Hot!Migrating from pfSense ?

Author
ffischer
New Member
  • Total Posts : 17
  • Scores: 2
  • Reward points: 0
  • Joined: 2016/12/20 00:56:05
  • Status: offline
2018/09/18 03:46:14 (permalink)
0

Migrating from pfSense ?

Hi Folks,
 
is an import of pfSense configuration to FortiConverter possible ?
 
We need to migrate a pfSense Firewall with about 200 Rules on 10 interfaces with more than 1000 objects...
Anything would be helpful, even homebrew scripts or alpha versions of FortiConverter with pfSense support...
 
Frank
#1

4 Replies Related Threads

    soundxplorer
    New Member
    • Total Posts : 5
    • Scores: 0
    • Reward points: 0
    • Joined: 2018/12/19 11:55:28
    • Status: offline
    Re: Migrating from pfSense ? 2018/12/19 11:56:42 (permalink)
    0
    I'm interested in this question too, does anyone know if any sort of export/import is possible?
    #2
    MP_RO
    New Member
    • Total Posts : 1
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/05/12 22:34:14
    • Status: offline
    Re: Migrating from pfSense ? 2019/05/12 22:35:56 (permalink)
    0
    Hello,
     
    Any updates on this?
    Im also interested in this. 
    #3
    mpencea
    New Member
    • Total Posts : 1
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/10/01 23:49:26
    • Status: offline
    Re: Migrating from pfSense ? 2019/10/01 23:57:38 (permalink)
    0
    Hello,
     
    Any updates?
     
    I'm also interested.
    #4
    emnoc
    Expert Member
    • Total Posts : 5301
    • Scores: 347
    • Reward points: 0
    • Joined: 2008/03/20 13:30:33
    • Location: AUSTIN TX AREA
    • Status: offline
    Re: Migrating from pfSense ? 2019/10/02 04:33:59 (permalink)
    0
    Can you just dump the pfsense cfg and just parse and collect the objects? you can run the "viconfig" or just grab the "config.xml"  and find what you want.
     
    Then convert it to a lingo that is FortiOS formatted. For only 100 rules and 1k objects your can police and cleanup the rule sets at that time if required
     
    I've done this a hundred of times with grabbing the config.xml and taking out interface and system host objects for importation manually. YMMV but if you have a good script-tool guy, you could craft a script.
     
    YMMV
     
    Ken Felix
     
     
     
     
     

    PCNSE,  NSE , Forcepoint ,  StrongSwan Specialist
    #5
    Jump to:
    © 2019 APG vNext Commercial Version 5.5