● Offline static analysis — no device access required
Verify FortiGate policies
before traffic hits the wire
Inspired by Cisco's Packet Tracer feature, this tool lets you upload a FortiGate backup config and simulate
how a specific packet — defined by source IP, destination IP, port, and protocol — would be processed by
the firewall. See exactly which policy matches, which security profiles apply, whether NAT is applied,
and get a clear ALLOW or DENY verdict across all 6 pipeline stages. Optionally paste a live routing table
to include OSPF, BGP, or RIP routes in the lookup.
Common use cases
🔍 Troubleshoot why traffic is being dropped
✓ Verify a new policy before deployment
🔄 Confirm SNAT / DNAT translations are correct
🔒 Audit which policy permits sensitive traffic
🏗 Test rule changes in a config backup safely