Feature Deep Dive

Granular Network Insight & Security Audits

See how FGT Config Visualizer maps FortiGate topology, runs security audits, and drafts tighter firewall policies.

Offline-First & Privacy Preserving

Security configs contain your most sensitive data. The licensed FGT Config Visualizer product is designed to analyze FortiGate configuration files, traffic logs, and routing tables on the customer system so architecture and credentials are not sent to this marketing website.

The console log below is an illustration of that product workflow. The homepage file drop on this site is a sample walkthrough and does not parse your config.

Sample licensed-product log (illustration) Local parser started Reading FortiGate configuration (example 2.4 MB)... - Interfaces, policies, and address groups enumerated Parse complete (no config uploaded to fgttools.xilonsec.com)
Firewall policies view and analysis summary dashboard
XsPAtool policy analyzer interface

Dynamic Subnet Aggregation

Our advanced Policy Hardening Engine (XsPAtool - XilonSec Policy Analyzer Tool) analyzes raw traffic log files and groups individual /32 hosts into the tightest matching CIDR block. If 60% or more of observed flows match a localized network range, it aggregates them into /28 down to /24 subnets.

This allows security teams to confidently consolidate open rule sets without interrupting legitimate traffic flows.

# Policy Hardening Recommendations: Rule 104 (Wide-Open) -> Replaced with: 1. Policy 104_1 (SSH to Admin-IPs, UTM Active) 2. Policy 104_2 (HTTPS to Web-Subnet, UTM Active) [Confidence Score: HIGH (0.94)] based on 4,812 flows

Automated Policy Recommendations

FGT Config Visualizer continuously processes active traffic logs to auto-generate hardened rules. The platform isolates flows, scores compliance levels, and presents actionable recommendations grouped by system services.

Export options allow security administrators to instantly retrieve CLI commands, Markdown documentation, Excel tables, or structured PDF reports for deployment workflows.

Confidence Score
Flow-Optimized
Export Capabilities
CLI / MD / XLS
Automated policy recommendations interface
Modify policy recommendations interface

In-Place Policy Modifications

Safely modify existing firewall policies without interrupting operational availability. The modification module maps detailed destination address restrictions, protocol reductions, and automated UTM activation directly into a side-by-side comparison matrix.

Align policies instantly by visualizing current settings versus recommended changes before triggering live device deployments.

  • Live Target Device Selection & Syncing
  • Before / After Diff Comparison Grid
  • Risk-Rated Policy Modification Indicators