Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Duplicate firewall rules to other pfsense firewall

    Scheduled Pinned Locked Moved Firewalling
    8 Posts 4 Posters 5.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D Offline
      daniel
      last edited by

      Hi

      I'm wondering if it is possible to only duplicate the firewall rules and aliasses, but nothing else.

      I'm having 2 vmware servers each running one instance of pfsense.
      I would like the 2 firewalls have the same rules and same aliasses list.
      I would need to find a way to only duplicate those 2 things. In this way I only have to configure 1 firewall and not 2.
      Is this possible?

      1 Reply Last reply Reply Quote 0
      • E Offline
        Eugene
        last edited by

        Can you share your idea - why would you need set up like this? If you share rules and aliases you probably have the same IPs on the interfaces, right?

        http://ru.doc.pfsense.org

        1 Reply Last reply Reply Quote 0
        • D Offline
          daniel
          last edited by

          I'll try to explain it a little bit better.

          We have 2 physical vmware ESX machines. At this moment we cannot afford a hardware machine to place it in front of the two machines.
          So the idea is to install on each box an pfsense firewall.
          There are also some virtual machines that can use the v-motion feature.
          For that reason the same rules need to be setup on both machines.
          Because I'm lazy I would like to only configure one machine and copy the settings to the other machine ( if needed with some specific changes)

          I hope this clears out some things.

          1 Reply Last reply Reply Quote 0
          • D Offline
            daniel
            last edited by

            Nobody an idea?

            1 Reply Last reply Reply Quote 0
            • M Offline
              mrbostn
              last edited by

              Try doing a backup of one, and then restore that backup to the other one.

              1 Reply Last reply Reply Quote 0
              • D Offline
                daniel
                last edited by

                That means that the firewall needs to be rebooted if there is a change.
                this isn't realy what i want.

                1 Reply Last reply Reply Quote 0
                • B Offline
                  boblmartens
                  last edited by

                  Any other ideas for this? Is there a single place where pfSense stores its firewall rules that could be copied over to another box via cron and ssh?

                  1 Reply Last reply Reply Quote 0
                  • D Offline
                    daniel
                    last edited by

                    I found a manual way, through the manually backup,  there you can choose the individual parts you want to backup and restore.
                    Definitly not the best way, but it works.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.