Where Does pfSense Store Config Files?
pfSense firewall main config file and rollback cache folder paths on appliances for settings restores.
Last updated
pfSense keeps firewall state in one XML file. That file is /cf/conf/config.xml with interfaces, rules, VPN, and packages. Every UI save rewrites it with a dated cache copy.
Cache copies rotate in /cf/conf/backup for rollback. RRD graphs sit under /var/db/rrd beside them. Back up the XML with caches for full moves. The XML restores function, caches restore rollback options. Aliases group hosts for tidy rules. Firmware updates keep the config across versions. High availability syncs peers automatically. Packages add VPN and proxy roles easily.
Where pfSense stores this, by platform
/cf/conf/config.xml (pfSense)
Firewall settings with interfaces, rules, and packages in one file. Export through Diagnostics Backup with extra data options. Copy off box.
/cf/conf/backup (pfSense)
Dated XML copies from UI saves rotating by count. Restore older versions from the UI history. Download key versions off firewall.
Frequently asked questions
what do i back up for a pfSense move
Copy /cf/conf/config.xml with backup caches in /cf/conf/backup. The XML holds interfaces, rules, and packages. Caches keep dated copies. The XML alone restores function.
where do pfSense backup XML files save
Download one in Diagnostics, Backup in the web UI. Local caches rotate in /cf/conf/backup by count. Copy the XML off the firewall for safekeeping. Keep copies safe.
Notice an outdated path? Let us know.