OPNSense Trunk to VM on XCP-NG

Hello,

i want to migrate my workloads from VMware ESXi to XCP-NG.
Right now i am facing the following issue :
On VMware i have a internal vSwitch with a Trunk Port to the OPNSense VM. All other 20 vlans for the VMs are also connected to the vSwitch.

On XCP-NG i can create a multiple private networks on the host, but there is a limit of 7 virtual interfaces to one VM.

Has anyone already encountered this problem and maybe has a solution ?
I have not found an option to create a virtual switch and setup a trunk port to the firewall VM.

Is there maybe a hidden option to add more virtual interfaces to a single VM ?
Or could it be an option to use XCP-NG SDN with OpenVSwitch-IPSec and then tunnel / route all internal vnets to the firewall ?

Best regards
SurtursRevenge