Hello,
I'am running two Opnsense firewalls in a routed setup in production. Now i come from Cisco and juniper firewalls and on these firewalls i can change a config without interruption of traffic. With Opnsense it do or want after any change in the frr config a reload of daemons with interruption of traffic. So my question is is it really necessary to do that? Or can it in a future version without restarting the daemons?
Thanks!
In theory not but I just don't know an easy way to reload the entire configuration in an automated way without leftovers from before.
I hope in the future? maybe take a look at vtysh?
Currently it is .. and it wont change soon.
The problem is that you would need to write and API for the API ..
If this is a showstopper you can always just use the pkg without the UI.