Add a FireCluster to WatchGuard Cloud

Applies To: Locally-managed Fireboxes

To enable WatchGuard Cloud on a FireCluster, you add both Fireboxes to your WatchGuard Cloud account as a cluster.

Before You Begin

Make sure the FireCluster has a license for Total Security Suite or Basic Security Suite.

  • For an active/active cluster, both members must have a license
  • For an active/passive cluster, only one member must have a license

For detailed information about FireCluster licenses, see About Feature Keys and FireCluster.

Fireboxes activated by a Service Provider appear in the Service Provider inventory in WatchGuard Cloud. Before you can add a Firebox or FireCluster to WatchGuard Cloud you must allocate the device to the Subscriber account. For more information, see Firebox Allocation.

Make sure your FireCluster runs Fireware v12.4 or higher. If necessary, upgrade your FireCluster before you add it to WatchGuard Cloud.

For an active/passive FireCluster, make sure that you know the device serial numbers. To add the second member of an active/passive FireCluster, you must specify the serial number of the second member.

Make sure you have administrative access to the FireCluster. To enable WatchGuard Cloud on the FireCluster you must copy a Verification Code from your WatchGuard Cloud account and use Policy Manager or Fireware Web UI to paste it into the configuration of the FireCluster.

Add a FireCluster

To add a FireCluster to WatchGuard Cloud:

  1. Log in to your WatchGuard Cloud Subscriber account.
  2. Click Add Device.
    A list of activated devices appears.

Screen shot of the Add Device page

  1. Click Add FireCluster.

Screen shot of the Add Devices page with no FireCluster member selected

  1. Select the Name of the first cluster member from the list.

Screen shot of the Add Device page with one FireCluster member added

  1. Specify the second cluster member.Tip!
    • For an active/active FireCluster, select the second member from the list.
    • For an active/passive FireCluster, type the serial number of the second member.

Screen shot of the Add Devices page with both cluster members selected

  1. Click Add FireCluster.
    The Verification Code page opens.

Screen shot of the Add Verification Code page for a FireCluster

  1. To copy the Verification Code, click Copy Code.
  2. Open the FireCluster configuration in Policy Manager or Fireware Web UI and paste the Verification Code to enable WatchGuard Cloud. For more information, see Enable WatchGuard Cloud on the FireCluster.
  3. Click Done.
    The FireCluster is added to the list of devices.

Enable WatchGuard Cloud on the FireCluster

To connect a locally managed Firebox or FireCluster to WatchGuard Cloud, you must open the Firebox configuration in Policy Manager or Fireware Web UI and enable WatchGuard Cloud.

Verify the FireCluster Connection to WatchGuard Cloud

After you enable WatchGuard Cloud on a Firebox, verify the FireCluster status in WatchGuard Cloud.

To see device connection status from WatchGuard Cloud:

  1. Log in to your WatchGuard Cloud Subscriber account.
  2. Select Monitor > Devices.
  3. Select the FireCluster.
    The Device Summary shows the connection status of both cluster members.

Screen shot of device status for an active/passive FireCluster

The expected status of cluster members depends on the cluster type:

Active/Passive FireCluster

Only the cluster master connects to WatchGuard Cloud. The status of the cluster master is Connected. The status of the backup master is Never Connected or Not Connected.

Active/Active FireCluster

Both cluster members connect to WatchGuard Cloud. The status of both members is Connected. To determine which Firebox serial number corresponds to the cluster master or backup master, connect to Fireware Web UI and select System Status > FireCluster. Or, in WatchGuard System Manager, connect to the cluster and expand the Cluster section.

The member number indicates the order in which you added the Fireboxes to WatchGuard Cloud. Member1 is the first Firebox added to WatchGuard Cloud. Member2 is the second Firebox added to WatchGuard Cloud.

You can also connect to Fireware OS on your locally-managed FireCluster to verify the connection to WatchGuard Cloud. For more information, see WatchGuard Cloud Status on the Firebox.

View FireCluster Status Information

Some of the features described in this section are only available to participants in the WatchGuard Beta program. If a feature described in this section is not available in your version of Fireware, it is a beta-only feature.

After your FireCluster connects to WatchGuard Cloud, you can view different types of information about the cluster:

Manage a FireCluster

For information about how to upgrade, reboot, or fail over a locally-managed FireCluster in WatchGuard Cloud, see:

See Also

About FireCluster in WatchGuard Cloud

Manage FireCluster Logging in WatchGuard Cloud

Remove a FireCluster from WatchGuard Cloud

Troubleshoot Firebox Connections to WatchGuard Cloud