Every vendor. One clear model.
SAMURAI Networks syncs configuration and state across Cisco, Palo Alto, Fortinet, VMware and Active Directory, makes all of it searchable, and analyzes every change.

Built to read the platforms you already run
Trace a path before you touch a device.
Pick a source and a destination. SAMURAI Networks walks the path hop by hop across routers, firewalls and the ACI fabric, evaluating policy, zones and NAT at every step.
- Hop-by-hop forwarding resolved across vendors.
- Policy, NAT and zone evaluation shown inline.
- Per-hop confidence and provenance for every result.

Every endpoint, resolved to an identity.
One fleet-wide table joins switches, routers, the fabric, firewalls and the directory. Each host resolves through MAC, ARP, DHCP, CDP/LLDP, 802.1X and OUI.
- Field-scoped search by status or authentication method.
- Identity and vendor enrichment joined automatically.
- Exportable to CSV, XLSX, HTML or PDF.

Everything an operator needs, in one place.
From the first sync onward, the data stays current and correlated.
Changes on a single timeline
A unified change feed across every device, with field-level diffs and per-vendor attribution to the responsible admin.

Cross-vendor route search
One query returns matching routes across routers, switches, FTD, Palo and FortiGate by longest-prefix containment.

Policy analyzer
Evaluate firewall policy, NAT and ACI contracts along any path, hop by hop.
Inferred topology
Network and data center views built from CDP/LLDP neighbors, routing and the ACI fabric.
Always current
Scheduled syncs keep configuration and state fresh, with retention windows you control.
Analysis that learns your network.
SAMURAI Networks reviews every configuration change and weighs it against what is normal for your fleet. Routine churn is marked routine, so your team spends attention on the changes that actually matter.
- Every change triaged as routine or noteworthy, so alerts stay signal.
- Memories of your fleet the analysis curates and reuses to cut false positives. Every note is yours to edit or lock.
- Your choice of model, including local, so prompts never leave your network.
- OllamaLocal, on-prem
- OpenAIAPI or compatible
- ClaudeAnthropic
- Amazon BedrockManaged models
Bring your own model. Keep it on-prem with a local runtime and prompts never leave your network.
A different job than AlgoSec or Tufin.
AlgoSec and Tufin orchestrate firewall policy changes. SAMURAI is the visibility layer underneath: it reads configuration and state across every vendor, resolves endpoints to identities, and tracks what changed. The capabilities overlap; the focus does not.
| Capability | SAMURAIMulti-vendor visibility | AlgoSecPolicy-change orchestration | TufinPolicy-change orchestration |
|---|---|---|---|
| Multi-vendor firewall visibility | Included | Included | Included |
| Traffic-path tracing (policy, zone, NAT) | Included | Included | Included |
| Topology mapping | Included | Included | Included |
| Change-detection timeline | Included | Included | Included |
| Compliance scoring | Included | Included | Included |
| Endpoint & identity discovery (MAC to IP to identity) | Included | Not a focus | Not a focus |
| Virtualization (VMware vCenter) visibility | Included | Not a focus | Not a focus |
| Policy change automation & push | Not a focus | Included | Included |
| Single-container deployment | Included | Not a focus | Not a focus |
AlgoSec and Tufin remain the stronger choice when automated firewall change orchestration is the goal. This table reflects each product's primary focus; capabilities change over time. For where SAMURAI sits among firewall analyzers, including ManageEngine Firewall Analyzer, see the firewall analyzer overview.
Routes events to the tools you already run.
Change and compliance events reach the channels your team already watches, open tickets in your incident tracker, and stream to your SIEM. Each integration is one toggle and a test away.
- EmailRouted alerts over SMTP
- SlackEvents posted to channels
- Microsoft TeamsEvents posted to a team
- TelegramPush to a chat or group
- DiscordEvents posted to a server
- Syslog (SIEM)RFC 5424 events to your collector
- WebhookGeneric HTTP callback
- JiraTickets opened from changes
- TheHiveCases from change and compliance events
Run it with one command.
SAMURAI Networks ships as a single Docker image that bundles the backend, the web UI and an embedded MongoDB.
docker run -d -p 80:80 -p 443:443 beyrak44/samurai:latestTalk to us.
Questions about deployment, licensing, or a specific vendor? Send a note and we will get back to you.
Bring your network into focus.
Deploy SAMURAI Networks, add a device, and watch the first sync resolve your fleet.