Let me take you along on my Journey at 2am to replacing our datacenter firewalls. this video is not so much technical as it is the physical journey of this replacement. ill remember to bring my tripod next time o go so that i can get more non-shakey footage for you. Wer'e replacing out custom PFsense firewalls with Foritgate units setup in HA. IMHO the HA setup of foritgate is lightyears better and easier then the pfsense units. the biggest advantage is that the failover unit just stays in a complete mirror configuration of the primary, and you only have to do configuration in one place instead of on two firewalls. for example, when setting up a new interface on pfsense you have to first of all allocate three IPs, one for the virtual gateway, and one for each firewall. with the fortigates you only log into one portal, configure one IP and it auto syncs with the backup unit. additionally you can run them in active-active mode or active-passive. overall there were too many good things about them which made me want to switch, and also becuase we have been having issues with the fact were using non standard hardware. pfsense did us amazing over the years but time to move on.