Agent skill

Pyats F5 Platform

by automateyournetwork in automateyournetwork/netclaw

F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management.

Apache-2.0Auto-check passedDevOps & Cloud

Install Pyats F5 Platform

skills CLI
$ npx skills add automateyournetwork/netclaw --skill pyats-f5-platform -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install automateyournetwork/netclaw pyats-f5-platform --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/automateyournetwork/netclaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/workspace/skills/pyats-f5-platform .claude/skills/pyats-f5-platform && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
pyats-f5-platform
GitHub stars
676
Token cost
~6.4k tokens
SKILL.md length
1,608 words
Files
1
Skills in repo
120
Repo updated
First seen
Licence
Apache-2.0

At a glance

F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management.

  • Works in 6 steps: BIG-IP Platform Health Check → HA / Cluster Verification → Network Infrastructure Audit → …
  • Checking BIG-IP system health
  • SKILL.md covers Testbed Requirements, How to Call, System Endpoints… and Network Endpoints…, plus 7 more sections
  • Calls python3; needs F5_PASSWORD

What it does

Pyats F5 Platform is an agent skill from automateyournetwork/netclaw. F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management. Use when checking BIG-IP system health, verifying HA sync status, auditing certificates, or inspecting F5 platform resources.

Its SKILL.md is about 6.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud, covering Monitoring and alerting, Realtime and WebSockets and File organization. The repository describes itself as: An AI agent that claws through your network. The licence is Apache-2.0.

When your agent uses it

  • Checking BIG-IP system health
  • Verifying HA sync status
  • Auditing certificates
  • Inspecting F5 platform resources

Example prompts

  • “/pyats-f5-platform”

Requirements

  • Python 3

Workflow steps

6 steps, taken from the step headings in SKILL.md.

  1. BIG-IP Platform Health Check
  2. HA / Cluster Verification
  3. Network Infrastructure Audit
  4. Security & Certificate Audit
  5. Analytics Deep Dive
  6. Live Update Status

What it can do on your machine

Read from SKILL.md and the folder at commit aa90e7d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • F5_PASSWORD

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Pyats F5 Platform loads about 6.4k tokens when it runs. Until then it costs about 75 tokens; SKILL.md has 1,608 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~75
When it runs · the whole SKILL.md, loaded when a task matches
~6.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from automateyournetwork/netclaw at commit aa90e7d, republished under its Apache-2.0 licence (© automateyournetwork). 1,608 words, ~6,409 tokens.

Download SKILL.mdSave it as .claude/skills/pyats-f5-platform/SKILL.md (or your agent's skills folder).
name
pyats-f5-platform
description
F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management. Use when checking BIG-IP system health, verifying HA sync status, auditing certificates, or inspecting F5 platform resources.
license
Apache-2.0
user-invocable
true

F5 BIG-IP Platform Operations via pyATS

Testbed Requirements

F5 BIG-IP devices in the pyATS testbed:

yaml
devices:
  bigip-01:
    os: bigip
    type: load-balancer
    connections:
      rest:
        class: rest
        ip: 10.0.0.20
        port: 443
        protocol: https
    credentials:
      default:
        username: "%ENV{F5_USERNAME}"
        password: "%ENV{F5_PASSWORD}"

How to Call

Use pyats_run_show_command with iControl REST API paths:

bash
PYATS_TESTBED_PATH=$PYATS_TESTBED_PATH python3 $MCP_CALL "${PYATS_PYTHON:-python3} -u $PYATS_MCP_SCRIPT" pyats_run_show_command '{"device_name":"bigip-01","command":"show sys version"}'

System Endpoints (/mgmt/tm/sys/*)

Platform & Version
EndpointDescription
/mgmt/tm/sys/versionBIG-IP software version, build, edition
/mgmt/tm/sys/software/imageSoftware images available on disk
/mgmt/tm/sys/software/volumeBoot volumes and active/standby slots
/mgmt/tm/sys/software/hotfixInstalled hotfixes
/mgmt/tm/sys/software/updateSoftware update status
/mgmt/tm/sys/hardwareHardware platform: chassis, CPU model, memory, serial number
/mgmt/tm/sys/hostinfoHost information: hostname, memory, CPU count, active/standby
CPU, Memory & Disk
EndpointDescription
/mgmt/tm/sys/cpuCPU utilization per core — current, 5s, 1m, 5m averages
/mgmt/tm/sys/memoryMemory usage: TMM, other, host subsystems
/mgmt/tm/sys/disk/logical-diskLogical disk partitions: size, free space, mount point
/mgmt/tm/sys/disk/directoryDisk directory usage
/mgmt/tm/sys/disk/application-volumeApplication volumes
/mgmt/tm/sys/performance/all-statsConsolidated performance: throughput, connections, CPU, memory
/mgmt/tm/sys/performance/connectionActive/new connection stats and trends
/mgmt/tm/sys/performance/throughputClient/server throughput stats
/mgmt/tm/sys/performance/systemSystem-wide performance aggregation
/mgmt/tm/sys/performance/ramcacheRAM cache hit/miss/eviction stats
System Configuration
EndpointDescription
/mgmt/tm/sys/global-settingsHostname, GUI setup, console inactivity, LCD display settings
/mgmt/tm/sys/dbSystem database variables (bigdb) — thousands of internal settings
/mgmt/tm/sys/provisionModule provisioning: LTM, GTM, ASM, APM, AFM allocation levels (nominal/minimum/dedicated)
/mgmt/tm/sys/httpdHTTPD settings: SSL protocols, ciphers, access restrictions
/mgmt/tm/sys/sshdSSHD settings: allowed ciphers, MACs, login grace time
/mgmt/tm/sys/daemon-haDaemon HA settings
/mgmt/tm/sys/daemon-log-settings/tmmTMM daemon log settings
/mgmt/tm/sys/daemon-log-settings/mcpdMCPD daemon log settings
/mgmt/tm/sys/daemon-log-settings/clusterdCluster daemon log settings
/mgmt/tm/sys/daemon-log-settings/csyncdConfig sync daemon log settings
/mgmt/tm/sys/daemon-log-settings/icrdICR daemon log settings
/mgmt/tm/sys/daemon-log-settings/lindLIND daemon log settings
/mgmt/tm/sys/outbound-smtpOutbound SMTP configuration
Time Services
EndpointDescription
/mgmt/tm/sys/ntpNTP servers and timezone — verify NTP sync on every health check
/mgmt/tm/sys/dnsDNS resolver configuration: nameservers, search domains
Logging & Syslog
EndpointDescription
/mgmt/tm/sys/syslogSyslog configuration: remote servers, facility, severity filters
/mgmt/tm/sys/log-config/destination/remote-syslogRemote syslog destinations
/mgmt/tm/sys/log-config/destination/remote-high-speed-logHigh-speed logging destinations
/mgmt/tm/sys/log-config/destination/local-syslogLocal syslog destinations
/mgmt/tm/sys/log-config/destination/local-databaseLocal database log destinations
/mgmt/tm/sys/log-config/destination/management-portManagement port log destinations
/mgmt/tm/sys/log-config/destination/ipfixIPFIX log destinations
/mgmt/tm/sys/log-config/destination/splunkSplunk log destinations
/mgmt/tm/sys/log-config/destination/arcsightArcSight log destinations
/mgmt/tm/sys/log-config/filterLog filters
/mgmt/tm/sys/log-config/publisherLog publishers (aggregate multiple destinations)
/mgmt/tm/sys/log-rotateLog rotation settings
SNMP
EndpointDescription
/mgmt/tm/sys/snmpSNMP configuration: communities, trap hosts, sysContact, sysLocation
/mgmt/tm/sys/snmp/communitiesSNMP community strings
/mgmt/tm/sys/snmp/trapsSNMP trap configurations
/mgmt/tm/sys/snmp/usersSNMPv3 users
Crypto & Certificates
EndpointDescription
/mgmt/tm/sys/crypto/certSSL certificates installed on the system
/mgmt/tm/sys/crypto/keySSL private keys
/mgmt/tm/sys/crypto/crlCertificate revocation lists
/mgmt/tm/sys/crypto/csrCertificate signing requests
/mgmt/tm/sys/crypto/cert-order-managerCertificate order management
/mgmt/tm/sys/crypto/cert-validator/ocspOCSP certificate validator
/mgmt/tm/sys/crypto/fipsFIPS 140-2 status and key management
/mgmt/tm/sys/crypto/master-keyMaster key information
/mgmt/tm/sys/crypto/serverCrypto server settings
/mgmt/tm/sys/crypto/checkipCrypto check-IP settings
Licensing
EndpointDescription
/mgmt/tm/sys/licenseCurrent license: registration key, modules, expiration, feature flags
/mgmt/tm/shared/licensing/registrationLicense registration details
iCall & iApps
EndpointDescription
/mgmt/tm/sys/icall/handler/periodiciCall periodic handlers (scheduled tasks)
/mgmt/tm/sys/icall/handler/triggerediCall triggered handlers
/mgmt/tm/sys/icall/handler/perpetualiCall perpetual handlers
/mgmt/tm/sys/icall/istats-triggeriCall iStats triggers
/mgmt/tm/sys/icall/scriptiCall scripts
/mgmt/tm/sys/application/apl-scriptAPL scripts
/mgmt/tm/sys/application/custom-statCustom statistics
/mgmt/tm/sys/application/serviceApplication services (iApps)
/mgmt/tm/sys/application/templateApplication templates
Monitoring & Health
EndpointDescription
/mgmt/tm/sys/sflow/receiversFlow receiver configuration
/mgmt/tm/sys/sflow/data-source/vlansFlow VLAN data sources
/mgmt/tm/sys/sflow/data-source/interfacesFlow interface data sources
/mgmt/tm/sys/sflow/data-source/httpsFlow HTTP data sources
/mgmt/tm/sys/sflow/data-source/systemsFlow system data sources
/mgmt/tm/sys/ipfix/destinationIPFIX collector destinations
/mgmt/tm/sys/ipfix/elementIPFIX information elements
/mgmt/tm/sys/connectionActive system connections
/mgmt/tm/sys/alert/snmpSNMP alert settings
/mgmt/tm/sys/alert/lcdLCD alert settings
Management Access
EndpointDescription
/mgmt/tm/sys/management-ipManagement IP address(es)
/mgmt/tm/sys/management-routeManagement routing table
/mgmt/tm/sys/management-ovsdbManagement OVSDB settings
/mgmt/tm/sys/management-dhcp/sys-dhcp-configManagement DHCP configuration
Miscellaneous System
EndpointDescription
/mgmt/tm/sys/clusterCluster membership and status
/mgmt/tm/sys/dynad/keyDynamic advertiser keys
/mgmt/tm/sys/ecm/cloud-providerECM cloud provider settings
/mgmt/tm/sys/feature-moduleFeature module status
/mgmt/tm/sys/folderConfiguration folders (partitions)
/mgmt/tm/sys/fpga/firmware-configFPGA firmware configuration
/mgmt/tm/sys/gepdGEPD settings
/mgmt/tm/sys/pfman/consumerPF manager consumer settings
/mgmt/tm/sys/pfman/devicePF manager device settings
/mgmt/tm/sys/state-mirroringState mirroring settings
/mgmt/tm/sys/turboflex/profile-configTurboFlex profile configuration
/mgmt/tm/sys/url-db/download-scheduleURL database download schedule
/mgmt/tm/sys/url-db/url-categoryURL categories
/mgmt/tm/sys/datastorData store settings
/mgmt/tm/sys/diags/ihealthiHealth diagnostic settings

Network Endpoints (/mgmt/tm/net/*)

Interfaces & VLANs
EndpointDescription
/mgmt/tm/net/interfacePhysical interfaces: speed, duplex, media type, flow control, status
/mgmt/tm/net/vlanVLANs: tag, interfaces, failsafe settings
/mgmt/tm/net/vlan-allowed-listVLAN allowed list
/mgmt/tm/net/vlan-groupVLAN groups
/mgmt/tm/net/selfSelf IPs: address, VLAN, traffic-group, allow-service list
/mgmt/tm/net/self-allowSelf IP allowed ports/protocols
/mgmt/tm/net/trunkTrunk groups (802.3ad LACP) — member interfaces, distribution hash
Routing
EndpointDescription
/mgmt/tm/net/routeStatic routes
/mgmt/tm/net/route-domainRoute domains (VRF equivalent on BIG-IP)
/mgmt/tm/net/routing/bgpBGP configuration
/mgmt/tm/net/routing/bfdBFD configuration
/mgmt/tm/net/routing/prefix-listPrefix lists
/mgmt/tm/net/routing/route-mapRoute maps
/mgmt/tm/net/routing/access-listAccess lists for routing
Tunnels
EndpointDescription
/mgmt/tm/net/tunnels/tunnelTunnel interfaces (GRE, VXLAN, IPsec, etc.)
/mgmt/tm/net/tunnels/greGRE tunnel profiles
/mgmt/tm/net/tunnels/vxlanVXLAN tunnel profiles
/mgmt/tm/net/tunnels/ipsecIPsec tunnel profiles
/mgmt/tm/net/tunnels/geneveGeneve tunnel profiles
/mgmt/tm/net/tunnels/ipipIPIP tunnel profiles
/mgmt/tm/net/tunnels/mapMAP tunnel profiles
/mgmt/tm/net/tunnels/wccpWCCP tunnel profiles
/mgmt/tm/net/tunnels/pppPPP tunnel profiles
/mgmt/tm/net/tunnels/tcp-forwardTCP forward tunnel profiles
/mgmt/tm/net/tunnels/v6rd6rd tunnel profiles
/mgmt/tm/net/tunnels/fecFEC (Forward Error Correction) tunnel profiles
/mgmt/tm/net/tunnels/etheripEtherIP tunnel profiles
/mgmt/tm/net/tunnels/lw4o6Lightweight 4over6 tunnel profiles
ARP & NDP
EndpointDescription
/mgmt/tm/net/arpARP table entries
/mgmt/tm/net/ndpIPv6 Neighbor Discovery Protocol entries
IPsec
EndpointDescription
/mgmt/tm/net/ipsec/ike-daemonIKE daemon settings
/mgmt/tm/net/ipsec/ike-peerIKE peers
/mgmt/tm/net/ipsec/ipsec-saIPsec Security Associations
/mgmt/tm/net/ipsec/ipsec-policyIPsec policies
/mgmt/tm/net/ipsec/manual-security-associationManual SAs
/mgmt/tm/net/ipsec/traffic-selectorIPsec traffic selectors
Other Networking
EndpointDescription
/mgmt/tm/net/stpSpanning Tree Protocol settings
/mgmt/tm/net/stp-globalsSTP global settings
/mgmt/tm/net/dag-globalsDAG (Disaggregated) global settings
/mgmt/tm/net/cos/global-settingsCoS global settings
/mgmt/tm/net/cos/traffic-priorityCoS traffic priority
/mgmt/tm/net/dns-resolverDNS resolver settings
/mgmt/tm/net/lldp-globalsLLDP global settings
/mgmt/tm/net/multicast-globalsMulticast global settings
/mgmt/tm/net/packet-filterPacket filter rules
/mgmt/tm/net/packet-filter-trustedTrusted packet filter rules
/mgmt/tm/net/rate-shaping/classRate shaping classes
/mgmt/tm/net/rate-shaping/drop-policyRate shaping drop policies
/mgmt/tm/net/rate-shaping/queueRate shaping queues
/mgmt/tm/net/rate-shaping/shaping-policyShaping policies
/mgmt/tm/net/timer-policyTimer policies
/mgmt/tm/net/fdb/tunnelFDB tunnel entries
/mgmt/tm/net/fdb/vlanFDB VLAN entries
/mgmt/tm/net/wccpWCCP settings

Cluster Management (/mgmt/tm/cm/*)

EndpointDescription
/mgmt/tm/cm/deviceDevices in the trust domain — hostname, management IP, version, HA status
/mgmt/tm/cm/device-groupDevice groups — sync-failover, sync-only, type, members
/mgmt/tm/cm/sync-statusConfig sync status — check this first on any HA pair
/mgmt/tm/cm/failover-statusFailover state — active/standby/forced-offline
/mgmt/tm/cm/traffic-groupTraffic groups — floating IPs, failover order, HA scoring
/mgmt/tm/cm/trust-domainTrust domain membership
/mgmt/tm/cm/certCM certificates
/mgmt/tm/cm/keyCM keys

Authentication & Authorization (/mgmt/tm/auth/*)

EndpointDescription
/mgmt/tm/auth/sourceAuthentication source (local, remote)
/mgmt/tm/auth/userLocal user accounts
/mgmt/tm/auth/remote-userRemote user default settings
/mgmt/tm/auth/remote-roleRemote role mapping
/mgmt/tm/auth/ldapLDAP authentication configuration
/mgmt/tm/auth/radiusRADIUS authentication configuration
/mgmt/tm/auth/radius-serverRADIUS server list
/mgmt/tm/auth/tacacsTACACS+ authentication configuration
/mgmt/tm/auth/password-policyPassword policy: complexity, expiration, lockout
/mgmt/tm/auth/partitionAdministrative partitions
/mgmt/tm/auth/user-roleUser role definitions

Show full SKILL.md (664 more words)Show less

Analytics (/mgmt/tm/analytics/*)

EndpointDescription
/mgmt/tm/analytics/cpu/reportCPU analytics reports
/mgmt/tm/analytics/memory/reportMemory analytics reports
/mgmt/tm/analytics/disk/reportDisk analytics reports
/mgmt/tm/analytics/http/reportHTTP analytics: requests, response time, throughput, status codes
/mgmt/tm/analytics/tcp/reportTCP analytics: connections, retransmissions, round-trip time
/mgmt/tm/analytics/dns/reportDNS analytics: query types, response codes, latency
/mgmt/tm/analytics/dos-l3/reportL3 DoS analytics
/mgmt/tm/analytics/dos/reportDoS analytics: attack vectors, detection, mitigation events
/mgmt/tm/analytics/dos-vis-common/reportDoS visualization common reports
/mgmt/tm/analytics/asm/reportASM (WAF) analytics: violations, attack types, blocked requests
/mgmt/tm/analytics/bot-defense/reportBot defense analytics
/mgmt/tm/analytics/ssl-orchestrator/reportSSL Orchestrator analytics
/mgmt/tm/analytics/swg/reportSecure Web Gateway analytics
/mgmt/tm/analytics/global-settingsAnalytics global settings
/mgmt/tm/analytics/application-security/reportApplication security reports
/mgmt/tm/analytics/network-firewall/reportNetwork firewall analytics
/mgmt/tm/analytics/protocol-inspection/reportProtocol inspection analytics

Security (/mgmt/tm/security/*)

EndpointDescription
/mgmt/tm/security/firewall/management-ip-rulesManagement IP access rules
/mgmt/tm/security/firewall/policyAFM firewall policies
/mgmt/tm/security/firewall/address-listFirewall address lists
/mgmt/tm/security/firewall/port-listFirewall port lists
/mgmt/tm/security/firewall/rule-listFirewall rule lists
/mgmt/tm/security/firewall/global-rulesGlobal firewall rules

Access Policy Manager (/mgmt/tm/access/*)

EndpointDescription
/mgmt/tm/access/acl/statsAPM ACL statistics
/mgmt/tm/access/profile/statsAPM profile statistics
/mgmt/tm/access/session-kill-allAPM session kill control (use with extreme caution)
/mgmt/tm/access/usecase-packAPM usecase packs (Guided Configuration)

Cloud Endpoints (/mgmt/tm/cloud/*)

EndpointDescription
/mgmt/tm/cloud/device-groupCloud device groups
/mgmt/tm/cloud/ltm/virtual-serverCloud LTM virtual servers
/mgmt/tm/cloud/ltm/poolCloud LTM pools
/mgmt/tm/cloud/ltm/nodeCloud LTM nodes
/mgmt/tm/cloud/ltm/monitorCloud LTM monitors
/mgmt/tm/cloud/net/self-ipCloud self IPs
/mgmt/tm/cloud/net/vlanCloud VLANs
/mgmt/tm/cloud/net/routeCloud routes
/mgmt/tm/cloud/iapp/serviceCloud iApp services
/mgmt/tm/cloud/iapp/templateCloud iApp templates

Shared Endpoints (/mgmt/tm/shared/*)

EndpointDescription
/mgmt/tm/shared/licensing/registrationLicense registration details
/mgmt/tm/shared/failover-stateShared failover state

Live Update (/mgmt/tm/live-update/*)

EndpointDescription
/mgmt/tm/live-update/asm-attack-signatures/installationsASM attack signature updates
/mgmt/tm/live-update/bot-signatures/installationsBot signature updates
/mgmt/tm/live-update/browser-challenges/installationsBrowser challenge updates
/mgmt/tm/live-update/server-technologies/installationsServer technology detection updates
/mgmt/tm/live-update/threat-campaigns/installationsThreat campaign updates

ADC Certificate Management (/mgmt/tm/adc/*)

EndpointDescription
/mgmt/tm/adc/field-value/cert/subjectCertificate subject field values
/mgmt/tm/adc/field-value/cert/issuerCertificate issuer field values
/mgmt/tm/adc/field-value/cert/key-typeCertificate key type values
/mgmt/tm/adc/field-value/cert/serialCertificate serial numbers
/mgmt/tm/adc/field-value/key/key-typeKey type values
/mgmt/tm/adc/field-value/key/key-sizeKey size values
/mgmt/tm/adc/field-value/key/security-typeKey security type values
/mgmt/tm/adc/field-value/crl/issuerCRL issuer values
/mgmt/tm/adc/field-value/csr/subjectCSR subject values
/mgmt/tm/adc/field-value/csr/key-typeCSR key type values

File Management (/mgmt/tm/file/*)

EndpointDescription
/mgmt/tm/file/apm/aaa/ldap/ssoAPM LDAP SSO files
/mgmt/tm/file/ssl-certSSL certificate files
/mgmt/tm/file/ssl-keySSL key files
/mgmt/tm/file/ssl-crlSSL CRL files
/mgmt/tm/file/ssl-csrSSL CSR files
/mgmt/tm/file/data-groupExternal data group files
/mgmt/tm/file/external-monitorExternal monitor script files
/mgmt/tm/file/ifileiFile data files
/mgmt/tm/file/dashboard-viewsetDashboard viewset files

CLI Settings (/mgmt/tm/cli/*)

EndpointDescription
/mgmt/tm/cli/aliasCLI aliases
/mgmt/tm/cli/global-settingsCLI global settings: idle timeout, pager, audit log
/mgmt/tm/cli/historyCLI command history
/mgmt/tm/cli/preferenceCLI user preferences
/mgmt/tm/cli/scriptCLI scripts (tmsh scripts)

WOM / iSession (/mgmt/tm/wom/*)

EndpointDescription
/mgmt/tm/wom/local-s2s-application-entryWOM local S2S application entries

Workflows

1. BIG-IP Platform Health Check
/mgmt/tm/sys/version → software version, build
→ /mgmt/tm/sys/hardware → platform model, serial, memory
→ /mgmt/tm/sys/cpu → CPU utilization per core
→ /mgmt/tm/sys/memory → TMM and host memory usage
→ /mgmt/tm/sys/disk/logical-disk → disk space remaining
→ /mgmt/tm/sys/performance/all-stats → throughput, connections
→ /mgmt/tm/sys/ntp → NTP sync status
→ /mgmt/tm/sys/provision → module allocation (LTM, GTM, ASM, APM)
→ /mgmt/tm/sys/license → license expiration, feature flags
→ Flag: CPU >80%, memory >85%, disk >90%, NTP out of sync, license expiring
→ GAIT
2. HA / Cluster Verification
/mgmt/tm/cm/sync-status → config sync state (In Sync / Changes Pending / Disconnected)
→ /mgmt/tm/cm/failover-status → active/standby/forced-offline
→ /mgmt/tm/cm/device → device trust domain members, versions
→ /mgmt/tm/cm/device-group → sync-failover groups, members, type
→ /mgmt/tm/cm/traffic-group → floating IPs, failover order
→ /mgmt/tm/net/self → self IPs with traffic-group assignments
→ Flag: sync status not "In Sync", mismatched versions, traffic-group imbalance
→ GAIT
3. Network Infrastructure Audit
/mgmt/tm/net/interface → physical interfaces, speed, duplex, status
→ /mgmt/tm/net/vlan → VLANs, tagged interfaces, failsafe
→ /mgmt/tm/net/self → self IPs, VLAN bindings, allow-service
→ /mgmt/tm/net/trunk → LACP trunks, member status, hash
→ /mgmt/tm/net/route → static routes
→ /mgmt/tm/net/route-domain → route domains (VRFs)
→ /mgmt/tm/net/arp → ARP entries (cross-reference with NetBox)
→ /mgmt/tm/net/tunnels/tunnel → active tunnels (GRE, VXLAN, IPsec)
→ Flag: interfaces down, trunk members missing, orphan self IPs
→ GAIT
4. Security & Certificate Audit
/mgmt/tm/sys/crypto/cert → all installed certificates
→ /mgmt/tm/sys/crypto/key → private keys (verify matching)
→ /mgmt/tm/sys/crypto/crl → CRLs (check freshness)
→ /mgmt/tm/auth/source → authentication source (local/remote)
→ /mgmt/tm/auth/password-policy → password complexity and lockout
→ /mgmt/tm/sys/httpd → HTTPS cipher/protocol settings
→ /mgmt/tm/sys/sshd → SSH cipher/MAC settings
→ /mgmt/tm/security/firewall/management-ip-rules → management access rules
→ /mgmt/tm/sys/snmp/communities → SNMP community strings
→ Flag: expiring certs (<30d), weak ciphers, default SNMP communities, no password policy
→ Cross-reference BIG-IP version with NVD CVE
→ GAIT
5. Analytics Deep Dive
/mgmt/tm/analytics/http/report → HTTP request rates, response times, errors
→ /mgmt/tm/analytics/tcp/report → TCP connections, retransmissions, RTT
→ /mgmt/tm/analytics/dns/report → DNS query patterns, response codes
→ /mgmt/tm/analytics/dos/report → DoS detection/mitigation events
→ /mgmt/tm/analytics/asm/report → WAF violations, attack types
→ /mgmt/tm/analytics/cpu/report → CPU utilization trends
→ /mgmt/tm/analytics/memory/report → memory trends
→ Flag: high retransmission rate, rising DoS events, WAF violation spike
→ GAIT
6. Live Update Status
/mgmt/tm/live-update/asm-attack-signatures/installations → ASM sig version, last update
→ /mgmt/tm/live-update/bot-signatures/installations → bot sig freshness
→ /mgmt/tm/live-update/threat-campaigns/installations → threat campaign updates
→ /mgmt/tm/live-update/browser-challenges/installations → browser challenge updates
→ /mgmt/tm/live-update/server-technologies/installations → server tech detection
→ Flag: signatures >7 days old, threat campaigns stale
→ GAIT

Integration with Other Skills

SkillIntegration
pyats-f5-ltmLTM/GTM traffic management objects complement platform view
f5-health-checkF5 MCP for operational monitoring; pyATS REST for full platform inventory
f5-config-mgmtF5 MCP for safe config changes; pyATS REST for pre/post platform audit
f5-troubleshootF5 MCP for troubleshooting; pyATS REST for deep platform inspection
nvd-cveScan BIG-IP software version against NVD vulnerability database
netbox-reconcileCross-reference BIG-IP self IPs, interfaces, VLANs with NetBox
servicenow-change-workflowGate all BIG-IP platform changes behind ServiceNow CRs
gait-session-trackingEvery REST query logged in GAIT

Guardrails

  • All queries are read-only — GET requests to iControl REST API only
  • No configuration changes — never POST/PUT/PATCH/DELETE via this skill
  • Monitor sync-status first — always check /mgmt/tm/cm/sync-status before any HA pair operations
  • Check license expiration — flag licenses expiring within 30 days
  • Verify NTP — out-of-sync NTP causes cert validation failures and log correlation issues
  • Gate changes behind ServiceNow — any platform changes go through f5-config-mgmt with CR
  • Record in GAIT — every API query must be logged

Failure Behavior

  • If a tool call fails with an authentication or connection error, check that PYATS_MCP_SCRIPT, PYATS_TESTBED_PATH are set and valid before assuming a data or device problem.
  • On a tool error (timeout, unreachable host, malformed response), report the failure and its error message directly to the user rather than fabricating or guessing at results.
  • For a confirmed read-only call, check connectivity and retry once if appropriate. For any call that changes state or sends a message, a timeout does not prove the action failed: inspect current state or delivery status before retrying, preserve the required approval/change gates, and do not repeat an action whose outcome is unknown.

© automateyournetwork, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in workspace/skills/pyats-f5-platform of automateyournetwork/netclaw.

Open the folder on GitHubat commit aa90e7d

Compare with similar skills

Pyats F5 Platform next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Pyats F5 Platform compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Pyats F5 Platform this skillautomateyournetwork/netclaw676—~6.4kAutomated safety check: PassApache-2.0
Sentry Miniapp SDKlizhiyao/sentry-miniapp687—~2.1kAutomated safety check: PassMIT
Real-Time Stock Quote SubscriberYourdaylight/stock_datasource189—~559Automated safety check: PassMIT
Openai Docsaafqaq/codex-lb-enhanced1032 repos~861Automated safety check: PassApache-2.0
Loki Logsletsrevel/revel-backend110—~918Automated safety check: NotesMIT
Proto Backend Moduleaide-family/moon253—~4.1kAutomated safety check: PassNone

Similar skills

  • Sentry Miniapp SDK

    lizhiyao/sentry-miniapp

    Set up or troubleshoot Sentry error monitoring, tracing, offline cache and source maps in native mini programs, Taro or uni-app.

    687 GitHub stars~2.1k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Real-Time Stock Quote Subscriber

    Yourdaylight/stock_datasource

    Streams live A-share, Hong Kong and ETF quotes from a receiver node over a local WebSocket server, with built-in price and volume alert rules.

    189 GitHub stars~559 tokensUpdated 1 mo ago
    Business, Finance & HRAuto-check passed
  • Openai Docs

    aafqaq/codex-lb-enhanced

    A skill your agent uses when the user asks how to build with OpenAI products or APIs and needs up-to-date official documentation with citations (for example: Codex, Responses API, Chat Completions…

    103 GitHub starsUsed in 2 repos~861 tokens
    DevOps & CloudAuto-check passed
  • Loki Logs

    letsrevel/revel-backend

    A skill your agent uses when investigating production behaviour from logs — a 500/error in prod, a failing or stuck Celery task, tracing one request/traceid/user across services, or confirming a…

    110 GitHub stars~918 tokensUpdated 4 days ago
    DevOps & CloudAuto-check: notes
  • Proto Backend Module

    aide-family/moon

    Implements backend modules from proto definitions for goddess, marksman, and rabbit apps.

    253 GitHub stars~4.1k tokensUpdated 3 mo ago
    DevOps & CloudAuto-check passed
  • Acarshub Socket Namespace

    sdr-enthusiasts/docker-acarshub

    Use ONLY when working in the docker-acarshub repository AND touching socket.io code -- emit / on / connect calls on either the React frontend or the Fastify backend.

    117 GitHub stars~710 tokensUpdated 3 days ago
    DevOps & CloudAuto-check passed

More from automateyournetwork/netclaw

All 120 skills in this repo
  • EVE-NG Lab Topology Design

    automateyournetwork/netclaw

    Entry point for designing EVE-NG network labs: classifies the request, gathers missing requirements, proposes options and validates the resulting topology.

    677 GitHub stars~612 tokensUpdated today
    Auto-check passed
  • ACI Policy Change Deployment

    automateyournetwork/netclaw

    Deploys Cisco ACI policy changes only behind an approved ServiceNow Change Request, capturing pre and post-change fault baselines and rolling back automatically on a fault delta.

    677 GitHub stars~4.2k tokensUpdated today
    Auto-check passed
  • Cisco ACI Fabric Health Audit

    automateyournetwork/netclaw

    Runs a phased health audit of a Cisco ACI fabric through MCP tools: node status, links, tenant and policy review, faults and endpoint learning.

    677 GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Anta Validation

    automateyournetwork/netclaw

    Validate Arista EOS network state against ANTA's pre-built 208-test catalogue, with structured pass/fail verdicts.

    677 GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Arista Cvp

    automateyournetwork/netclaw

    Arista CloudVision Portal (CVP) automation via REST API — device inventory, events, connectivity monitoring, tag management (4 tools).

    677 GitHub stars~2.2k tokensUpdated today
    Auto-check: notes
  • AWS Cloud Monitoring

    automateyournetwork/netclaw

    AWS CloudWatch monitoring — metrics, alarms, log queries, VPC flow log analysis, network performance.

    677 GitHub stars~1k tokensUpdated today
    Auto-check passed

Questions about Pyats F5 Platform

What does Pyats F5 Platform do?

F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management. Pyats F5 Platform is an agent skill from automateyournetwork/netclaw. F5 BIG-IP platform operations via pyATS iControl REST — system, networking, HA/CM, auth, analytics, security, APM, live-update, ADC certs, file management.

When should I use Pyats F5 Platform?

Pyats F5 Platform fits situations like: checking BIG-IP system health; verifying HA sync status; auditing certificates; inspecting F5 platform resources.

How do I install Pyats F5 Platform in Claude Code?

Run `npx skills add automateyournetwork/netclaw --skill pyats-f5-platform -a claude-code`. Or copy the skill folder (workspace/skills/pyats-f5-platform in automateyournetwork/netclaw) into .claude/skills/pyats-f5-platform in your project. Claude Code loads it when a task matches its description.

How do I install Pyats F5 Platform in Codex?

Run `npx skills add automateyournetwork/netclaw --skill pyats-f5-platform -a codex`. Or copy the skill folder (workspace/skills/pyats-f5-platform in automateyournetwork/netclaw) into .agents/skills/pyats-f5-platform in your project. Codex loads it when a task matches its description.

Can I use Pyats F5 Platform in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add automateyournetwork/netclaw --skill pyats-f5-platform -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pyats-f5-platform, .gemini/skills/pyats-f5-platform, .github/skills/pyats-f5-platform and .opencode/skills/pyats-f5-platform in your project.

What does Pyats F5 Platform need to run?

Going by SKILL.md and its folder, Pyats F5 Platform needs the command-line tools its instructions call (python3) and credentials named F5_PASSWORD. Our summary lists: Python 3.

Does Pyats F5 Platform access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Pyats F5 Platform safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Pyats F5 Platform use?

Pyats F5 Platform is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Pyats F5 Platform use?

About 6.4k tokens (SKILL.md is roughly 26k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Pyats F5 Platform?

Skills that share tags, products or a category with Pyats F5 Platform: Sentry Miniapp SDK (lizhiyao/sentry-miniapp, 687 stars), Real-Time Stock Quote Subscriber (Yourdaylight/stock_datasource, 189 stars), Openai Docs (aafqaq/codex-lb-enhanced, 103 stars) and Loki Logs (letsrevel/revel-backend, 110 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Pyats F5 Platform?

automateyournetwork (a GitHub user) maintains it in automateyournetwork/netclaw, which has 676 GitHub stars. The repository holds 120 skills in this directory. The repository was last updated on October 9, 2026.

Source: automateyournetwork/netclaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.