new to OpenSense and like to import my Pfsense Setup

Started by comet424, August 18, 2026, 10:01:22 PM

Previous topic - Next topic
i tried googling to learn how hard it is most posts are old..

i curious i new to open sense and currently running in a VM. on unraid

but in 2026 is there an importer  to import convert pfsense to opensense?  and is there a way to import my OpenVPN certificates users CA also so i dont have to re generated peoples user accounts and there OpenVPN Clients..

as i dont have a simple setup.. i got multiple OpenVPN Server,Clients,, Multiple USers, Multiple Vlans etc.. how hard is it to transistion?

If you use one of these importers, this will happen:

https://github.com/opnsense/core/issues/10714

Pfsense and OPNsense are too different than a few years ago. You better start new or you will always have a partially broken setup.
Hardware:
DEC740

But you should be able to export CA and private keys as well as other X509 certificates from pfSense and import them into OPNsense then.

Quote from: comet424 on August 18, 2026, 10:01:22 PMi got multiple OpenVPN Server,Clients,, Multiple USers, Multiple Vlans etc.. how hard is it to transistion

Should not be hard to migrate just a lot of manual work.

Its better if you do re-implement everything manually, due to 2 reasons
1. Learning, so you get used to OPN vs PF
2. To have everything working correctly

If you try to push your way via some kind of random importer you may end up with partially broken setup and than be in cycles of trying to FIXIng it.
So its better to do it right the first time.

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
N355 - i226-V | AQC113C | 16G | 500G - PROD

PRXMX
N5105 - i226-V | 2x8G | 512G - NODE #1
N100 - i226-V | 16G | 1T - NODE #2

ok i did try playing with the opnsense.. right now more complicated i going to have to watch some videos.. all i managed to do was able to setup some Vlans

it seems more complicated then pfsense.. so ya i guess good not to import... but thats good if i can import the CA user stuff for the VPNS

i do like how pfsense has seperators  for the rules where this doesnt..

so it has a steep learning curve

questions does opensense offer like pfblocker
when updates are avaliable can you set things to auto update? or will it let you know a new version of opensense is avaliable

will my G10Tek Fiber cards work with opnsense?  as i know pfsense doesnt like realtek cards.. 

so far i havent gotten far  just the vlans got semi frustrated trying to make also new interfaces..

ive been a pfsense user for like 8+ years  but i dont like it that pfsense might pull CE version so i heard about this opensense but having issues trying to find things

do you guys have a video you guys recommend for setting up things

August 19, 2026, 01:22:36 PM #5 Last Edit: August 19, 2026, 01:25:01 PM by Monviech (Cedrik)
OPNsense has rule separators. You use categories for that. And then you can select the button "Show categories as folders" to show all rules with their Categories as separatos.
Hardware:
DEC740

August 19, 2026, 01:31:06 PM #6 Last Edit: August 19, 2026, 01:32:39 PM by Seimus
Quote from: comet424 on August 19, 2026, 01:20:35 PMi do like how pfsense has seperators  for the rules where this doesnt..

OPN doesn't have "separators" we have "categories" which in a way I would say is better.
You can create custom TAGs using Categories and than use these categories on the rules.
Each rule will have in default view on the left site the TAGs (with colors and name you choose) or you can in the FW rules tab enable categorization by those Categories. You can create some really amazing labeling with it.


Quote from: comet424 on August 19, 2026, 01:20:35 PMquestions does opensense offer like pfblocker

No but you can use adblock lists in Unbound, there are many good ones you just need to pick them, or you can add your own.

Quote from: comet424 on August 19, 2026, 01:20:35 PMwhen updates are avaliable can you set things to auto update? or will it let you know a new version of opensense is avaliable

You can setup autoupdates for OPN but I would not advice that, basically for any network device.

Quote from: comet424 on August 19, 2026, 01:20:35 PMwill my G10Tek Fiber cards work with opnsense?  as i know pfsense doesnt like realtek cards.. 

If it worked on PF or FBSD it should work on OPN.

Quote from: comet424 on August 19, 2026, 01:20:35 PMdo you guys have a video you guys recommend for setting up things

For basic setups you can find in YT. But the best resource is the docs.
For setting interfaces is simple its done via Interface > Assigments.

If you want to do SVIs, so Interfaces per VLANs.
1st create a VLAN Interfaces > Devices > VLAN
Assign parent interface to it
Go to Interface > Assignments and choose the VLAN

The overall configuration of OPNsense follows the default logic as any other devices. Its not so hard I believe you can do it.
https://docs.opnsense.org/manual/how-tos/vlan_and_lagg.html

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
N355 - i226-V | AQC113C | 16G | 500G - PROD

PRXMX
N5105 - i226-V | 2x8G | 512G - NODE #1
N100 - i226-V | 16G | 1T - NODE #2

i guess being used to pfsense for so many years and used to the like newer version of pfsense where its like gui based and you can slide up and down rules

where the opnsense seems like the older pfsense  where it was like a 80s 90s point of sale software.. sure dont care for the nested stuff as there is no arrow to say there is another sub heading.. least you got search to help..

the alias i had to try to figure out  content is the ip addresses.. what i liked in pfsense i can do 192.168.0.1   description LAN network 192.168.10.1/24  Description Camera Network
it doesnt seem to offer a description for networks..


i didnt see how to make colors or the categories yet as i was trying to play with it without going to youtube videos

is there a way to change the backgound color the white to black and the login screen?

i couldnt find adblock under packages or plugins or even the search

does the haproxy work the same as pfsense? as i need to setup haproxy as well

also i dont see user certificates  under user account  once i import CA  will that pop up?

how well does PIA VPN work with opensense does anyone know? i used to be with NordVPN  might go back once PIA expires  but how is it with it..

looks like i going to need to look up some videos..    the fully help tab helps a bit some help not so helpful like under alises and doing network the content doesnt say how to write it.. so you need to know what your doing there..

but i think i need to watch some videos as im more frustrated then anything lol and im used to sliding up and down rules in the order i want them to run


oh and is there a way  to to put the apply button on the top of the screen?  when i create like alias  and i didnt know any better but by accident i scrolled the screen  and the apply changes button is on the bottom of the screen.. had no idea i had to apply...  so its easily over looked... anyway to to make it so  apply changes button is on bottom and top   or just top say


ill have to go over those documents too


August 19, 2026, 03:14:05 PM #8 Last Edit: August 19, 2026, 04:28:01 PM by comet424
oh and whats the equal to "dns resolver" as  i need to use to "Host Override" and "custom options" for host over rides

example i trying to see if i can do this  which i group it as "lancache windows update"
as i have more then 100 host override address's that point to Ngnix Proxy Manager, Game Servers, Lancache Server, Webserver, etc

is this how your categories is supposed to look like.. when you guys said you group them  it really didnt group them i still had to move them manually.. and wish you could drag into the position  but does this look right?
1 is pfsense and the 2nd is the opnsense 
took me like 30 min to just configure it  but more then our to figure stuff out just for LAN



You seem to be using the old rules menu.

Try the new rules in version 26.7.x
Hardware:
DEC740

is there a way to drag and drop the old to the new? or i gotta re type it all up

and i tried importing my CA from pfsense to setup like PIA VPN 

but the vpn setup  cant see the PIA CA   also the PIA CA  wont say "self signed" under issuer  its blank

Yes there is a way, Migration Assistant in the Firewall menu.
Hardware:
DEC740

oh found there is a migration button

and what really annoys me on this forum  i dunno if you can fix it...  if i reply  and it exits me out of my top page brings me back to the FAQ main page anyway to fix that a setting?