ZIA firewall rule-order simulator
Paste a Firewall Filtering rule list and an optional flow: watch ascending-order, first-match evaluation execute, see which rule (or the deny-by-default Default rule) decides, and get pairwise shadow findings naming the rules that can never fire.
Security & WAFPaste rules (one per line: order | name | allow|block|block-icmp | criteria), optionally a flow: line - or press Example.