Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Tips to manage multiple pfSense installs

    Scheduled Pinned Locked Moved General pfSense Questions
    3 Posts 2 Posters 1.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • bingo600B
      bingo600
      last edited by

      Can anyone point me to , or share here.
      Tips to make managing multiple 10+ pfSense installs.

      I mean ie.
      Export specific aliases , and import them on a different site.
      "Clone an interface" OptX to OptY (including rules)
      "Clone an interface" from sitex to sitey (including rules)

      Either with Web tricks (i doubt it) , or even direct XML tricks.

      I guess i made a mistake from the beginning , not to read up on interface groups 😢 - When one have 8+ vlans , that all have to have some basic deny's.

      A mini guide to interface groups (I ought to read the book on that)

      A robust solution not requiring a reboot would be preferred.
      And maybe XML hacking might be a tad to "optimistic" on a prod site.

      Well any tips are welcome

      /Bingo

      If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

      pfSense+ 23.05.1 (ZFS)

      QOTOM-Q355G4 Quad Lan.
      CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
      LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        If you use URL aliases hosted somewhere all sites can reach they can be used by all.
        Just update one location and all sites will pull it. Assuming you have aliases that apply to all sites that is.
        https://docs.netgate.com/pfsense/en/latest/book/firewall/aliases.html#url-aliases

        Steve

        1 Reply Last reply Reply Quote 0
        • bingo600B
          bingo600
          last edited by

          @stephenw10
          Thanx Steve

          I see the use for URL Table aliases, in blocklists etc.
          But i won't build "core" firewall rules that depends on a web service, on each load. Then i'd rather do the web clicking.

          But a nice feature i overlooked, if i ever need a huuuge "dynamic" blocklist.

          /Bingo

          If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

          pfSense+ 23.05.1 (ZFS)

          QOTOM-Q355G4 Quad Lan.
          CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
          LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.