Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    GUI interface suggestion: sanity check when adding a range of IP addresses in an alias when Type=Host(s)

    Scheduled Pinned Locked Moved webGUI
    1 Posts 1 Posters 336 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cneep
      last edited by cneep

      (Firewall → Aliases → IP) When adding an alias of Type = Host(s), you have the option to easily add a set of IP addresses. The hint on this page clearly states it (pfSense v21.05.1-RELEASE): "An IP range such as 192.168.1.1-192.168.1.10 or a small subnet such as 192.168.1.16/28 may also be entered and a list of individual IP addresses will be generated."

      This feature works quite well. Too well, almost. I just had the unpleasant experience of needing to clean up a junior tech's mistake of not changing the default Type=Host(s) to Type=Network(s) before entering in six /24 subnets and needlessly populating the alias with over 1500 individual addresses.

      Rather than just blindly expanding a subnet/range to individual IP addresses, it might be useful to add a sanity-check and confirmation dialog when someone enters something larger than "a small subnet" when Type=Host(s).

      Edit 1: Clarified the subject/title

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.