Wait, a pfsense machine, GIF tunnel for IP6, three subnets for ip4/6 (one v6 contained in a tagged vlan), a few other internal vlans, and a want (need?) to run Suricata... that's considered complicated?
Guess it's a good thing that I didn't mention the three managed switches, eh?
Just #homelab things I guess 😜
