OPNsense-specific half of the FirewallDriver diff/apply mechanism added in napalm-device-types: translates the vendor-neutral rule dict into the /api/firewall/filter/addRule or setRule/<uuid> payload (string "1"/"0" booleans, empty interface = floating rule -- same shape as the existing SNMP self-provisioning rule in _action_fix_snmp), and commit_firewall_rules reloads the filter via /api/firewall/filter/apply. get_firewall_rules() already returns compatible field names, no changes needed there.