background image

10

Hardware Guide

3

Install the power cord from the Firebox AC receptacle to a power 
source.

4

When prompted to do so during the QuickSetup wizard (described in 
“Running the QuickSetup Wizard” on page 11), select 

Use Serial 

Cable to Assign IP Address 

as the configuration access method.

Initializing a Firebox using a modem

The following are required when using a modem: 

Management Station running Firebox System 4.6 or later and 
equipped with a modem, Dial-Up Networking software, and a 
working telephone line. 

Any Firebox III model, equipped with an external modem, a modem 
cable, and a working telephone line.

1

Use the blue null serial cable and adaptors included with the Firebox 
to connect the Firebox CONSOLE port and external serial port in a 
loopback configuration. 

2

Turn the power on the Firebox off, then on. Confirm that the SysB 
light is lit.

The Firebox is now ready to accept the out-of-band connection.

Initializing a Firebox using remote provisioning

Use remote provisioning to initialize a Firebox in the case where a router 
sits between the Management Station and the Firebox network 
connection. Because of the flexibility of being able to initialize a Firebox 
from virtually any location on a network, remote provisioning is a very 
versatile option. However, it has the following restrictions:

During provisioning, the Firebox and the router should be the only 
devices on the network.

You must be able to flush the local router’s ARP tables, preferably by 
rebooting the router.

The Firebox must be initialized with Firebox System 4.6 or later.

Make sure the following conditions exist prior to using remote 
provisioning:

The Firebox is attached as the only device behind a working router.

Summary of Contents for Firebox 2500 Series

Page 1: ...Firebox III Hardware Guide Firebox 500 Firebox 700 Firebox 1000 Firebox 2500 Firebox 4500...

Page 2: ...r MUVPN FireChip HackAdmin HostWatch Make Security Your Strength RapidCare SchoolMate ServiceWatch Smart Security Simply Done Vcontroller VPNforce The W G logo are either registered trademarks or trad...

Page 3: ...nnecting a Firebox 8 Running the QuickSetup Wizard 11 Post installation steps 12 Hardware Description 12 Firebox III front view all models except Model 500 and 700 13 Firebox III front view Model 500...

Page 4: ...iv Hardware Guide Firebox System Area 20 Read only system area 21 Enhanced System Mode 21 Managing flash disk memory 21...

Page 5: ...n the front of the Firebox Limited Hardware Warranty This Limited Hardware Warranty the Warranty applies to the enclosed WatchGuard hardware product the Product BY USING THE PRODUCT YOU AGREE TO THE T...

Page 6: ...od Any Product component part or other item replaced by WatchGuard becomes the property of WatchGuard WatchGuard shall not be responsible for return of or damage to any software firmware information o...

Page 7: ...AGES THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY 5 Miscellaneous Provisions This Warranty will be governed by the laws of the state of Washington U S A without reference t...

Page 8: ...tion This device has been tested and found to comply with limits for a Class A digital device pursuant to Part 15 of the FCC Rules Operation is subject to the following two conditions This device may...

Page 9: ...ent indicates that it is in compliance with the Electromagnetic Compatibility EMC directive and the Low Voltage Directive LVD of the European Union EU Industry Canada This Class A digital apparatus me...

Page 10: ...6 Hardware Guide Taiwanese Notice VCCI Notice Class A ITE...

Page 11: ...r to prevent damage caused by power spikes and other power fluctuations The following minimum hardware requirements pertain to the Management Station the computer that administers the Firebox This com...

Page 12: ...most effective location for the Firebox to operate correctly and protect your network Connecting a Firebox After you have decided where to place the Firebox the next task is to make all the hardware c...

Page 13: ...in a rack in a location convenient to the external router 2 Use the red cross over cable provided with the Firebox to connect the Firebox Trusted interface to the same network as the computer that wil...

Page 14: ...pback configuration 2 Turn the power on the Firebox off then on Confirm that the SysB light is lit The Firebox is now ready to accept the out of band connection Initializing a Firebox using remote pro...

Page 15: ...and try again 1 Attach both the Firebox External interface and the router s interface to a common local area network or use the red cross over cable to connect them directly 2 Turn the Firebox off and...

Page 16: ...e serial cable you must now place the Firebox within your network Initially this must be done over the Trusted interface The most common location for the Firebox is physically between the Internet rou...

Page 17: ...icator panel The following photograph shows the entire front view The photograph below shows a close up of the indicator panel From the left the indicators are as described on the next page Disarm Red...

Page 18: ...ee times per second The scale is exponential the first light represents 64 packets second the second light represents 128 packets second increasing to the eighth light which represents 8 192 packets s...

Page 19: ...rs are as described below Disarm Red light indicates the Firebox detected an error shut down its interfaces and will not forward any packets Armed Green light indicates the Firebox has been booted and...

Page 20: ...es in the direction of the arrows A red light at a triangle corner indicates that the Firebox is denying packets at that interface Firebox III rear view all models except Model 500 and 700 The rear vi...

Page 21: ...ace display link status card speed and activity The network interface cards NICs are auto sensing and adapt to wire speed automatically The speed indicator lights when there is a good physical connect...

Page 22: ...ot the Firebox to SYS B press this button and hold it down for 20 60 seconds or until you see the Sys B light come on Console Port Connects to the Management Station or modem through a serial cable su...

Page 23: ...al specifications All models except Model 500 and 700 Three RJ 45 10 100Tx Ethernet interfaces 1 DB 9 serial port PCI expansion option 500 MHz AMD K6 III processor 300 MHz AMD K6 II processor model 10...

Page 24: ...ixed baseline set of functionality stored on the read only system area of the Firebox flash disk memory It is possible to start the Firebox using this read only system area when the primary user area...

Page 25: ...read only system area use one of two methods to initialize the Firebox and prepare it for configuration Factory default switch on back Out of band using a modem Direct using a serial cable However do...

Page 26: ...face either over the network TCP IP or via a modem using out of band management 4 Click Yes The Connect To Firebox dialog box appears 5 Use the Firebox drop list to select a Firebox or type the IP add...

Page 27: ...Restore Backup Image Click Continue A verification prompt appears Verify that the Management Station connects to the Firebox Trusted interface either over the network TCP IP or via a modem using out o...

Page 28: ...24 Hardware Guide...

Page 29: ...irebox III booting 17 18 cabling using TCP IP 9 front panel 13 15 hardware connections for 8 hardware description 12 hardware requirements 7 initializing using remote provisioning 10 installation 7 in...

Page 30: ...ng 11 described 14 provisioning remote 10 Q QuickSetup Wizard automatic startup 12 described 11 starting manually 12 R read only system area 20 21 remote provisioning and Process Load Indicator 11 and...

Reviews: