Each week via Twitter we post a daily audit checklist tweet for all the IS auditors and security administrators out there in the tweet-o-sphere. But, we realize not everyone is ready for Twitter, and many of you are still resisting (you can keep trying, but eventually you will give in and start tweeting, everyone will eventually…), so we’ve decided to start posting them in our blog as well.

So once each week we’ll post the audit checklists and audit tools that we posted into Twitter here in our blog as well. This way everyone will have a chance to enjoy all the audit fun!

So, from all the folks at Enclave Security, enjoy this week’s audit checklists and tools. This week we focused on firewall auditing. So all the checklists and tools are firewall focused this week.

Firewall Audit Checklists & Security Guides:

From University of North Carolina (UNC Cause)


From Lance Spitzner

From the Center for Internet Security (Old Link Removed)

From the SANS Institute

Firewall Audit Tools:

Nmap v.5.0

Athena FirePac

Skybox Firewall Auditor

ManageEngine Device Expert


We hope everyone will enjoy and use these tools this week. If you have suggestions or ideas for future audit checklists or tools, please let us know, we’d love to hear your feedback.