    When using IP Aliases the according firewall rules should be done with the aliased IP network. It must be done manually in the web interface. This isn't really an issue, but an automatic macro would be a good option, like the "LAN net" option to match the network on the LAN interface.

    For example, a default LAN interface with address with netmask will get a "LAN net" name for the network. If I add an IP alias for with the same netmask it will not get some nice name to use in the firewall rules.

    The point is: should this be posted as a bug request in the pfSense bugtracker? Or this is done by design?

