Native support for leading enterprise firewall vendors. Manage all your firewalls from a single platform with vendor-agnostic rule normalization.
PAN-OS XML API
FortiOS REST API
R80+ Web API
REST API
REST API
OPNsense Compatible
API Key
PA-VM 10.x, 11.x
Physical, VM, Cloud (AWS, Azure, GCP)
API Token
FortiOS 6.x, 7.x
FortiGate appliances, VM, Cloud
API Key + Session
R80.40, R81.x
Check Point appliances, CloudGuard
Basic Auth
ASA 9.x
ASA 5500-X, Firepower, ASAv
API Key + Secret
22.x, 23.x, 24.x
Bare metal, VM, Cloud instances
Via OPNsense driver
2.6.x, 2.7.x
Netgate appliances, pfSense VM
FwChange translates vendor-specific configurations into a unified rule format, allowing you to work with all your firewalls using consistent terminology.
Each vendor has a dedicated driver implementing a common interface. Add new vendors by implementing the same interface.
Vendor-specific rules are converted to a normalized format for analysis, optimization, and approval workflows.
Approved changes are translated back to vendor-specific syntax and pushed via the appropriate API.
All credentials are encrypted at rest using AES-256-GCM. Credentials are only decrypted in memory during API calls and never logged or exposed.
Yes. FwChange is designed for heterogeneous firewall fleets. Manage Palo Alto at the perimeter, Fortinet at branches, and Check Point in the datacenter—all from one platform.
We can develop custom drivers for enterprise customers. Contact us with your vendor and API documentation, and we'll provide an integration timeline.
We support the last 2-3 major releases of each vendor. Check the detailed integration table above for specific version numbers tested with your firewall.
See how FwChange simplifies multi-vendor firewall operations.
Test Your Firewall Free →