Firewall integrations

Firewall threat feeds for any firewall

Add Q-Feeds firewall threat feeds to virtually any firewall. Import curated blocklists of malicious IPs, domains and URLs and block bad traffic at the edge, before an analysis engine even has to act. Native support for the major vendors, open standards for the rest.

  • 2,500+Intelligence sources
  • 20 minUpdate interval
  • 5 minTo full integration
  • 100%Made in Europe
What it is

How firewall threat intelligence works

Q-Feeds brings curated cyber threat intelligence to virtually any firewall. We deliver continuously updated blocklists of malicious IP addresses, domains and URLs, which your firewall imports using its native mechanism: FortiGate External Connectors, Palo Alto External Dynamic Lists, OPNsense aliases, RouterOS address-lists, Sophos threat feeds or the open TAXII/STIX standard.

Once imported, the intelligence is enforced in your firewall, web and DNS policies, blocking known-bad traffic at the network edge before an analysis engine even has to act. Because the feeds refresh automatically, protection stays current without manual list management.

Q-Feeds combines commercial, OSINT and governmental sources into one curated set, so a single integration hardens your firewall with independent, multi-source coverage.

Benefits

Why add Q-Feeds to your firewall

  • Enhanced threat detection

    Cross-reference threat information to reduce false positives and identify genuine threats more effectively.

  • Updated every 20 minutes

    Your firewall stays ahead of the latest threats with intelligence refreshed every 20 minutes.

  • Increased resilience

    Rely on multiple sources for continuous protection and reduce the risk of blind spots in your security.

  • Improved incident response

    Faster, more precise response right on the edge of your network, saving time on internal investigations.

Setup

Installation manuals

Step-by-step setup guides for Fortinet, Palo Alto, Sophos, OPNsense, pfSense and more are in our knowledge base. PDF manuals are available from each guide.

View setup guides
How it works

One threat intelligence set to rule them all

Cybersecurity companies are essentially data-processing companies: to block something, first you need to know what to block. By combining knowledge from many different vendors, you get the threat intelligence set to rule them all.

FAQ

Frequently asked questions about firewall threat intelligence

Which firewalls does Q-Feeds support?

Q-Feeds offers native integrations for Fortinet FortiGate, Palo Alto Networks, Sophos XGS and OPNsense, and works with virtually any other firewall through plain blocklists or the open TAXII/STIX standard.

How does firewall threat intelligence work?

Your firewall imports curated lists of malicious IPs, domains and URLs from Q-Feeds and enforces them in firewall, web and DNS policies, blocking known-bad traffic at the network edge automatically.

Which indicators can I block?

You can block malicious IP addresses, domains and URLs, and choose focused categories such as phishing, botnets, malware and dark web threats.

How often is the intelligence updated?

Premium feeds refresh every 20 minutes, so your firewall stays ahead of fast-moving campaigns without any manual updates.

Is there a free version?

Yes. The free Community edition lets you test firewall threat intelligence before upgrading to Plus or Premium for faster, premium feeds.

Evaluate our intelligence today!

Simplify your security operations, start your free Q-Feeds trial and experience the difference.

Activate free access