After You Install
10
WatchGuard Firebox System
Choose the Firebox configuration access method
: If the Firebox is connected to the
same network as the Management Station, select
Use TCP/IP to Configure for
Hands-Free Installation
. (You can tell that hands-free networking is enabled because
both the Sys A light and the segment of the security triangle between External and
Optional are flashing on and off. )
If the Firebox is connected directly to the Management Station with a blue serial
cable, select
Use Serial Cable to Assign IP Address for Serial Cable Initialization
.
Serial port
: If you selected
Use Serial Cable to Assign IP Address for Serial Cable
Initialization
, select the name of the serial port on the Management Station from
which the blue serial cable is connected.
To send the security policy to your Firebox, assign it a temporary IP address so this
machine can communicate with it. Enter this address in the
Temporary IP Address
field.
Finishing the setup
On the wizard’s next screen, you review the information you previously entered:
1
Review the settings. Click
OK
.
The information is saved to a file named
Wizard_setup.txt
in the WatchGuard installation
directory. The QuickSetup wizard creates a basic configuration file and saves it to the local hard
disk as
wizard.cfg
. It then attempts to contact the Firebox.
2
If using hands-free (TCP/IP) installation, enter the factory-installed configuration
password: wg.
3
If using serial cable installation, turn the Firebox off and then on.
The QuickSetup wizard attempts to connect to the Firebox. If the network has multiple
Fireboxes with the read-write pass phrase “wg”, the Firebox selector dialog box appears. Use
the Blink Lights button to select the address of the Firebox you are currently configuring.
When a connection is made, the wizard uploads a basic configuration file to the primary area of
the Firebox flash disk and initializes the Firebox with the IP addresses you provided. When
complete, the Firebox Sys A and Armed indicators illuminate.
4
Reboot your external router. This clears the ARP cache.
After You Install
The Firebox can now communicate with the Management Station over the network.
Perform the following post-installation steps:
• If you have not done so already, install the Firebox on the network. Initially,
this is done over the Trusted interface.
The most common location is physically between the Internet router and
connections to your trusted and optional networks. See “Determining a
Network Location for the Firebox” on page 3.
• Connect the Ethernet lines to the Firebox Trusted, External, and Optional
interfaces as appropriate.
Specific connections vary according to the drop-in or routed network
configuration created. You are not required to connect the Optional interface if
it is not part of your network configuration.