Before you add a rule
Use the free sample to test the format first. A paid industry selection changes the coverage, not the steps for connecting a feed. The builder supplies your own URL and shows the setup instructions for the tool you select.
Create a list. Select the industry and sources included in your plan.
Choose your tool. The builder selects the output format and shows any size or grouping advice.
Connect and check. Add the generated URL, confirm the tool can fetch entries, then review exceptions before blocking.
These are starting points. Use the preset in your dashboard for the full setup steps and your actual feed URL.
FortiGate
Choose the FortiGate preset and plain output. Add the URL as an IP address external feed, then use that feed in the firewall policy for the service you want to protect. Check the list size in the builder before adding a large feed.
Fortinet setup reference →
Palo Alto Networks
Choose the Palo Alto preset and plain output. Create an IP address external dynamic list from your URL, then reference that list in the security rule.
Palo Alto setup reference →
Sophos Firewall
Choose the Sophos preset and plain output. Use an IPv4 third party threat feed and leave network grouping off. Sophos does not accept network addresses in this feed type.
Sophos setup reference →
OPNsense
Choose the pfSense / OPNsense preset and plain output. Create a URL Table (IPs) alias with your feed URL, then use the alias in the firewall rule.
OPNsense setup reference →
pfSense
Choose the pfSense / OPNsense preset and plain output. Add the URL as an IP source in pfBlockerNG or a URL Table alias, then check the rule action and interfaces.
pfSense setup reference →
Using a different tool?
The builder has more firewall and security tool presets, plus eleven output formats. Select your target there to see the format and setup instructions that match it.
View all setup presets