Quote from: builderall on March 07, 2026, 09:54:52 PMI've been working on tools to make OPNsense upgrades more reliable and recently wrote up the experience:Creating a stateful upgrade script that can recover from failures and integrating an MCP server for easier administration shows promise
I gave Claude access to my OPNsense firewall — here's what happened
Two tools in one project:
A stateful Python upgrade script that runs over SSH — handles the pkg ABI mismatch after base/kernel upgrades and auto-resumes after reboots
A Claude MCP server that connects Claude Code to the OPNsense REST API for conversational firewall management
Tested on a live 26.1.2 → 26.1.3 upgrade this week, with two bugs found and fixed mid-session.
Code: https://github.com/builderall/opnsense-upgrade sprunki
Happy to answer questions or take feedback.
"