Tool to assist with ACL / Firewall Rules

This Cisco IOS “Policy Compiler” can assist people with the configuration of “complex access lists”. I haven’t tried it myself, but here’s what it claims to do:
“Key features:
* designed for complex access lists
* can control access lists of multiple routers from the central management station
* utilizes object-oriented approach to the ACL design
* simplifies policy design
* the same set of objects that describe hosts, networks and protocols can be used to build firewall policy (Cisco PIX or any of the Open Source firewalls such as iptables, ipfilter, pf or ipfw) and router access lists
* Firewall Builder GUI can import existing access list configuration from a file saved using “show run” or similar command.”

