fastrevmd-lab

30 mods across 1 repository, 8 stars between them.

fastrevmd-lab/fwskillsshare

Instructions file CodexOpenCode

Instructions for fastrevmd-lab/fwskillsshare, covering firewall skills repository instructions, purpose and architecture, setup and development, required checks and skill description constraints.

8 4d ago A 948 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to CIS Controls v8/v8.1 safeguards. Use when assessing IG1/IG2/IG3, inventory, secure configuration, access, logging, threat prevention, or safeguard IDs such as 4.2 and 13.3. Excludes product-specific CIS Benchmarks.

8 4d ago A 73 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Deploy, license, and validate HPE Aruba ClearPass Policy Manager 6.14 on Proxmox VE KVM. Use when sizing the appliance, driving the VGA-only first-boot wizard, fixing a GRUB menu that never boots, importing an HTTPS certificate, or using the REST API.

8 4d ago A 68 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to CMMC Level 2 and NIST SP 800-171. Use when assessing CUI boundaries, least privilege, remote access, SSP or POA&M evidence, C3PAO readiness, DFARS 252.204-7012, or requirements such as 3.1.1 and 3.13.1. Parse raw configs first.

8 4d ago A 96 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Audit normalized Cisco, Fortinet, Palo Alto, and Juniper firewall rulebases for security hygiene. Use when finding any-any, shadowed, redundant, or orphaned rules, missing deny or logging, exposed management, weak VPN crypto, hardening gaps, or unused objects. Parse raw configs first.

8 4d ago A 70 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Convert parsed configurations among Cisco ASA/FTD, FortiGate, PAN-OS, and Juniper SRX with a fidelity report. Use when migrating objects, policy, NAT, zones, routing, HA, or VPN and producing target-native CLI with converted, caveat, and manual classifications. Parse raw configs first; output is not production-ready.

8 4d ago A 77 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Compare two parsed firewall configurations by semantic intent rather than text. Use when checking drift, HA parity, pre/post-change results, migration fidelity, or round-trip conversion. Parse raw configs first; use a text diff for literal line changes.

8 4d ago A 53 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to HIPAA Security Rule safeguards for ePHI. Use when assessing segmentation, access and audit controls, transmission security, risk management, BAA or vendor access, OCR evidence, 45 CFR 164.312, or “HIPPA.” Parse raw configs first.

8 4d ago A 69 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to ISO/IEC 27001:2022 and ISO 27002. Use when assessing ISMS scope, Annex A.8.20-A.8.23, secure configuration, logging, supplier access, change or incident evidence, the Statement of Applicability, audits, or corrective actions. Parse raw configs first.

8 4d ago A 81 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Parse Cisco ASA and FTD LINA running configurations into the shared firewall schema. Use when input contains show running-config, access-list, access-group, object network, object-group, nameif, security-level, NAT, interfaces, or failover, including audit, conversion, diff, summary, and explanation tasks. For FMC- or…

8 4d ago A 92 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Parse Cisco Secure Firewall (Firepower) FMC and FDM management exports into the shared firewall schema. Use when input is JSON from the FMC or FDM REST API or an FDM configexport bundle and contains accessPolicy, accessrules, securityZones, prefilterpolicies, intrusionPolicy, filePolicy, variableSet, ftdnatpolicies…

8 4d ago A 126 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Parse FortiGate and FortiOS full-configuration or backup exports into the shared firewall schema. Use when input contains config/edit/set/next/end blocks, VDOM, firewall policy or address, srcintf, dstintf, UTM profiles, or VIPs, including audit, conversion, diff, summary, and explanation tasks.

8 4d ago A 77 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Parse PAN-OS and Panorama XML or set-format exports into the shared firewall schema. Use when input contains vsys, device-group, security rulebase, address-group, application-default, security-profile-group, set deviceconfig, or XML entry/member elements, including audit, conversion, diff, summary, and explanation…

8 4d ago A 71 tokens original MIT

parsing-srx-configs

14

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Parse Juniper SRX and Junos display-set or hierarchical configurations into the shared firewall schema. Use when input contains set security, zones, policies, address-book, from-zone, to-zone, NAT rule-set, chassis cluster, logical-systems, or routing-instances, including audit, conversion, diff, summary, and…

8 4d ago A 75 tokens original MIT

pci-ngfw-compliance

15

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to PCI DSS v4.0.1. Use when assessing CDE scope, segmentation, Requirement 1, traffic restrictions, six-month rule review, logging, IDS/IPS, admin access, change control, or QSA, ROC, and SAQ evidence. Treat compliance as an environment assessment, not an NGFW certification.

8 4d ago A 81 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Deploy and validate Juniper Security Director On-Prem 25/26 as a Proxmox VE KVM guest. Use when planning, installing, rebuilding, validating network connectivity or first-boot seed data, and onboarding SRX/Junos devices. Not for Junos Space Security Director or Security Director Cloud.

8 4d ago A 71 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Map firewall controls, evidence, and gaps to SOC 2 Trust Services Criteria. Use when assessing Type I or II, logical access, operations, change management, logging, vendor access, incident response, operating-effectiveness samples, or CC6.1, CC6.6, CC7.2, and CC8.1. Parse raw configs first.

8 4d ago A 79 tokens original MIT

srx-advpn

18

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Design, configure, audit, and troubleshoot Juniper SRX ADVPN spoke-to-spoke IPsec shortcuts. Use when handling suggester or partner roles, multipoint st0, OSPF p2mp, certificates, PKI, shortcut lifecycle, or “No public key found” IKEAUTH failures. Use AutoVPN for hub backhaul and static IPsec for small fixed estates.

8 4d ago A 85 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Design, configure, audit, and troubleshoot Juniper SRX AutoVPN full-tunnel hub backhaul. Use when handling group-ike-id gateways, traffic selectors, ARI, shared st0, anti-recursion routes, source NAT, VPN hairpinning, NAT-T, or Junos 24.4R1+ PSK and 0.0.0.0/0 commit errors. Use ADVPN for direct spoke shortcuts.

8 4d ago A 99 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Build and validate a Juniper SRX or vSRX chassis cluster whose two nodes are Proxmox VE guests. Use when planning bridges and VLANs for the control and fabric links, mapping virtual NICs to Junos interface names, bootstrapping cluster-id, configuring fab interfaces, reth interfaces and redundancy groups, or diagnosing…

8 4d ago A 94 tokens original MIT

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Assess Juniper SRX evidence against the source-pinned DISA STIG and produce conservative rule-level findings. Use when reviewing NDM, ALG, IDPS, or VPN profiles, CAT I/II/III results, CKL preparation, evidence gaps, Junos compatibility, remediation plans, or assessor-ready SRX STIG reports. Parse raw configs first.

8 4d ago A 82 tokens original MIT

srx-dynamic-ip-feed

22

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Configure, audit, and troubleshoot Juniper SRX dynamic IP objects from HTTPS feeds. Use when handling feed archives, dynamic-address mapping, certificate validation, basic auth, mTLS, session scanning, routing-instance reachability, Recovery Mode after reboot, show security dynamic-address, ipfd logs, or feed and TLS…

8 4d ago A 80 tokens original MIT

srx-initial-setup

23

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Bring a new or factory-reset Juniper SRX from its shipped state to a reachable, zoned, screened, and minimally policied device. Use when performing first-time setup or Day-0 and Day-1 bring-up on SRX300 or SRX400 Branch, SRX1600 or SRX4120 campus, or SRX4300, SRX4700, or SRX5000 datacenter platforms, when removing or…

8 4d ago A 169 tokens original MIT

srx-ipsec-hub-spoke

24

fastrevmd-lab/fwskillsshare

Skill Claude CodeCodex

Design, configure, audit, and troubleshoot Juniper SRX static route-based IPsec hub-and-spoke. Use when handling per-spoke IKE gateways, one st0 per spoke, static routes, anti-recursion, centralized source NAT, VPN-to-untrust policy, or hub hairpinning. Use AutoVPN for changing spokes and ADVPN for direct shortcuts.

8 4d ago A 83 tokens original MIT