background image

12

Hardware Guide

file and saves it to the primary area of the Firebox flash disk. The Firebox 
loads the primary configuration file when it boots. The QuickSetup 
wizard also writes a basic configuration file called 

wizard.cfg

 to the 

Management Station hard disk.  

By default, the QuickSetup wizard starts automatically after you finish 
installing the Firebox System software. To manually start the QuickSetup 
wizard from the Windows desktop, select 

Start

 => 

Programs

 => 

WatchGuard

 => 

QuickSetup Wizard

.

For details on running the QuickSetup wizard, see 

Firebox System Install 

Guide

.

Post-installation steps 

The Firebox can now communicate with the Management Station over the 
network. Perform the following post-installation steps:
1

If you initialized the Firebox using the serial cable, you must now 
place the Firebox within your network. Initially, this must be done 
over the Trusted interface.

The most common location for the Firebox is physically between the Internet router 

and connections to your trusted and optional networks. See “Locating a Firebox 

within a network” on page 8.

2

Connect the Ethernet lines to the Firebox Trusted, External, and 
Optional interfaces as appropriate.

Specific connections vary according to the drop-in or routed network configuration 

created. You are not required to connect the Optional interface if it is not part of 

your network configuration.

3

Reboot the Management Station.

If you designated the Management Station as the primary event processor, the 

LiveSecurity Event Processor starts.

4

You can now customize your security policies. See the 

User Guide

 for 

additional configuration instructions.

Hardware Description 

The Firebox III has indicator lights on the front and connections on the 
back.

Summary of Contents for Firebox 2500 Series

Page 1: ...Firebox III Hardware Guide Firebox 500 Firebox 700 Firebox 1000 Firebox 2500 Firebox 4500...

Page 2: ...r MUVPN FireChip HackAdmin HostWatch Make Security Your Strength RapidCare SchoolMate ServiceWatch Smart Security Simply Done Vcontroller VPNforce The W G logo are either registered trademarks or trad...

Page 3: ...nnecting a Firebox 8 Running the QuickSetup Wizard 11 Post installation steps 12 Hardware Description 12 Firebox III front view all models except Model 500 and 700 13 Firebox III front view Model 500...

Page 4: ...iv Hardware Guide Firebox System Area 20 Read only system area 21 Enhanced System Mode 21 Managing flash disk memory 21...

Page 5: ...n the front of the Firebox Limited Hardware Warranty This Limited Hardware Warranty the Warranty applies to the enclosed WatchGuard hardware product the Product BY USING THE PRODUCT YOU AGREE TO THE T...

Page 6: ...od Any Product component part or other item replaced by WatchGuard becomes the property of WatchGuard WatchGuard shall not be responsible for return of or damage to any software firmware information o...

Page 7: ...AGES THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY 5 Miscellaneous Provisions This Warranty will be governed by the laws of the state of Washington U S A without reference t...

Page 8: ...tion This device has been tested and found to comply with limits for a Class A digital device pursuant to Part 15 of the FCC Rules Operation is subject to the following two conditions This device may...

Page 9: ...ent indicates that it is in compliance with the Electromagnetic Compatibility EMC directive and the Low Voltage Directive LVD of the European Union EU Industry Canada This Class A digital apparatus me...

Page 10: ...6 Hardware Guide Taiwanese Notice VCCI Notice Class A ITE...

Page 11: ...r to prevent damage caused by power spikes and other power fluctuations The following minimum hardware requirements pertain to the Management Station the computer that administers the Firebox This com...

Page 12: ...most effective location for the Firebox to operate correctly and protect your network Connecting a Firebox After you have decided where to place the Firebox the next task is to make all the hardware c...

Page 13: ...in a rack in a location convenient to the external router 2 Use the red cross over cable provided with the Firebox to connect the Firebox Trusted interface to the same network as the computer that wil...

Page 14: ...pback configuration 2 Turn the power on the Firebox off then on Confirm that the SysB light is lit The Firebox is now ready to accept the out of band connection Initializing a Firebox using remote pro...

Page 15: ...and try again 1 Attach both the Firebox External interface and the router s interface to a common local area network or use the red cross over cable to connect them directly 2 Turn the Firebox off and...

Page 16: ...e serial cable you must now place the Firebox within your network Initially this must be done over the Trusted interface The most common location for the Firebox is physically between the Internet rou...

Page 17: ...icator panel The following photograph shows the entire front view The photograph below shows a close up of the indicator panel From the left the indicators are as described on the next page Disarm Red...

Page 18: ...ee times per second The scale is exponential the first light represents 64 packets second the second light represents 128 packets second increasing to the eighth light which represents 8 192 packets s...

Page 19: ...rs are as described below Disarm Red light indicates the Firebox detected an error shut down its interfaces and will not forward any packets Armed Green light indicates the Firebox has been booted and...

Page 20: ...es in the direction of the arrows A red light at a triangle corner indicates that the Firebox is denying packets at that interface Firebox III rear view all models except Model 500 and 700 The rear vi...

Page 21: ...ace display link status card speed and activity The network interface cards NICs are auto sensing and adapt to wire speed automatically The speed indicator lights when there is a good physical connect...

Page 22: ...ot the Firebox to SYS B press this button and hold it down for 20 60 seconds or until you see the Sys B light come on Console Port Connects to the Management Station or modem through a serial cable su...

Page 23: ...al specifications All models except Model 500 and 700 Three RJ 45 10 100Tx Ethernet interfaces 1 DB 9 serial port PCI expansion option 500 MHz AMD K6 III processor 300 MHz AMD K6 II processor model 10...

Page 24: ...ixed baseline set of functionality stored on the read only system area of the Firebox flash disk memory It is possible to start the Firebox using this read only system area when the primary user area...

Page 25: ...read only system area use one of two methods to initialize the Firebox and prepare it for configuration Factory default switch on back Out of band using a modem Direct using a serial cable However do...

Page 26: ...face either over the network TCP IP or via a modem using out of band management 4 Click Yes The Connect To Firebox dialog box appears 5 Use the Firebox drop list to select a Firebox or type the IP add...

Page 27: ...Restore Backup Image Click Continue A verification prompt appears Verify that the Management Station connects to the Firebox Trusted interface either over the network TCP IP or via a modem using out o...

Page 28: ...24 Hardware Guide...

Page 29: ...irebox III booting 17 18 cabling using TCP IP 9 front panel 13 15 hardware connections for 8 hardware description 12 hardware requirements 7 initializing using remote provisioning 10 installation 7 in...

Page 30: ...ng 11 described 14 provisioning remote 10 Q QuickSetup Wizard automatic startup 12 described 11 starting manually 12 R read only system area 20 21 remote provisioning and Process Load Indicator 11 and...

Reviews: