ROADMAP
What we are building next
This list shows direction, not dates: each item lands only when it works well enough to trust.
Next
End-of-life check
Compare the PAN-OS software and the hardware model with the official end-of-life dates.
Next
Vulnerability exposure report
PAN-OS security advisories of the last six months, checked separately against the software version and against each advisory's required configuration for exposure.
Next
Policy and object hygiene
Unused and duplicate objects, empty groups, rules without tags or descriptions.
Next
Official references
Links to Palo Alto Networks documentation and knowledge base articles for every recommendation.
Later
Compliance mapping
Every finding mapped to the CIS Palo Alto Networks Benchmark, PCI DSS, ISO 27001 and NIST controls, with a compliance summary in the report.
Later
Change and drift analysis
Compare two configurations or tech support files: what changed, whether risk went up or down, and the score trend over time.
Later
Panorama fleet audit
All device groups and managed firewalls in one report, with the riskiest devices and shared problems first.
Later
Remediation commands
Reviewable PAN-OS CLI / set commands for each finding, never applied automatically.
Later
Other firewall vendors
The same local audit for other firewall vendors.