Connect your own FortiGate device(s), FortiManager (fleet management), and/or FortiSASE (cloud ZTNA/SD-WAN) tenant to manage firewall policies, address/service objects, interfaces, VPN tunnels, managed devices, policy packages, ZTNA endpoints, SASE policies, SD-WAN sites, and security events from Imperal -- plus bulk operations and a Fortinet estate health audit. Uses your own FortiGate API token, FortiManager credentials, and/or FortiSASE/FortiCloud API token -- nothing is hosted or proxied by Imperal beyond the request itself. Note: FortiAnalyzer/FortiEDR/FortiClient EMS are separate products and out of scope for this first release.
connect_fortigatewriteConnect a FortiGate device by saving its host and REST API Admin token, after checking they actually work. Create a REST API Admin under System > Administrators in the FortiGate itself.
connect_fortimanagerwriteConnect a FortiManager by saving its host, username, password and ADOM, after checking the login actually works. Session-based login re-authenticates transparently on every call.
connect_fortisasewriteConnect a FortiSASE/FortiCloud tenant by saving its API token, after checking it actually works. Create one in FortiCloud under Identity & Access Management > API tokens.
disconnect_fortinetwriteDisconnect and forget a stored FortiGate, FortiManager, or FortiSASE connection.
list_connectionsreadList all connected FortiGate, FortiManager, and FortiSASE connections.
list_firewall_policiesreadList firewall policies configured on the connected FortiGate device.
get_firewall_policyreadGet one FortiGate firewall policy by id.
create_firewall_policywriteCreate a new firewall policy on the connected FortiGate device.
update_firewall_policywriteUpdate a FortiGate firewall policy's action and/or enabled status.
delete_firewall_policywritePermanently delete a FortiGate firewall policy by id.
reorder_firewall_policywriteMove a FortiGate firewall policy to just before or after another policy in the rule order.
list_address_objectsreadList firewall address objects defined on the connected FortiGate device.
create_address_objectwriteCreate a new firewall address object on the connected FortiGate device.
update_address_objectwriteUpdate a firewall address object's subnet.
delete_address_objectwritePermanently delete a firewall address object by name.
list_address_groupsreadList firewall address groups defined on the connected FortiGate device.
list_service_objectsreadList firewall service objects defined on the connected FortiGate device.
create_service_objectwriteCreate a new firewall service object on the connected FortiGate device.
update_service_objectwriteUpdate a firewall service object's port range.
delete_service_objectwritePermanently delete a firewall service object by name.
list_interfacesreadList network interfaces on the connected FortiGate device.
get_system_statusreadGet FortiGate system status: firmware version, serial number, hostname, uptime.
list_vpn_tunnelsreadList IPsec and SSL VPN tunnels configured on the connected FortiGate device.
list_adomsreadList Administrative Domains (ADOMs) visible on the connected FortiManager.
list_managed_devicesreadList FortiGate devices managed by the connected FortiManager, in the configured ADOM.
get_managed_devicereadGet one FortiManager-managed device by name.
list_policy_packagesreadList policy packages defined on the connected FortiManager, in the configured ADOM.
list_fmg_firewall_policiesreadList firewall policies inside one FortiManager policy package.
list_fmg_address_objectsreadList global (shared) address objects defined on the connected FortiManager.
create_fmg_address_objectwriteCreate a global (shared) address object on the connected FortiManager.
update_fmg_address_objectwriteUpdate a global (shared) address object on the connected FortiManager.
delete_fmg_address_objectwritePermanently delete a global (shared) address object from the connected FortiManager.
list_endpointsreadList endpoints (managed devices/users) enrolled in the connected FortiSASE tenant.
list_sase_policiesreadList SASE access policies configured on the connected FortiSASE tenant.
create_sase_policywriteCreate a new SASE access policy on the connected FortiSASE tenant.
update_sase_policywriteUpdate an existing SASE access policy on the connected FortiSASE tenant.
delete_sase_policywritePermanently delete a SASE access policy from the connected FortiSASE tenant.
list_sdwan_sitesreadList SD-WAN sites configured on the connected FortiSASE tenant.
list_security_eventsreadList recent security events (threats, blocks, anomalies) from the connected FortiSASE tenant.
bulk_firewall_policy_actionwriteEnable or disable several FortiGate firewall policies in one call, by explicit policy ids. Continues past per-item failures and reports each outcome, same convention as every other bulk_* tool in the portfolio.
audit_fortinet_estatewriteRun a read-only health audit across all connected FortiGate/FortiManager/FortiSASE connections: disabled firewall policies with 'ALL'/'any' access, offline managed devices, expired-looking VPN tunnels, and disconnected endpoints. Same convention as Zscaler Connector's audit_tenant / Cisco Secure Access Connector's audit_secure_access.
Install Fortinet and let Webbee use it across your workflow.
Open in panel