Those are the options I found when I was building my router/firewall.
I went with pfsense because it had a plug in ('pfblocker-NG') I wanted, but then I learned that the company is kind of shit. So I'd go OPNsense next time even if it's a little more work on the front end.