Input
Start with the real FortiGate configuration
- Manual export or read-only collector retrieval
- Policies, objects, services, interfaces, VDOMs, and admin settings reviewed together
Solutions
Review the live FortiGate configuration you actually run and turn exposure into a prioritised finding set.
Example output
Input
Output
Common issues
Internet-facing rules that remain wider than intended after go-live.
Segmentation that looks stronger on paper than it does in policy.
Admin paths and operational exceptions that outlived their original need.
Why this matters
FortiGate risk usually grows through accumulation rather than one obvious mistake.
ConfigSentry turns that running state into a risk summary engineers can prioritise and stakeholders can review.
Next step
Review sample reports or start with a real FortiGate configuration.