FireWeave
Native Integrations

Six planes we deploy to. Thirteen we understand.

FireWeave connects to the firewalls, fabrics, clouds and ticketing systems you already run. Plenty of vendors publish a wall of logos and let you assume they all work the same way. We don’t. Every integration below says exactly what FireWeave can do with it — because “supported” means something different when it’s your production change window.

Deploys policyFireWeave writes policy and can roll it back.
Candidate config + pushFireWeave authors candidate config, then pushes it as a governed job.
Operational controlOperational actions only — not policy authoring.
Reads & analysesRead, analyse and verify. FireWeave never writes here.

Firewall Platforms

Manage policy across every major enterprise firewall platform from one place—on-premises, cloud-managed, or cloud-native.

Palo Alto Panorama

Deep integration with Palo Alto Networks Panorama.

Deploys policy
  • Device group hierarchy
  • Template stack management
  • Security policy analysis
  • NAT rule validation
  • VPN configuration
  • Real-time topology sync
  • Rule optimizer & deduplication
  • SSH deployment

Check Point

Management Server, SmartCenter and MDS estates, plus the Security Gateways beneath them.

Deploys policy
  • Management Server / MDS discovery
  • Security Gateway inventory
  • Rule viewer & policy hierarchy
  • Shadowed, unused & any-service analysis
  • Rule optimizer
  • Object browser, dedup & cleanup
  • NAT explorer with NAT simulator
  • Site-to-site VPN audit
  • Application Control visibility
  • Mass rule editing
  • Governed deploy with rollback
  • Compliance & best-practice checks
  • CVE monitoring
  • Check Point → Palo Alto migration

Fortinet FortiGate

Direct FortiGate integration for policy analysis and governed change.

Deploys policy
  • FortiGate configuration collection
  • Rule viewer & policy hierarchy
  • Shadowed, unused & any-service analysis
  • No-logging rule detection
  • Rule optimizer
  • Object browser, dedup & cleanup
  • NAT explorer
  • Best-practice & compliance checks
  • Governed create, modify & delete
  • Preview, verify and rollback
  • Config growth & census trends
  • Read-only SSH terminal

Cisco FMC

Firepower Management Center integration for FTD policy visibility.

Reads & analyses
  • Managed device inventory
  • Access control policy explorer
  • NAT explorer
  • VPN configuration visibility
  • Shadowed & unused rule analysis
  • Rule optimizer
  • Any-service & no-logging detection
  • Audit log and topology views

Palo Alto Strata Cloud Manager

Cloud-managed Palo Alto estates via Strata Cloud Manager.

Candidate config + push
  • OAuth service-account connection
  • Policy and object discovery
  • Security rule creation
  • NAT rule creation
  • Rule optimizer
  • Change history tracking

Azure Firewall

Azure Firewall policy visibility and path verification.

Reads & analyses
  • Firewall policy discovery
  • Rule collection analysis
  • Path testing across policies
  • Native Azure topology context

Cloud Providers

Native discovery and policy analysis across the three major public clouds.

AWS

Deep integration with Amazon Web Services for complete cloud visibility.

Deploys policy
  • VPC and Subnet discovery
  • Security Groups analysis
  • Transit Gateway topology
  • EC2 and RDS resource mapping
  • Direct Connect detection
  • Cross-region analysis
  • Blast radius calculation

Microsoft Azure

Native Azure integration for hybrid cloud environments.

Deploys policy
  • Virtual Network mapping
  • Network Security Groups
  • Application Security Groups
  • ExpressRoute detection
  • VPN Gateway status
  • Cross-subscription discovery
  • Traffic flow analysis

Google Cloud Platform

Full GCP network security integration.

Deploys policy
  • VPC network discovery
  • Firewall rules collection
  • Cloud Asset Inventory
  • VM instance topology
  • VPN tunnel monitoring
  • Cross-region analysis
  • IAM integration

Network & Segmentation

Extend visibility beyond firewalls to fabrics, routers, switches, load balancers, DNS/DHCP, and host microsegmentation.

Cisco Routers & Switches

Complete network visibility: routing tables, ACLs, interface configs, VLAN mappings.

Reads & analyses
  • IOS/IOS-XE configuration discovery
  • Routing table analysis
  • ACL policy extraction
  • Interface mapping
  • VLAN topology visualization
  • Multi-hop path tracing

Juniper Routers & Switches

Junos config discovery and topology mapping across Juniper estates.

Reads & analyses
  • Junos configuration discovery
  • Routing table & instance analysis
  • Firewall filter extraction
  • Interface and VLAN mapping
  • LLDP neighbour topology
  • Multi-hop path tracing

Cisco ACI

Application-centric infrastructure integration for modern data centers.

Reads & analyses
  • EPG (Endpoint Group) discovery
  • Contract and filter analysis
  • Tenant policy mapping
  • Application profile visibility
  • Multi-site fabric support
  • Microsegmentation policies

Illumio

Host microsegmentation visibility and policy analysis via the Illumio PCE.

Reads & analyses
  • PCE connection management
  • Workload and VEN inventory
  • Label and ruleset discovery
  • Policy check for any flow
  • Segmentation hygiene findings
  • PCE health monitoring
  • Exportable segmentation reports

F5 Load Balancers

Secure application delivery with F5 BIG-IP integration.

Operational control
  • Virtual server discovery
  • Pool member mapping
  • iRule analysis
  • SSL certificate tracking
  • Load balancer health monitoring
  • Traffic distribution policies

Infoblox

DNS, DHCP, IPAM integration for network context enrichment.

Reads & analyses
  • IPAM data synchronization
  • DNS zone discovery
  • DHCP scope mapping
  • IP address conflict detection
  • Network documentation
  • DNS security insights

IT & Security Tools

Connect to your ITSM, compliance, and security systems.

ServiceNow

End-to-end change management automation with ServiceNow ITSM.

Most PopularConnected
  • Automatic change detection
  • Rule generation from tickets
  • Governed deployment
  • Evidence package upload
  • State transition automation
  • Ticket closure
  • Single end-to-end automated flow

JIRA

Connect security findings to your development workflow.

Connected
  • Issue tracking integration
  • Security finding tickets
  • Compliance issue creation
  • Bidirectional sync
  • Custom field mapping

Compliance Checks

Continuous policy validation against custom and standard frameworks.

Connected
  • Framework-agnostic rule packs
  • Scheduled and on-demand scans
  • Per-platform check coverage
  • Exportable evidence

Threat Intelligence

Enrich security analysis with threat feeds.

Connected
  • VirusTotal URL scanning
  • URLhaus malicious detection
  • Google Safe Browsing
  • URL category analysis
  • Domain reputation

Developer API

Comprehensive REST API for automation and integration across your stack.

  • REST API with OpenAPI/Swagger documentation
  • JWT authentication
  • Webhook support
# Check policy path via API
curl -X POST \
https://api.fireweave.io/v1/policy/path \
-H "Authorization: Bearer $TOKEN" \
-d '{"src":"10.0.0.1","dst":"192.168.1.50"}'
# Response
{
"allowed": true,
"rule": "allow-web-traffic",
"device_group": "Production"
}

Ready to Connect?

See how FireWeave integrates with your existing infrastructure. Schedule a demo and we'll show you a live integration with your systems.

Schedule Integration Demo