Supported Devices
This page lists devices that have been validated in an FMOS environment for onboarding and management. For each device, the table provides the vendor, device name, levels of support, and the vendor-defined End of Support (EOS) versions to help you understand lifecycle expectations and plan upgrades. Additional notes are included where applicable to clarify limitations or special considerations.
For cloud-managed services, specific version numbers may not be listed, as versioning is controlled by the vendor and may not be customer-visible.
The End of Support column identifies versions that are no longer supported or have reached their support limit. If your active device version is listed, contact Support for assistance.
Exceptions to a device's level of support will be seen in the Notes column and noted on the device's onboarding page.
Management Stations
Vendor Device Levels of Support Notes 1 2 3 4 5 End of Support Amazon AWS Organizations X X X Barracuda Control Center based on managed device level of support 8.3 and older Check Point R80 CMA / SmartCenter™ X X X X R80.10 through R80.20 Check Point R80 MDS X X X X R80.10 through R80.20 Check Point R81 CMA / SmartCenter™ X X X X versions prior to R81.0 Check Point R81 MDS X X X X versions prior to R81.0 Check Point R82 CMA / SmartCenter™ X X X X Check Point R82 MDS X X X X Cisco APIC - ACI Manager based on managed device level of support versions up to and including 4.0 Cisco Security Manager CSM X X X all 4.0 versions Cisco Firepower Management Center (FMC) X X X X versions up to and including 7.1 Cisco Cloud-Delivered Firepower Management Center (cdFMC) X X X X Cisco ISE based on managed device level of support versions earlier than 2.2 Cisco Meraki based on managed device level of support versions earlier than 16.0 Cisco Viptela vManage X X versions earlier than 19.0 CloudGenix Controller based on managed device level of support versions earlier than 4.0 Forcepoint Stonesoft Management Center X X X versions up to and including 6.0 Fortinet FortiManager X X X X versions up to and including 6.0 Fortinet FortiManager - ADOM X X X X ADOMs on FortiOS ≤6.0 Google Cloud Platform based on managed device level of support HPE / Aruba EdgeConnect SD WAN based on managed device level of support Legacy Silver Peak VXOA Juniper Networks Space X X versions up to and including 17.0 Microsoft Azure Manager based on managed device level of support Azure Classic (ASM) Palo Alto Panorama X X X X versions up to and including 9.1 Palo Alto Prisma Access Cloud Manager / Strata Cloud Manager X X X older tenant versions VMware NSX-T Manager based on managed device level of support versions up to and including 2.0 Zscaler ZIA X X X Legacy nodes deployed prior to 2018
Firewalls Vendor Device Levels of Support Notes 1 2 3 4 5 End of Support AhnLab TrusGuard Series X X X versions up to and including 2.0 Amazon AWS Account X X X Amazon AWS Transit Gateway X X Barracuda NGFW X X versions up to and including 7.0 Check Point R80, R81, R82 Edge X X X X X R80.10 and R80.20 Check Point R80, R81, R82 Firewall X X X X X R80.10 and R80.20 Cisco ACI X X X versions earlier than 4.0 Cisco ASA/ASA Context X X X X X versions up to and including 9.12 Cisco FWSM/FWSM Context X X X X X versions up to and including 9.0 Cisco Firepower FTD X X X X X versions up to and including 7.1 Cisco Firepower FDM X X versions up to and including 7.1 Cisco Meraki X X X X X versions earlier than 16.0 Cisco Viptela Tenant X X versions up to and including 19.0 CloudGenix ION X X X versions earlier than 4.0 Forcepoint Enterprise Firewall X X X versions up to and including 5.0 Forcepoint Sidewinder X X X Forcepoint Stonesoft X X X X versions up to and including 5.0 Fortinet FortiGate Firewall X X X X X versions up to and including 6.2 Fortinet FortiGate VDOM X X X X X versions up to and including 6.2 VPC Network X X Hillstone Networks Firewall X X X versions up to and including 4.0 Huawei Eudemon Series X X X versions up to V300R Huawei NGFW Series X X X X Legacy USG2000 models Juniper Networks SRX X X X X X versions up to and including 17.0 Automation for SRX, not managed by NSM
Juniper Networks SRX LSYS X X X X versions up to and including 17.0 Juniper Networks QFX X X versions up to and including 15.0 Juniper Networks VSRX X X versions up to and including 17.0 Linux IPtables X X Usage support issues -- no rule name references Linux NFtables X X X Usage support issues -- no rule name references Microsoft
Azure X X X X Classic ASM Usage by Hit Count
Microsoft Azure Firewall X X X Legacy preview versions Netgate pfSense X X X X versions up to and including 2.4.0 Palo Alto Networks PA Firewall X X X X X versions up to and including 9.1 Palo Alto Networks Prisma Node / Prisma Access (single tenant only) X X X versions up to and including 3.0 Palo Alto Networks VSYS X X X X X versions up to and including 8.0 Riverbed SteelHead X versions up to and including 8.0 SECUI BLUEMAX X X X X X versions up to and including 5.0 SECUI MF2 X X X versions up to and including 3.0 SECUI NXG Series X X X versions up to and including 4.0 SonicWALL SonicWALL 6.5.1+ X X X versions 5.8 and 5.9 There is a known bug that we're trying to get the vendor to fix. Duplicate UUIDs may be seen on rules, which can cause incorrect usage for rules. SonicWALL SonicWALL 5.9+ X X X version 5.9 No UUID in this version to track usage for Level 3 support. Usage will require SonicWALL firmware: 6.2.7.0-11+
Sophos XG X X X X versions up to and including 17.0 Sophos XGS X X X X Validated that v20 and v21 successfully onboarded Stormshield Stormshield Network Security X X X versions up to and including 3.0 TopSec Firewall X X X Appliances manufactured prior to 2019 VMware NSX-T X X X X X versions up to and including 2.0 WatchGuard Firebox X X X versions up to and including 11.0.0 Zscaler Cloud X X X Legacy nodes deployed in 2018 or earlier
Traffic Managers Levels of Support Vendor Device 1 2 3 4 5 End of Support Notes A10 ADC Load Balancer X X versions up to and including 4.0 Blue Coat ProxySG X X X versions up to and including 5.0 Usage by Hit Counters Citrix Netscaler VPX X X X X versions up to and including 11.0 Usage by Syslog
F5 BIG-IP X X X X X versions up to and including 9.0 Policy Planner automation for F5 AFM
Routers / Switches Levels of Support Vendor Device 1 2 3 4 5 End of Support Notes Arista EOS & vEOS X X versions earlier than 4.15 Cisco IOS® IOS XE X X X X X versions earlier than 11.0 Minimum version required for Hit Counters: IOS 12.4(22)T IOS XE Release 3.6S
Cisco IOS® XR X X X X X versions earlier than 5.3.0 Cisco IOS® ZFW ZoneBased-FW X X X X versions earlier than 12.2 Cisco Nexus X X
X versions earlier than 4.1 Usage tracking is not supported Commscope Ruckus Layer 3 Switches X X X Older firmware versions Normalization of: users, interfaces, routers, network objects, service objects, security objects, nat rules Dell Powerswitch S-series X X FTOS versions earlier than 8.0 Extreme Networks X Series X X versions earlier than 15.0 Caprica X X Legacy internal builds HPE Aruba OS-CX X X versions earlier than 8.0 Juniper Networks EX Series X X X X versions earlier than 12.0 Juniper Networks M Series X X X X X versions earlier than 11.0 Juniper Networks QFX X X X versions earlier than 12.0 Nokia Lucent/Alcatel X X versions earlier than 13.0 NVIDIA Cumulus X X X X X
Log Servers Vendor Device End of Support Notes Check Point Check Point Log Server DC connects to Log Server over TCP/18184 to receive usage logs