Overview
Features
Firewall Management
CRUD operations for firewall rules, handling of API-created automation rules, inter-VLAN routing, batch rule creation, and robust persistence with multiple fallback methods.
NAT Configuration (SSH-based)
Outbound NAT rule management, NAT mode control (automatic/hybrid/manual/disabled), No-NAT exception rules for inter-VLAN traffic, automated DMZ NAT issue resolution, and direct XML configuration manipulation.
Network Diagnostics
Comprehensive routing analysis, ARP table inspection with vendor identification, interface configuration management, network connectivity troubleshooting, and auto-fix capabilities for common issues.
SSH/CLI Execution
Direct command execution on OPNsense, configuration file manipulation, system-level operations not available via API, and service management and restarts.
Additional Capabilities
VLAN management, DHCP lease viewing and management, DNS blocklist configuration, HAProxy load balancer support, configuration backup and restore, and Infrastructure as Code (IaC) support.
Who Is This For?
- AI assistant:Enable Claude or similar LLMs to directly manage OPNsense firewall configurations via MCP.
- Network administrators:Use MCP to automate firewall rules, NAT configurations, and diagnostic workflows for OPNsense deployments.
- Developers / integrators:Integrate MCP-enabled OPNsense control into automation workflows and IaC pipelines.




