| Desktop |
Windows 10 or 11 (64-bit), macOS 11 or later, or Linux with glibc 2.28 or later (Ubuntu 20.04+, Debian 10+, RHEL or Rocky 8+, Fedora); 300 MB disk |
| Server or jump host |
Docker or a compatible container runtime; 256 MB memory for one auditor |
| Browser |
A current Chrome, Edge or Firefox |
| Firewall |
Panorama-managed or standalone PAN-OS, tested on PAN-OS 11.2; FortiGate with FortiGate or FortiAnalyzer logs, tested on FortiOS 7.4, 7.6 and 8.0; Cisco ASA 9.x (including ISA 3000 and ASA 5500-X) with its syslog, tested on ASA 9.18 and 9.24; Cisco Secure Firewall Threat Defense (FTD) managed by FMC 7.4, with the FTDs’ connection syslog, tested on FMC and FTD 7.4; Check Point Security Gateways managed by a Security Management Server or Multi-Domain Server, R81.10 to R82, with their firewall logs, tested on R82 |
| Device-ID enrichment |
PAN-OS 10.0 or later traffic logs with Device-ID or IoT Security on |
| Word export |
Microsoft Word, or any editor that opens .docx |
| Password-protected zip |
7-Zip, WinZip, WinRAR, Keka, The Unarchiver or Windows 11 File Explorer (AES-256) |
| File limits |
32 MB config, 64 MB traffic log, 250,000 rows |