Where Does OPNsense Store Config Files?
OPNsense firewall main config file and dated backup folder paths on appliances for settings history.
Last updated
OPNsense keeps firewall state in one XML file. That file is /conf/config.xml with interfaces, rules, VPN, and users. Every UI save rewrites it.
History and graphs sit beside it in RRD files under /var/db/rrd. Backups are dated XML copies in /var/backups or downloads. Back up the XML with RRD for full moves. The XML restores function, RRD restores history. Aliases group hosts for tidy rules. Firmware updates keep the config across versions. High availability syncs peers automatically. Plugins add IDS and VPN roles easily.
Where OPNsense stores this, by platform
/conf/config.xml (OPNsense)
Firewall settings with interfaces, rules, and VPN in one file. Export through the UI with history options. Copy off box for versioned backups.
/var/backups (OPNsense)
Dated XML backups from the UI and autobackup jobs. Local copies rotate by count. Download key versions off the firewall.
Frequently asked questions
what do i back up for an OPNsense move
Copy /conf/config.xml with RRD data for full moves. The XML holds interfaces, firewall, and VPN settings. RRD keeps traffic history. The XML alone restores function.
where do OPNsense backup XML files save
Download one in System, Configuration, Backups in the web UI. Autobackups also land in /var/backups by settings. Copy the XML off the firewall for safekeeping.
Notice an outdated path? Let us know.