Basic ACL Push Question
When clicking Apply to make a change to the Firewall rules, do I run the risk of breaking current connections that aren't using that specific rule?
I need to make an ACL change, but our pfSense f/w is always running hundreds of connections through it, and I dont want to break the existing connections. I know it isnt a problem in Junipers or ASA's, but I am new to the pfSense world. Thanks.
No, it will not break existing connections when you edit a firewall rule. Editing a rule only affects new connections, not current connections.
If you add a block rule (or remove a pass) you would have to clear the state(s) that would match the rule for it to take immediate effect.