Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Deploying same pfSense and configuration multiple times - security consideration

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    1 Posts 1 Posters 501 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • L Offline
      Lukas Borad
      last edited by

      Hi,

      I installed two pfSense 2.3 into Hyper-V VM and completely configured them. Now I would like to deploy another pfSense(s) into same / different network that will have same configuration as the two existing pfSenses.

      The easiest method that I found is to export configuration, edit it in text editor and change the only things that are different – IP and name.
      Then I would like to install another pfSense, import configuration and manually change two things – certificate (issued by internal Windows Server CA) and password of a local admin.

      My knowledge of FreeBSD / Linux is limited but I know that once I clone Linux (full clone of a VM) then I need to regenerate SSH host keys.

      Could you please tell me is there something else in the config.xml file that needs to be regenerated except certificate? Some ID / GUID / security keys?

      Thank you,
      Luk

      Lukas

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.