A Windows desktop app that turns traffic-discovery exports and firewall connection logs into:
- a firewall ruleset workbook (Environment, Protocol, Source, Destination / FQDN, Port(s), Action), grouped under a heading for each traffic category;
- Azure NSG rules, with an optional Azure CLI script;
- a connection diagram (SVG).
It runs entirely on your computer and makes no network connections. Your files are read from disk, processed in memory and written back where you choose.
Get the latest FW-Ruleset-Builder-<version>.exe from the Releases page. It is a single file: no installation and no Python needed.
Each release lists the SHA-256 of the exe in SHA256SUMS.txt. In PowerShell:
Get-FileHash "FW-Ruleset-Builder-1.0.0.exe" -Algorithm SHA256
Compare the result with the value in SHA256SUMS.txt for that release. The same checksum is published on the FW Rules web page.
The program is not code signed, so Windows may show a SmartScreen prompt the first time it runs. Choose "More info", then "Run anyway", once you have checked the hash.
- Traffic-discovery exports (
.xlsx,.xlsm,.xls,.csv): one row per flow, with Server Name, Server IP, Server Process, Port, Remote Process, Remote IP, Remote Server Name, Remote Application and Direction. - Firewall connection logs: one row per event, with Source IP, Destination IP and Destination Port, plus Action, Device and Access Control Rule if present.
Add one file per server of the application, or drop a folder onto the window.
This repository only hosts the released program. It contains no source code and no data.