FORTIOS 7 6 X MCP SERVER TOOLS

240 tools from the FortiOS 7 6 X MCP Server MCP Server, categorised by risk level.

READ 183 tools
Read system_performance_status Get performance statistics (CPU usage per core, memory, network throughput). Read antivirus_profile_get antivirus_profile_get Read antivirus_profile_list List all antivirus profiles. Read antivirus_settings_get Get antivirus engine settings (scan cache, exclusions). Read application_group_list List all application groups. Read application_list_get application_list_get Read application_list_profiles List all Application Control profiles. Read automation_setting_get Get global automation settings. Read certificate_ca_list List trusted CA certificates. Read certificate_local_list List local (device) certificates. Read cmdb_get cmdb_get Read cmdb_list cmdb_list Read dlp_dictionary_list List all DLP data dictionaries. Read dlp_filepattern_list List all DLP file pattern tables. Read dlp_sensor_list List all DLP sensors. Read dnsfilter_domain_filter_list List DNS domain filter tables (custom domain block/allow). Read dnsfilter_profile_list List all DNS filter profiles. Read emailfilter_bwl_list List email filter block/allow lists. Read emailfilter_profile_list List all email filter profiles. Read file_filter_profile_list List all file filter profiles. Read firewall_address_get firewall_address_get Read firewall_address_list firewall_address_list Read firewall_addrgrp_get firewall_addrgrp_get Read firewall_addrgrp_list List all IPv4 firewall address groups. Read firewall_central_snat_list List all central SNAT (outgoing NAT) rules. Read firewall_ippool_list List all IP pool (source NAT) objects. Read firewall_policy_get firewall_policy_get Read firewall_policy_list firewall_policy_list Read firewall_policy6_list List all IPv6 firewall policies. Read firewall_service_get firewall_service_get Read firewall_service_grp_list List all firewall service groups. Read firewall_service_list List all custom firewall service objects. Read firewall_shaping_policy_list List all traffic shaping policies. Read firewall_ssl_ssh_profile_list List all SSL/SSH deep inspection profiles. Read firewall_vip_get firewall_vip_get Read firewall_vip_list List all Virtual IP (DNAT) objects. Read firewall_vipgrp_list List all VIP groups. Read icap_profile_list List all ICAP profiles. Read icap_server_list List all ICAP server configurations. Read ips_custom_list List all custom IPS signatures. Read ips_sensor_get ips_sensor_get Read ips_sensor_list List all IPS sensor profiles. Read log_app_ctrl log_app_ctrl Read log_disk_filter_get Get the disk log filter settings (which log types are enabled). Read log_disk_setting_get Get the disk logging settings (log level, max log size, etc.). Read log_dns log_dns Read log_event_system log_event_system Read log_event_user log_event_user Read log_event_vpn log_event_vpn Read log_fortianalyzer_setting_get Get FortiAnalyzer logging configuration (server, port, status). Read log_get log_get Read log_ips_attack log_ips_attack Read log_memory_setting_get Get the memory logging settings. Read log_query log_query Read log_syslogd_get Get the primary Syslog server configuration. Read log_traffic_forward log_traffic_forward Read log_traffic_local log_traffic_local Read log_virus log_virus Read log_webfilter log_webfilter Read monitor_endpoint_record_list monitor_endpoint_record_list Read monitor_endpoint_summary Get endpoint control (FortiClient) summary statistics. Read monitor_firewall_address_dynamic Get resolved IPs for all dynamic/FQDN firewall address objects. Read monitor_firewall_ip_list List active banned/exempt IPs in the firewall. Read monitor_firewall_policy_stats Get hit counts, bytes, and packet statistics per firewall policy. Read monitor_firewall_session_list monitor_firewall_session_list Read monitor_fortiview_top_applications monitor_fortiview_top_applications Read monitor_fortiview_top_destinations monitor_fortiview_top_destinations Read monitor_fortiview_top_sources monitor_fortiview_top_sources Read monitor_fortiview_top_threat_map Get FortiView threat map data (geo-blocking source countries). Read monitor_geoip_lookup monitor_geoip_lookup Read monitor_get monitor_get Read monitor_interface_dhcp_status monitor_interface_dhcp_status Read monitor_interface_stats monitor_interface_stats Read monitor_ips_anomaly Get IPS anomaly detection statistics. Read monitor_license_forticare_resellers Get FortiCare reseller and support contract information. Read monitor_license_status Get FortiGuard license and subscription status for all services. Read monitor_network_arp_list Get the ARP table (IP-to-MAC address mappings). Read monitor_network_lldp_neighbors Get LLDP neighbor information discovered on all interfaces. Read monitor_router_ipv4 Get the active IPv4 routing table (all routes in the FIB). Read monitor_router_ipv6 Get the active IPv6 routing table. Read monitor_router_lookup monitor_router_lookup Read monitor_router_lookup6 monitor_router_lookup6 Read monitor_router_statistics Get routing protocol statistics (BGP, OSPF, RIP adjacencies/neighbors). Read monitor_sdwan_health_check Get SD-WAN performance SLA health check results. Read monitor_sdwan_members Get SD-WAN member interface status and bandwidth usage. Read monitor_security_rating_summary Get the Security Rating summary score and findings. Read monitor_switch_controller_managed_switch Get status of all FortiSwitch managed switches. Read monitor_switch_controller_port_stats monitor_switch_controller_port_stats Read monitor_system_config_backup monitor_system_config_backup Read monitor_system_process_list List running FortiOS processes with CPU and memory usage. Read monitor_user_firewall monitor_user_firewall Read monitor_user_fortitoken_list List FortiToken hardware/software tokens and their status. Read monitor_utm_app_categories Get UTM application category statistics. Read monitor_vpn_certificate_valid Check validity status of all VPN-related certificates. Read monitor_vpn_ipsec Get status of all IPsec VPN tunnels (up/down, bytes transferred, SAs). Read monitor_vpn_ipsec_tunnel_down monitor_vpn_ipsec_tunnel_down Read monitor_vpn_ipsec_tunnel_up monitor_vpn_ipsec_tunnel_up Read monitor_vpn_ssl_list List active SSL VPN sessions. Read monitor_wifi_ap_status monitor_wifi_ap_status Read monitor_wifi_client_list monitor_wifi_client_list Read monitor_wifi_interfering_ap Get list of interfering (neighbor) Access Points detected on RF scan. Read monitor_wifi_managed_ap Get detailed status of all managed Access Points (online/offline, channel, clients). Read monitor_wifi_rogue_ap Get list of detected rogue (unauthorized) Access Points. Read monitor_wifi_spectrum_analysis Get RF spectrum analysis data from APs that support it. Read router_access_list_list List all router access lists (ACL for routing). Read router_bgp_get Get BGP routing configuration (ASN, peers, networks, redistribute). Read router_community_list_list List all BGP community lists. Read router_ospf_get Get OSPF routing configuration (areas, networks, neighbors, redistribute). Read router_ospf6_get Get OSPFv3 (IPv6) routing configuration. Read router_policy_list List all policy-based routing rules. Read router_prefix_list_list List all IPv4 prefix lists (used in route filtering). Read router_rip_get Get RIPv1/v2 routing configuration. Read router_route_map_list List all route-maps (used for route filtering and attribute modification). Read router_sdwan_get Get the SD-WAN (virtual-WAN) configuration. Read router_static_get router_static_get Read router_static_list List all IPv4 static routes. Read router_static6_list List all IPv6 static routes. Read ssh_filter_profile_list List all SSH filter profiles. Read system_admin_get system_admin_get Read system_admin_list List all administrator accounts. Read system_dhcp_server_get system_dhcp_server_get Read system_dhcp_server_list List all DHCP server instances. Read system_dns_get Get DNS server configuration (primary, secondary, search domains). Read system_firmware_list List available firmware versions for upgrade. Read system_fortiguard_status Get FortiGuard service registration and update status. Read system_global_get Get FortiOS global settings (hostname, admin timeout, language, etc.). Read system_ha_status Get High Availability (HA) cluster status. Read system_interface_get system_interface_get Read system_interface_list system_interface_list Read system_ntp_get Get NTP synchronization configuration. Read system_resource_usage Get real-time resource usage: CPU, memory, disk, sessions. Read system_snmp_community_list List SNMP v1/v2c communities. Read system_snmp_sysinfo_get Get SNMP system info (contact, location, description, trap thresholds). Read system_snmp_user_list List SNMPv3 users. Read system_status Get the FortiOS system status (firmware version, hostname, serial number, Read system_time_get Get the current system time and timezone. Read system_vdom_list List all configured VDOMs. Read user_group_get user_group_get Read user_group_list List all user groups. Read user_ldap_list List all LDAP authentication server configurations. Read user_local_get user_local_get Read user_local_list List all local user accounts. Read user_radius_get user_radius_get Read user_radius_list List all RADIUS authentication server configurations. Read user_saml_list List all SAML identity provider configurations. Read user_tacacs_list List all TACACS+ authentication server configurations. Read voip_profile_list List all VoIP (SIP/SCCP) inspection profiles. Read vpn_certificate_ca_list List all VPN CA certificates. Read vpn_certificate_local_list List all VPN local (device) certificates. Read vpn_certificate_ocsp_server_list List OCSP server configurations for certificate revocation checking. Read vpn_certificate_remote_list List all remote (peer) VPN certificates. Read vpn_ipsec_phase1_get vpn_ipsec_phase1_get Read vpn_ipsec_phase1_list List all IPsec VPN Phase 1 (IKE gateway) interfaces. Read vpn_ipsec_phase2_get vpn_ipsec_phase2_get Read vpn_ipsec_phase2_list List all IPsec VPN Phase 2 (SA / child SA) selectors. Read vpn_ssl_portal_get vpn_ssl_portal_get Read vpn_ssl_portal_list List all SSL VPN portals. Read vpn_ssl_settings_get Get SSL VPN global settings (port, certificates, idle timeout, etc.). Read vpn_ssl_web_host_check_software_list List SSL VPN host check software (endpoint compliance) rules. Read waf_profile_list List all WAF profiles. Read waf_signature_list List all WAF signature configurations. Read webfilter_content_list List all web content filter (keyword) tables. Read webfilter_override_list List all web filter category override rules. Read webfilter_profile_get webfilter_profile_get Read webfilter_profile_list List all web filter profiles. Read webfilter_urlfilter_list List all URL filter tables (custom URL block/allow lists). Read wifi_controller_setting_get Get wireless controller global settings. Read wifi_hotspot20_profile_list List all Hotspot 2.0 (Passpoint) profiles. Read wifi_qos_profile_list List all wireless QoS profiles. Read wifi_rf_analysis_get Get wireless RF analysis settings. Read wifi_vap_get wifi_vap_get Read wifi_vap_group_list List all VAP groups (SSID bundles). Read wifi_vap_list List all VAPs (Virtual APs / SSIDs). Read wifi_wtp_get wifi_wtp_get Read wifi_wtp_list List all registered WTPs (Access Points) with their configuration. Read wifi_wtp_profile_get wifi_wtp_profile_get Read wifi_wtp_profile_list List all WTP (Wireless Termination Point / AP) profiles. Read ztna_server_list List all ZTNA access proxy (application gateway) servers. Read ztna_tag_policy_list List all ZTNA EMS tag (posture check) policies. Read firewall_schedule_one_time_list List all one-time schedules. Read firewall_schedule_recurring_list List all recurring schedules. Read system_autoupdate_schedule_get Get the FortiGuard auto-update schedule. Read virtual_patch_profile_list List all Virtual Patch profiles (inline IPS pre-patching).
WRITE 35 tools
Write antivirus_profile_create antivirus_profile_create Write cmdb_create cmdb_create Write cmdb_update cmdb_update Write firewall_address_create firewall_address_create Write firewall_address_update firewall_address_update Write firewall_addrgrp_create firewall_addrgrp_create Write firewall_ippool_create firewall_ippool_create Write firewall_policy_create firewall_policy_create Write firewall_policy_move firewall_policy_move Write firewall_policy_update firewall_policy_update Write firewall_service_create firewall_service_create Write firewall_vip_create firewall_vip_create Write ips_sensor_create ips_sensor_create Write log_fortianalyzer_setting_update log_fortianalyzer_setting_update Write router_bgp_update router_bgp_update Write router_static_create router_static_create Write router_static_update router_static_update Write system_admin_create system_admin_create Write system_dhcp_server_create system_dhcp_server_create Write system_dns_update system_dns_update Write system_global_update system_global_update Write system_interface_create system_interface_create Write system_interface_update system_interface_update Write system_ntp_update system_ntp_update Write user_group_create user_group_create Write user_ldap_create user_ldap_create Write user_local_create user_local_create Write user_local_update user_local_update Write user_radius_create user_radius_create Write vpn_ipsec_phase1_create vpn_ipsec_phase1_create Write vpn_ipsec_phase1_update vpn_ipsec_phase1_update Write vpn_ipsec_phase2_create vpn_ipsec_phase2_create Write vpn_ssl_portal_create vpn_ssl_portal_create Write vpn_ssl_settings_update vpn_ssl_settings_update Write wifi_vap_create wifi_vap_create

Route FortiOS 7 6 X MCP Server through PolicyLayer and every one of its 240 tools is checked against your policy before it runs.

CHECK YOUR STACK →

See every tool, the dangerous ones, and the token cost across your stack.

How many tools does the FortiOS 7 6 X MCP Server MCP server have? +

The FortiOS 7 6 X MCP Server MCP server exposes 240 tools across 5 categories: Read, Write, Destructive, Execute, Other.

How do I enforce policies on FortiOS 7 6 X MCP Server tools? +

Route the FortiOS 7 6 X MCP Server server through the PolicyLayer gateway. Define allow, deny, or approval rules per tool in the dashboard; they are enforced on every call before it reaches the server.

What risk categories do FortiOS 7 6 X MCP Server tools fall into? +

FortiOS 7 6 X MCP Server tools are categorised as Read (183), Write (35), Destructive (17), Execute (3), Other (2). Each category has a recommended default policy.

Enforce policy on every FortiOS 7 6 X MCP Server tool call.

Start from FortiOS 7 6 X MCP Server, add the rest of your stack, and see everything your agents can call. Then put policy on all of it.

Free to start. No card required.

43,000+ MCP servers and 220,000+ tools scanned and risk-classified.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.