Automated Fortinet Weekly Firewall Scorecard
Every Monday, WebRun opens the FortiGate management console, reviews the past week's threat and traffic logs, saves a copy of the summary report to Google Drive, and posts a scorecard of the top blocked threats and rule hits to Slack.
How do I get a weekly summary of what my FortiGate firewall blocked?
WebRun reviews FortiGate's threat and traffic logs every Monday, ranks the top blocked threats and rule hits from the past week, saves the summary report to Google Drive, and posts a scorecard to Slack. It never changes a firewall policy itself, so every rule change stays a deliberate decision by your team.
- Top threats and rule hits are ranked every Monday without a manual log pull
- Reports are archived automatically so trends are easy to compare
- The channel gets one readable scorecard instead of raw log exports
Built for network security teams · IT admins · managed service providers · CISOs
What does WebRun do on every run?
The exact actions WebRun takes, in order - in plain language, so you can adjust anything.
-
WebRun signs in and gets to work
Opens
www.fortinet.comin a real browser with your saved login - no setup, no API keys. -
1
Fortinet - review threat and traffic logs
WebRun opens Fortinet to review threat and traffic logs. - Open the FortiGate console and review threat and traffic logs for the past week
- Rank the top blocked threats and the rules with the most hits
- Note any policy with an unusual spike compared to prior weeks
Done when The week's top threats and rule hits are ranked.
-
2
Google Drive - archive the summary report
WebRun opens Google Drive to archive the summary report. - Open the network security folder in Google Drive
- Save a copy of this week's summary report with the date
- Keep it alongside prior weeks for trend comparison
Done when This week's summary report is archived in Google Drive.
-
3
Slack - post the firewall scorecard
WebRun opens Slack to post the firewall scorecard. - Post the scorecard to the network security channel in Slack
- List the top blocked threats and any rule with an unusual spike
- Link to the archived report in Google Drive for full detail
Done when The Slack channel has this week's firewall scorecard.
How is each run configured?
Secure by default
Connect once, stays signed in
WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.
Every action is checked against this policy before it runs.
Questions, answered
Does WebRun change any firewall policies or rules?
No. WebRun only reads logs and reports on them. Any policy or rule change is a manual step your network security team makes in FortiGate.
Does the Slack post include sensitive traffic details?
No. It only shares aggregate counts, such as top blocked threats and rule hit totals, not raw packet data or user browsing content.
What if a policy spikes badly between Mondays?
This template checks weekly. For same-day awareness of a sudden spike, pair it with an hourly threshold alert instead.
Put this on autopilot.
Turn it on in minutes - or have our team set it up for you.