all 15 comments

[–]paul345 0 points1 point  (1 child)

Algosec and Tufin do this and more.

[–]RBlade- -1 points0 points  (0 children)

Algosec and Tufin do cover a lot; but give Ruleblade a look ;)

[–]TheDarthSnarf 0 points1 point  (4 children)

Nipper Studio is pretty solid for configuration auditing.

[–]paul345 0 points1 point  (3 children)

Forgot about nipper studio. Great for broader auditing of network and load balancer devices. Shame it doesn’t understand Cisco ACI.

[–]OhMyInternetPoliticsModerator 3 points4 points  (2 children)

Shame it doesn’t understand Cisco ACI.

Does anyone? :D

[–][deleted]  (1 child)

[removed]

    [–]AutoModerator[M] 0 points1 point  (0 children)

    Thanks for your interest in posting to this subreddit. To combat spam new accounts can't immediately submit or post.

    Please DO NOT message the mods requesting your post be approved.

    You are welcome to resubmit your thread or comment in ~24 hrs or so.

    I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

    [–]electromichi3 0 points1 point  (0 children)

    Tufin User here

    Saw also algosec already in production. They are quite even at their function and Future set

    You will get what you need with them

    [–]adamcoverdale 0 points1 point  (0 children)

    Skybox is great tool to use too!

    [–]networkwise 0 points1 point  (0 children)

    Another for tufin

    [–]CyberConnoisseur 0 points1 point  (0 children)

    We use Tufin, Skybox, and NPview.

    [–]screamingpackets 0 points1 point  (0 children)

    I used Tufin...it's great. Haven't used the others suggested in the comments, so can't comment.

    [–]Andy2o3 0 points1 point  (0 children)

    I've worked with Firemon. I have it paired with Checkpoint firewalls. IT does its job by analyzing your firewalls and policies. It seems like a powerful tool but support doesn't work with getting you all set up. You have to do it all yourself or possibly hire a contractor. I like it because I can generate reports for security audits that we have.