background image

Using the First Time Configuration Wizard

Quantum Spark 1530 / 1550 Appliance R80.20.XX Getting Started Guide   |   17

Using the First Time Configuration
Wizard

Configure the Quantum Spark Appliance with the First Time Configuration Wizard.

To close the wizard and save configured settings, click

Quit

.

Note

- In the First Time Configuration Wizard, you may not see all the pages described in this guide. The

pages that show in the wizard depend on your appliance model and the options you select.

Starting the First Time Configuration Wizard

To configure the 1530 / 1550 Appliance for the first time after you complete the hardware setup, use the
First Time Configuration Wizard.

WiFi models with a special device label only:

If you did not yet run the First Time Configuration Wizard, you can connect through WiFi using the SSID
and WiFi password that appears on the sticker. This is unique for each appliance.

If you do not complete the wizard because of one of these conditions, the wizard will run again the next
time you connect to the appliance:

n

The browser window is closed.

n

The appliance is restarted while you run the wizard.

After you complete the wizard, you can use the WebUI (web user interface) to change settings configured
with the First Time Configuration Wizard and to configure advanced settings.

To open the Appliance WebUI, enter one of these addresses in a web browser:

n

https://my.firewall

n

https://192.168.1.1:4434

If a security warning message shows, confirm it and continue.

The

First Time Configuration Wizard

starts.

Welcome

The

Welcome

page introduces the product and shows the name of your appliance.

Summary of Contents for QUANTUM SPARK 1530

Page 1: ...Models V 80 V 80W Classification Protected 10 February 2021 QUANTUM SPARK 1530 1550 APPLIANCE R80 20 XX Getting Started Guide ...

Page 2: ...written authorization of Check Point While every precaution has been taken in the preparation of this book Check Point assumes no responsibility for errors or omissions This publication and features described herein are subject to change without notice RESTRICTED RIGHTS LEGEND Use duplication or disclosure by the government is subject to restrictions as set forth in subparagraph c 1 ii of the Righ...

Page 3: ...Certifications page Check Point 1500 Appliances For more about the 1500 Appliance Series see the 1500 Appliance home page Latest Version of this Document in English Open the latest version of this document in a Web browser Download the latest version of this document in PDF format Feedback Check Point is engaged in a continuous effort to improve its documentation Please help us by sending your com...

Page 4: ... LEDs 14 Back Panel 15 Side Panel 16 Using the First Time Configuration Wizard 17 Starting the First Time Configuration Wizard 17 Welcome 17 Zero Touch 18 Authentication Details 19 Appliance Date and Time Settings 20 Appliance Name 21 Security Policy Management 21 Security Management Server Connection 22 Internet Connection 23 Local Network 25 Wireless Network 25 Administrator Access 26 Appliance ...

Page 5: ...Table of Contents Quantum Spark 1530 1550 Appliance R80 20 XX Getting Started Guide 5 USB Drive 33 Health and Safety Information 34 Information sur la Santé et la Sécurité 40 Support 46 ...

Page 6: ...k Point also delivers worldwide technical services including educational professional and support services through a network of Authorized Training Centers Certified Support Partners and Check Point technical support personnel to ensure that you get the most out of your security investment For more information about the appliance see the Quantum Spark 1500 1600 and 1800 Appliance Series Administra...

Page 7: ... adapter 1 AC to 12VDC desktop black color 40W for wired and WiFi Power cord for adapter 1 Plug types US UK EU and AUS NZ India China Japan Rubber feet 4 Assembled on the appliance Wall mount kit 1 2 2 Includes drilling hole location sticker Screws M4x6 truss screw Screw anchors Antenna 3 WiFi Antenna RP SMA type black color WiFi models only Guides 1 1 Quantum Spark 1530 1550 Appliance Quick Start...

Page 8: ...to the model WiFi model only 4 Identify the network interface marked as LAN1 This interface is preconfigured with the IP address 192 168 1 1 Wall Mounting To mount the appliance to the wall 1 Place the wall mount sticker on the wall and drill two holes for the screws 2 Insert the 2 screw anchors in the wall 3 Attach the 2 screws in the accessory kit M4 6 to the wall 4 Mount the appliance and verif...

Page 9: ...o the LAN1 port on the back panel of the appliance and to the network adapter on your PC 4 Optional Connect the console cable to the console port on the back of the appliance and to a USB port on a supported terminal a The baud rate should be set to 115200 Set the Flow control to None b To get the console driver click https www silabs com products development tools software usb to uart bridge vcp ...

Page 10: ...liance R80 20 XX Getting Started Guide 10 First Time Deployment Options There are different options for first time deployment of your gateways n Using the First Time Configuration Wizard on page 17 n Zero Touch Cloud Service on page 32 n USB Drive on page 33 ...

Page 11: ...R80 20 XX Getting Started Guide 11 Appliance Diagrams and Specifications This section describes the different features in the front back and side panels of the 1530 1550 models Note Depending on which model appliance you have some of the specifications below may vary Wired ...

Page 12: ... Specifications Quantum Spark 1530 1550 Appliance R80 20 XX Getting Started Guide 12 WiFi with antennas Front Panel Note There is only one set of LEDs These LEDs show different colors depending on what activity is occurring ...

Page 13: ...t in progress and installing firmware After the process completes the LED is solid blue n Red Error Alert Note This LED is red when the appliance is first turned on Table LEDs Management LED The Management LED shows the status of the retries mechanism Action Management LED Activity Zero Touch is running Blinks red slowly Successfully connected to Zero Touch Cloud Server and saved the deployment sc...

Page 14: ... minutes Subsequent Retries every 16 minutes until Cloud Services are successfully activated Network LEDs The table below describes the network LEDs RJ45 WAN and LAN ports Each port uses a bi color LED to reflect the link activity and speed from 10M to 1GbE RJ45 LED1 Green LED2 Amber No link Off Off 1G link ON Off 1G Act Blink ON 100M link ON Off 100M Act Blink Off 10M link ON Off 10M Act Blink Of...

Page 15: ...d 2 LAN and WAN ports 1 GbE LAN ports 1 5 LAN 2 Sync WAN port 1 3 Console Plug in the serial console cable here Baud rate 115200 4 Power cord socket Plug the power adapter cord in here 5 Factory default Press the button continuously for 12 seconds to restore the appliance to its factory defaults 6 Power button Push to turn the appliance on or off ...

Page 16: ...anel Quantum Spark 1530 1550 Appliance R80 20 XX Getting Started Guide 16 Side Panel Key Item Description 1 Anti theft slot Insert anti theft cable here Use Kensington and Sunbox TL 623M cable as a reference ...

Page 17: ...bel only If you did not yet run the First Time Configuration Wizard you can connect through WiFi using the SSID and WiFi password that appears on the sticker This is unique for each appliance If you do not complete the wizard because of one of these conditions the wizard will run again the next time you connect to the appliance n The browser window is closed n The appliance is restarted while you ...

Page 18: ...etch the Zero Touch settings without any additional action If no DHCP service is available you must run the First Time Configuration Wizard configure the Internet Connection settings and then fetch the settings from the Zero Touch server To connect to the Zero Touch server 1 In the Welcome page click Fetch Settings from the cloud 2 In the window that opens click OK to confirm that you want to proc...

Page 19: ...ates abnormally n Administrator Name We recommend that you change the default admin login name of the administrator The name is case sensitive n Password A strong password has a minimum of 6 characters with at least one capital letter one lower case letter and a special character Use the Password strength meter to measure the strength of your password Note The meter is only an indicator and does n...

Page 20: ...r correct location Daylight Savings Time is automatically enabled by default You can change this in the WebUI application on the Device Date and Time page n Date The date on your computer appears by default If required set a different date n Time The time on your computer appears by default If required set a different time n Time Zone The time zone on your computer appears by default If required s...

Page 21: ... the gateway performs DNS resolving for a specified object s name the domain name is appended to the object name This lets hosts in the network look up hosts by their internal names Security Policy Management In the Security Policy Management page select how to manage security settings n Central management A remote Security Management Server manages the Security Gateway in SmartConsole with a netw...

Page 22: ...ablish trust between the Security Management Server and the appliance To connect to the Security Management Server select one of these n Connect to the Security Management Server now n Connect to the Security Management Server later If you select to connect now enter the data for these fields n Management address Enter the IP address or host name of the Security Management Server n Connect When yo...

Page 23: ...dress of a log server l Send logs according to policy The logs are sent according to the log server definitions that are defined in the policy Internet Connection In the Internet Connection page configure your Internet connectivity details or select Configure Internet connection later To configure Internet connection now 1 Select Configure Internet connection now 2 From the Connection type drop do...

Page 24: ...n internal LTE modem Both SIM cards are used for the internet connection with a failover between them n Cellular Modem Connect to the Internet with a cellular modem to the ISP through a 3G or 4G network For this option select the USB Serial option in the Interface name Note Only one cellular modem is supported Appliances with an internal LTE modem do not support an external USB modem n Bridge Conn...

Page 25: ... kept as an alias IP to maintain connectivity until the wizard is completed n Subnet mask Enter the subnet mask n DHCP server and range fields DHCP is enabled by default with a default network range Make sure to set the appropriate range and do not include predefined static IPs in your network n Exclusion range Set the exclusion range for IP addresses that are not defined by the DHCP server Define...

Page 26: ...wireless network now 2 Enter a name in the Network name SSID field This is the name shown to clients that look for access points in the transmission area 3 Select Protected network recommended if the wireless network is protected by password 4 Enter a Password 5 The Hide password option is selected by default 6 Allow access from this network to the local network is selected by default This means t...

Page 27: ...ppliance n Any IP address n Specified IP addresses only Select this option to let administrators access the appliance from a specified IP address or network Click New to configure the IP address information n Specified IP addresses from the Internet and any IP address from other sources Select this option to allow administrator access from the Internet from specific IP addresses only and access fr...

Page 28: ...nformation tab click License Activate This message appears Licenses were generated successfully d Click Get Activation File and save the file locally n Register your appliance a Go to https smbregistration checkpoint com b Enter your appliance details and click Activate This message appears Licenses were generated successfully c Click Get Activation File and save the file locally 2 In the Applianc...

Page 29: ...ance uses a 30 day trial license for all blades You can register the appliance later in the WebUI from the Device License page If your device is not paired with a User Center account you must create an account or ask your company administrator to create one for you To create a new User Center account for Locally Managed appliances only 1 Click Activate License The Appliance Registration window ope...

Page 30: ... Server securely Enter a one time password and confirm it This password is only used for establishing the initial trust When established trust is based on security certificates Important This password must be identical for the Secure Communication authentication one time password configured for the appliance object in the SmartConsole of the Security Management Server n Initiate trusted communicat...

Page 31: ...ide 31 Summary The Summary page shows the details of the elements configured with the First Time Configuration Wizard Click Finish to complete the First Time Configuration Wizard The WebUI opens on the Home System page To back up the system configuration in the WebUI Go to Device System Operations Backup ...

Page 32: ...rm that you want to proceed 3 The Internet connection page of the First Time Configuration Wizard opens Configure your Internet connection and click Connect The settings are automatically downloaded and installed A new window opens and shows the installation status It may take several minutes until the installation is complete When you reconnect to the appliance WebUI or click Refresh you may see ...

Page 33: ...figuration file lets you configure more settings and parameters than are available in the First Time Configuration Wizard You can deploy configuration files in these conditions n An appliance with default settings is not configured at all n An appliance that already has an existing configuration The appliance starts automatically mounts the USB drive and searches the root directory for a configura...

Page 34: ...y discharge n Restore the communications appliance system board and peripherals back into the antistatic bag when they are not in use or not installed in the chassis Some circuitry on the system board can continue operating when the power is switched off n Do not allow the lithium battery cell used to power the real time clock to short The battery cell may heat up under these conditions and presen...

Page 35: ... only No 26 AWG or larger e g 24 AWG UL Listed or CSA Certified Telecommunication Line Cord For California Perchlorate Material special handling may apply See http www dtsc ca gov hazardouswaste perchlorate The foregoing notice is provided in accordance with California Code of Regulations Title 22 Division 4 5 Chapter 33 Best Management Practices for Perchlorate Materials This product part or both...

Page 36: ...017 FCC Part15C E RSS 247 RSS 102 JP ARIB STD T66 JP ARIB STD T71 EMC RF Wi Fi IEC EN 62368 1 UL 62368 1 Safety Physical and environmental reliability Description Operating Conditions Vibrations and Shock Based on EN 300 019 2 3 Storage Conditions Temperature 40 C 60 C Humidity 95 non condensed Vibrations and Shock based on EN 300 019 2 1 Transportation Conditions Temperature 40 C 85 C Humidity 95...

Page 37: ... equipment off and on the user is encouraged to try to correct the interference by one of the following measures n Reorient or relocate the receiving antenna n Increase the separation between the equipment and receiver n Connect the equipment into an outlet on a circuit different from that to which the receiver is connected n Consult the dealer or an experienced radio TV technician for help FCC Ca...

Page 38: ...keted in the US Canada FOR WLAN 5 GHz DEVICE Caution 1 The device for operation in the band 5150 5250 MHz is only for indoor use to reduce the potential for harmful interference to co channel mobile satellite systems 2 The maximum antenna gain permitted for devices in the band 5725 5850 MHz shall comply with the e i r p limits specified for point to point and non point to point operation as approp...

Page 39: ...al equipment designed for use within certain voltage limits and the Amendment Directive 93 68 EEC Product Disposal This symbol on the product or on its packaging indicates that this product must not be disposed of with your other household waste Instead it is your responsibility to dispose of your waste equipment by handing it over to a designated collection point for the recycling of waste electr...

Page 40: ...s circuits sur la carte système peuvent rester fonctionnels lorsque si l appareil est éteint n Ne jamais court circuiter la pile au lithium qui alimente l horloge temps réel Elle risque de s échauffer et de causer des brûlures Avertissement DANGER D EXPLOSION SI LA PILE EST MAL REMPLACÉE NE REMPLACER QU AVEC UN TYPE IDENTIQUE OU ÉQUIVALENT RECOMMANDÉ PAR LE CONSTRUCTEUR LES PILES DOIVENT ÊTRE MISE...

Page 41: ...lement requise Voir http www dtsc ca gov hazardouswaste perchlorate L avis suivant est fourni conformément au California Code of Regulations titre 22 division 4 5 chapitre 33 Meilleures pratiques de manipulation des matériaux perchloratés Ce produit cette pièce ou les deux peuvent contenir une pile au dioxyde de lithium manganèse qui contient une substance perchloratée Produits chimiques Propositi...

Page 42: ... Part15C E RSS 247 RSS 102 JP ARIB STD T66 JP ARIB STD T71 EMC RF Wi Fi IEC EN 62368 1 UL 62368 1 Sécurité Fiabilité physique et environnementale Description Conditions de fonctionnement Vibrations et chocs selon EN 300 019 2 3 Conditions de stockage Température 40 C 60 C Hhumidité 95 sans condensation Vibrations et chocs selon EN 300 019 2 1 Conditions de transport Température 40 C 85 C Humidité ...

Page 43: ...ulière Si cet appareil provoque des interférences avec un récepteur radio ou un téléviseur ce qui peut être détecté en mettant l appareil sous et hors tension l utilisateur peut essayer d éliminer les interférences en suivant au moins l une des procédures suivantes n Réorienter ou déplacer l antenne de réception n Augmenter la distance entre l appareil et le récepteur n Brancher l appareil sur une...

Page 44: ...z sont réservés uniquement pour une utilisation à l intérieur afin de réduire les risques de brouillage préjudiciable aux systèmes de satellites mobiles utilisant les mêmes canaux 2 Le gain maximal d antenne permis pour les dispositifs utilisant les bandes 5250 5350 MHz et 5470 5725 MHz doit se conformer à la limite de p i r e 3 Le gain maximal d antenne permis pour les dispositifs utilisant la ba...

Page 45: ...nseil relative aux équipements électriques conçus pour être utilisés dans une certaine plage de tensions selon les modifications de la directive 93 68 CEE Mise au rebut du produit Ce symbole apposé sur le produit ou son emballage signifie que le produit ne doit pas être mis au rebut avec les autres déchets ménagers Il est de votre responsabilité de le porter à un centre de collecte désigné pour le...

Page 46: ...rs a day seven days a week at n 1 972 444 6600 Americas n 972 3 611 5100 International When you contact support you must provide your MAC address For more technical information go to Check Point Support Center To learn more about the Check Point Internet Security Product Suite and other security solutions go to https www checkpoint com ...

Reviews: