Welcome to PanBot
Your all-in-one solution for hosting EDLs, managing firewall changes, securing backups, and ensuring compliance—all in one streamlined platform.
Discover how PanBot's features can transform your network operations.
Key Features
PanBot solves your biggest challenges with EDLs
Free hosting for your External Dynamic Lists with advanced features
Deploy without effort
Host and manage External Dynamic Lists (EDLs) with just a few clicks
Syntax Validation
Automatically validate your EDLs to avoid duplication and syntax errors
Collaborative Management
Seamlessly integrate other teams through SAML groups, e.g. from EntraID, ensuring smooth cross-team collaboration.
Protect your Service
Set and enforce strict entry guidelines to protect firewall integrity by preventing harmful EDL updates.
Optimized & Manageable Lists
Automatically optimize lists to maintain clarity and efficiency
Instant Deployment
Inform your firewalls when EDLs have changed to pull them immediately
Audit-Friendly Comments
Easily add and enforce descriptive comments for entries and commits.
Full version control
Maintain a detailed, historical audit log of changes and allow rollback.
Automatic Expiry Management
Easily manage temporary entries by setting automatic expiry times
Enhanced Split Tunnel Configuration
Host and manage Enhanced Split Tunnel configurations for GlobalProtect
Prisma Access Integration
Automatically retrieve and your Prisma Access IP addresses, ensuring your EDLs reflect the latest Egress IPs at all times.
Managed Panorama Backups
Secure and reliable backup management for your Panorama configurations
Reliably Store Automated Backups
Effortlessly configure Panorama to send full backups to PanBot daily
Easy Retrieval
Easily retrieve stored backups anytime, facilitating quick recovery when needed
Stay secure
Protect your backups with a secure passphrase of your choice
Version Control
Maintain a complete history of your configurations with advanced version control
Automated Firewall Change Management
Secure, intelligent, and efficient firewall management
Secure Connection
Securely connect to your environment via self-managed secure VPN
Effortless Change Management
Effortlessly submit and manage firewall change requests
Instant Risk Evaluation
Instantly see a risk evaluation with every requested change
Intelligent Placement
PanBot determines the optimal way to implement the change keeping your policy tidy
Avoid duplication
Automatically identify if existing rules already permit the requested connections.
Rapid deployment
Deploy changes rapidly and accurately, either with guided instructions or autonomously by PanBot.
Intelligent Optimization and Compliance
Enhance your security posture with automated compliance and optimization features
Automatic Compliance Assessment
Automatically assess firewall configurations against custom compliance targets
Non-Compliant Settings Identification
Clearly identify non-compliant settings to facilitate quick remediation
Rule Cleanup
Quickly identify and remove redundant or unused firewall rules and objects
Performance Enhancement
Consolidate and merge rules intelligently to reduce complexity and enhance performance
How PanBot Works
Secure Integration
PanBot securely connects to your network infrastructure using industry-standard encryption and secure VPN technology.
Smart Automation
Our intelligent engine automates repetitive tasks, validates configurations, and provides recommendations for optimal security.
Continuous Protection
PanBot continuously monitors your environment, backs up critical configurations, and ensures your security posture remains strong.
Pricing
EDL Subscription
No Limitations
Unlock unlimited entries and lists beyond the 2500 entry and 10 list limitation.
Support
Annual subscribers receive priority Technical Support.
Availability
Annual subscribers receive Service Guarantees as outlined in our Terms of Service.
Firewall Change Automation
Eliminate costly delays
PanBot implements firewall changes automatically within minutes.
No rule-base chaos:
PanBot intelligently maintains an optimized, clean firewall rule base—no mess, no hassle.
Rapid, intelligent automation
Fully automate firewall change requests, or opt to guide your administrators what to do, cutting down time and cost.
Compliance and Optimisation
Quickly identify high risk firewall rules
PanBot spots issues in your rule base for you, helping you to manage risk.
Remove clutter
PanBot detects unused objects, unused or shadowed rules in your rule base and helps you to clean up.
Optimise
PanBot helps tidy up your rule base by identifying existing rules that can be merged and improved.
Documentation
Manage your Users
User Management Made Simple
Local Users - to get started (and if you have to)
Managing user access in PanBot is seamless and flexible. Navigate to Settings > Users to view and control your organization's user accounts. This section provides a complete overview of local user accounts, giving you powerful tools to:
- Unlock locked accounts with a single click
- Reset user passwords securely
- Adjust group memberships to match changing responsibilities
- Disable or delete local accounts when access is no longer needed
SAML
Prefer Centralized Identity? Choose SAMLWhile local users are available and fully manageable, PanBot strongly recommends using SAML for streamlined, secure, and centralized identity management, especially in enterprise environments.
SAML configuration is conveniently located on the same page. Getting started is straightforward:
- Define your email domain — PanBot will use this to match incoming users.
- Download PanBot’s Metadata — This file contains all necessary service provider (SP) details. Hand it off to your IdP admin to complete setup on their side.
- Upload your IdP’s XML Metadata — Just drop in the metadata file provided by your identity provider (e.g. Entra ID, Okta, etc.).
Once connected, your users can sign in effortlessly via your existing IdP, while you maintain full control over their access.
Role-Based Access
To fine-tune access, PanBot supports claims-based authorization through SAML group mapping. In the SAML Group Mapping for Claims-based Authorization section, simply provide your Entra ID (or other IdP) group names corresponding to PanBot roles.
Available roles include:
- Customer Superuser
- Change Requester
- Change Approver
- EDL Administrator
- EDL Operator
- Read Only
Assigning at least one group to one of these roles is required to authorize users after authentication. With this setup, permissions flow naturally from your organization's existing structure—no duplication or manual syncing required.
Manage your External Dynamic Lists
Use PanBot to host and manage your firewall EDLs
Effortlessly Create and Manage Extended Dynamic Lists (EDLs)
PanBot simplifies creating and maintaining your EDLs, empowering administrators with precision and flexibility. Navigate to External Dynamic Lists > New EDL to begin. Select from various EDL types to perfectly align with your security needs:
- IP Address Lists
- IPs of Prisma Access Gateways
- URL Lists
- Domain Blacklists
- Enhanced Split Tunnel EDLs
Ensuring Precision and Security
For IP and URL types, administrators can define forbidden entries. This feature prevents EDL operators from unintentionally including critical internal resources, like your company's intranet network range. Additionally, IP-type EDLs can be limited by setting a maximum number of IPs allowed. This ensures firewall policies remain secure and prevents overly broad definitions, such as inadvertently adding 0.0.0.0/0 (representing 4 billion IPs), by restricting the total allowed entries to a safe and manageable number.
Customize Global EDL Preferences
Under External Dynamic Lists > EDL Settings, administrators can define company-wide preferences for all EDLs. Available settings include:
- Require EDL operators to provide a descriptive comment for each new EDL entry.
- Require comments for every commit action to document changes clearly.
- Set mandatory credentials (username and password) to securely control EDL retrieval and safeguard your data from unauthorized access.
- Choose between enforcing a single, standardized password across all EDLs, or allowing EDL administrators the flexibility to assign unique credentials for each list.
Instantly View and Manage Your EDLs with EDL Overview
The External Dynamic Lists > EDL Overview provides an intuitive and powerful summary of all your company's configured EDLs, putting essential controls directly at your fingertips.
- Click the icon to effortlessly review the complete change history of an EDL. Quickly see commit dates, identify users responsible for updates, and browse helpful commit comments to understand exactly what changed.
- Use the button to clearly view differences between selected historical revisions and your current active version. Need to revert? Rollback instantly to any previous revision with a single click.
- The icon provides valuable additional details, including EDL access statistics and straightforward, practical instructions for configuring your firewall or Panorama device—ensuring smooth integration with your existing security policies.
Edit and Optimize Your EDL Content with Ease
Updating your EDL is simple. Click the icon in the EDL Overview to start modifying content. PanBot helps streamline your workflow by:
- Allowing quick additions of new entries with automatic syntax checking.
- Automatically detecting and highlighting duplicate entries to keep your list clean and efficient.
- Clearly marking changes awaiting commit, so you always know what’s pending.
- Offering seamless import and export options via CSV—perfect for bulk operations or reporting.
- Providing an intuitive Optimize feature, intelligently scanning your EDL content to flag unnecessary or redundant entries for removal.
Every modification can be reviewed thoroughly before committing. Easily discard changes to revert back to your last active version or commit confidently when ready.
Immediate Deployment to Your Firewall
If your infrastructure is fully integrated with PanBot via VPN, enabling instant deployment allows PanBot to proactively notify affected firewalls to immediately pull updated EDLs upon committing your changes. No more waiting for the usual refresh interval—your security enhancements take effect instantly, ensuring your policies stay up-to-date in real time.
Integrate your environment
Securely connect PanBot to your customer environment
Securely Connect Your Environment with IPSEC VPN
Connecting PanBot seamlessly and securely to your infrastructure is straightforward. Navigate to Settings > Customer VPNs to view existing VPN connections and their current status, or effortlessly establish a new IPSEC VPN.
When creating a new VPN, simply:
- Choose a descriptive VPN Name to clearly identify your connection.
- Define your secure pre-shared key for authentication.
- Provide your preferred local peer ID, uniquely identifying your IPSEC router.
- Specify an internal IP address from a /30 subnet range for PanBot to utilize in ongoing tunnel health monitoring.
- Clearly define static routes indicating precisely which network segments PanBot should reach through this VPN.
Enhanced Convenience with Customer DNS
Want even smoother access? Configure your Customer DNS right on the same page. This allows PanBot to reach your internal resources using intuitive DNS names rather than IP addresses, making management simpler and reducing complexity.
Your Security, Your Control
Security-conscious? We understand! Go ahead and configure fine-grained firewall rules on your end. Clearly specify exactly what resources PanBot can access, ensuring your security policies align perfectly with your comfort level. Feel free to provide PanBot with read-only credentials or grant exactly the level of access you're comfortable with.
Effortless Integration with Your Firewall and Panorama Assets
PanBot seamlessly connects to your existing firewall devices or Panorama management system, bringing unparalleled visibility and optimization potential. Simply navigate to Assets > New Asset and enter the IP address or fully qualified domain name (FQDN) of your firewall or Panorama, along with the credentials you prefer PanBot to use.
Leveraging your previously configured IPSEC VPN and customer DNS, PanBot securely establishes a connection and automatically generates an API key to interact directly with your asset. This integration empowers PanBot to:
- Efficiently discover and analyze your firewall configuration, routing information and rule usage.
- Clearly highlight areas to optimize your security rules and identify potential risks within your existing policies.
- Identify how best to implement a given firewall change request without making a mess in your existing rule base.
- Instruct your firewalls to execute an immediate refresh each time an EDL that they use has changed on PanBot.
Continuous Updates with SNMP Integration
To maintain perfect synchronization, PanBot provides straightforward guidance for configuring SNMP trap event triggers. Each time you commit changes to your firewall or Panorama, an SNMP trap informs PanBot immediately. This allows PanBot to instantly pull updates, keeping your visibility current and your analysis accurate—automatically, 24/7.
With PanBot, your firewall assets and policies are always up-to-date, optimized, and clearly understood—so you can confidently manage your security environment.
Manage your Security Policy
Use PanBot for your firewall change requests and rule base optimization
Efficient, Intelligent Firewall Change Requests
Creating and submitting firewall changes becomes simpler and smarter with PanBot. Navigate to Change Request > Make Request to quickly define your required connections by specifying source, destination, service, and application as usual—but with advanced validation at every step.
PanBot actively assists change requesters by:
- Helping select from existing objects and zones to ensure accuracy and consistency.
- Automatically identifying any application dependencies involved.
- Checking whether the requested connection is already permitted by existing firewall rules—preventing unnecessary duplication.
- Clearly showing whether a connection traverses a firewall and, if so, pinpointing exactly which firewall is involved.
PanBot makes it effortless for users to submit precise, error-free, and clearly validated change requests—every single time.
Informed Decision-Making for Approvers
After submission, all change requests appear clearly under Change Request > Request List, ready for approver review. Traditionally, approving firewall changes required a leap of faith—PanBot removes uncertainty by calculating a clear, easily-understood risk score for each request. Approvers can confidently decide, weighing provided change justifications alongside precise, automatically-generated risk evaluations.
Customize How PanBot Implements Your Firewall Changes
Under Change Request > Request Settings, you have full control over how PanBot integrates into your operational processes. Prefer PanBot to run purely in read-only mode initially? That's no problem—PanBot will provide clear, detailed GUI or CLI guidance to your firewall administrators, highlighting exactly how to implement each change optimally, including the best possible placement in your existing rulebase and clear insights into necessary zones and already-allowed connections.
Additionally, PanBot offers full flexibility with configuration options such as:
- Decide if PanBot should insert new change requests into existing rules whenever possible, only into rules PanBot created, or always create new rules (the last option available, but typically not recommended).
- Specify your default Log Forwarding Profile and Security Profile Group, and choose whether to allow change requesters to select alternative Security Profile Groups.
- Configure if PanBot should create or modify object groups when beneficial, or preserve existing ones as-is.
- Set preferences for optimal placement of new firewall rules—allow PanBot to choose the most appropriate location, group related changes, or consistently place new rules towards the end of the rulebase. For Panorama-managed environments, define if pre-rules, post-rules, or free placement should be used.
- Fully customize the naming conventions of firewall objects created by PanBot to seamlessly align with your established operational standards and conventions.
With PanBot, you retain complete oversight and flexibility, empowering you and your team to manage firewall changes safely, confidently, and precisely—exactly according to your organization's unique standards.
PanBot Information
About PanBot
Ownership and Trademark
Updates and Communications
Policies
Terms of Service
These terms of Service govern the use of the PanBot service provided by Privasec Ltd.
Free vs. Paid Services
Free version is offered “as-is” without warranties; Paid licenses include defined service metrics per our SLA.
Service Level Agreement (SLA)
Paid licenses guarantee 99.8% uptime and timely support. Credits apply if availability falls below stated levels.
Claiming Service Credits
Submit a request with account details to admin@pan.bot within 30 days if uptime drops below the guaranteed threshold.
Customer Obligations
Use PanBot lawfully. Do not attempt unauthorized access, disrupt services, or bypass security features.
Intellectual Property
All rights to the PanBot service and content remain the sole property of Privasec Ltd.
Termination by You
You may delete your account at any time; no refunds are provided for prepaid fees, and related data is removed permanently.
Termination by Us
Free services can be terminated anytime. Paid accounts require notice of material breach; you have 10 days to resolve before suspension.
Emergency Suspension
We may suspend access if actions threaten our system’s integrity or security. Reinstatement occurs once issues are resolved.
Privacy Policy
Privasec Ltd., operating the PanBot SaaS application, is committed to protecting the privacy and security of our users.
Commitment to Privacy
We handle personal information responsibly, ensuring protection and security across our SaaS platform.
Information We Collect
Basic details like name, email, and company info are collected for account setup and service provision.
How We Use Your Data
Personal data is used to manage accounts, provide support, handle transactions, send relevant updates, and improve our services.
Customer Data Access
Authorized customer users can see their own account data, including activity logs, for better oversight within the organization.
Data Security
We store data securely, restricting access to authorized personnel and employing industry-standard safeguards.
Essential Cookies
Only CSRF and session cookies are used for application security and functionality, without tracking or advertising.
Your GDPR Rights
You can access, correct, delete, or object to our processing of your data, and request data portability at any time.
Opting In and Out
You may subscribe to or unsubscribe from automated emails and service announcements at any time via your profile settings.
Policy Updates
We may revise this policy and will post changes on this page. Please review periodically for the latest privacy practices.
Data Processing Agreement
This Data Processing Agreement sets the standard for how your data is collected, processed, and safeguarded under GDPR.
Scope of Processing
Privasec Ltd only processes Personal Data to provide services, improve PanBot, comply with the law, or fulfill support requests.
Data Subject Requests
Privasec Ltd notifies you of data subject requests and assists with erasure or rectification as allowed by law.
Security Measures
Privasec Ltd implements technical and organizational safeguards to protect data from unauthorized access or destruction.
Data Deletion
Privasec Ltd deletes all Personal Data upon termination or at your request, unless retention is required by law.
Governing Law
This agreement is governed by the laws of England and Wales.
All policies
Privasec Policies can be viewed here.
Coming soon
Contact
Getting Started
Experience PanBot Instantly — No Strings Attached
Curious about how PanBot can transform your workflow? Dive right in with our hassle-free
Demo Mode — no registration, no commitment.
Click the
Try PanBot in Demo mode
button above and immediately experience the power and simplicity of PanBot firsthand.
Ready to Unlock Full Potential?
Impressed by what you've seen? Take the next step—effortlessly sign up your company by clicking Sign up your company at the top of the page. You'll swiftly receive a registration link via email, enabling you to quickly create your company account.
Seamless Security, Simplified
After registration, effortlessly set up SAML authentication tailored to your organization's unique needs, empowering different user groups with secure and intuitive access. PanBot ensures seamless integration, so you can focus on what truly matters—your business.
Start your journey with PanBot today, and discover a smarter, simpler way to manage your operations.