Firewall governance through a single agent: isidaten captures rule sets from eight vendors
Orphaned rules, sprawling rule sets, no overview: isidaten reads firewall configurations from FortiGate to host firewalls via the isidaten agent and makes them auditable, across vendors on a single object base.
In most organizations, firewall rule sets have grown over years. Rules get added, rarely deleted, and at some point nobody remembers why a particular port is open. During an audit that becomes the problem: who can prove that the rule set still matches what is documented?
isidaten answers that question with cross-vendor firewall governance. Via the isidaten agent, rule sets are captured and analyzed automatically, without manual exports, without CSV tinkering.
Eight vendors, one agent, one object base
The isidaten agent captures rule sets from the following firewall platforms:
- FortiGate
- Palo Alto
- Check Point
- Cisco FMC
- Sophos
- UniFi
- WatchGuard
- Host firewalls (Windows, Linux, macOS, Solaris)
What this means in practice
- Cross-vendor: A unified view of all rule sets instead of checking each console separately.
- Audit-proof: Captured rules live on the central object base and can be linked to assets, risks and measures.
- Audit-ready: Instead of screenshots and spreadsheets, isidaten provides a traceable state of the rule set, available at any time.
- Agent-based: Capture runs through the isidaten agent, without permanent direct access to the firewall management interface.
From rule-set sprawl to living documentation
Firewall rules are not an isolated topic. On the central object base of isidaten, a captured rule set becomes part of the bigger picture of assets, protection requirements and measures. The result is documentation that does not die for the auditor but lives in the daily work of IT security.
Learn more about the available connectors on our integrations page.
Questions about this update?
Talk to us – we are happy to show you this feature in a demo.