How Firewall insight agent works

When you submit a query, Firewall insight agent identifies the relevant devices, configurations, policies, or operational data and returns the associated information. The agent can:

  • Identify the devices, policies, routes, interfaces, or configurations related to the query.

  • Correlate information across devices, policies, routing, security configuration, and operational state.

  • Compare related configurations and identify conflicts, overlaps, redundancies, or inconsistencies.

  • Explain when a device or configuration cannot be found and identify the information required to continue the investigation.

  • Generate operational findings, root-cause analysis, and recommended next steps.

Procedure


Step 1

In the left pane, click Insights & Reports > Agent Workforce > Conversations.

Step 2

Click New Conversation.

Step 3

Enter a query about firewall inventory, device state, routing, policies, security configuration, or operational data.

Agent Workforce automatically assigns the request to an agent based on the operational intent.

Step 4

Review the returned firewall information, analysis, and key observations.

The Firewall insight agent analyzes firewall data and reports findings, comparisons, and recommended next steps. It does not modify configurations, create or deploy policies, or approve changes.

Step 5

Continue the investigation by providing additional context, such as device names, policy names, object names, interfaces, or other relevant identifiers.

Step 6

Review the recommended next steps and validate the operational impact before applying configuration changes.


After the analysis is completed, Firewall insight agent summarizes the operational findings, identified root cause, impact, additional observations, and recommended next steps.