware guide before installation.
The download button first records an anonymous aggregated download counter and then redirects to the official source.
A project-specific post-installation checklist. Commands are displayed for your own equipment; the website never runs them. Use an authorized administrator account when required.
Create a backup through IPFire's web interface and retain it off the appliance.
Before you continue: Protect secrets in the archive and any add-on data.
Read project documentation: Download a configuration backupConfirm RED is the external network and GREEN is the intended internal network; review other configured zones.
Before you continue: Do not reassign interfaces without console access.
Read project documentation: Verify RED and GREEN networksReview firewall rules and forwarding against documented requirements.
Before you continue: Do not expose administration to untrusted networks.
Read project documentation: Inspect network policyRefresh the Pakfire lists, review the offered Core Update and confirm during a maintenance window.
Before you continue: Read release notes and plan for a reboot or loss of connectivity.
Read project documentation: Update through PakfireKeep only required add-ons and check their status after updates.
Before you continue: Removing an add-on may affect dependent services.
Read project documentation: Review installed add-onsKeep the backup accessible when the firewall is offline and document restoration.
Before you continue: A backup stored only on the firewall is not enough.
Read project documentation: Test the recovery plan