Add a Locally-Managed Firebox to WatchGuard Cloud

Applies To: Locally-managed Fireboxes

If you manage your Firebox configuration locally with Fireware Web UI, Policy Manager, or the Management Server, you can add it to WatchGuard Cloud for reporting. WatchGuard Cloud uses log messages from the Firebox to generate over 100 dashboards and reports. WatchGuard Cloud does not disrupt logging to other destinations, such as Dimension.

To use WatchGuard Cloud for monitoring and reporting, you must:

  • Add the Firebox to your WatchGuard Cloud account
  • Enable WatchGuard Cloud in the Firebox configuration

After you enable WatchGuard Cloud on the Firebox, the Firebox sends log messages to your WatchGuard Cloud account. From WatchGuard Cloud you can monitor device status, run reports, and see Firebox event notifications.

Before You Begin

Before you add a locally-managed Firebox to WatchGuard Cloud, make sure that:

  • You have activated the Firebox at www.watchguard.com.
  • The Firebox has a current Standard Support license (Fireware v12.9 or higher), or a Total Security or Basic Security Suite subscription.
  • The Firebox has the latest feature key synchronized.
  • You have administrative access to the Firebox.

Fireboxes activated by a Service Provider appear in the Service Provider inventory in WatchGuard Cloud. Before you can add a Firebox or FireCluster to WatchGuard Cloud you must allocate the device to the Subscriber account. For more information, see Allocate Fireboxes.

To enable WatchGuard Cloud on the Firebox you might need to copy and paste a verification code from your WatchGuard Cloud account to the Firebox configuration. The verification code is unique to each Firebox and expires after 30 days.

If your Firebox has a TPM (Trusted Platform Module) chip, and runs Fireware v12.5.3 or higher, the Firebox uses TPM to register with WatchGuard Cloud.

Firebox T10, T30, T50, T70, M200, M300, M400, M500, M440, M4600, and M5600 models do not have a TPM chip.

For an active/passive locally-managed FireCluster, you must always paste the verification code into the Firebox configuration, regardless of Firebox model.

To add a FireCluster, you must copy and paste the verification code, regardless of the Firebox model or the version of Fireware the Firebox was manufactured with. The verification code is required for the FireCluster to register with WatchGuard Cloud. For more information about how to add a FireCluster, see Locally-Managed and Cloud-Managed FireClusters.

Add a Device

To add a Firebox to WatchGuard Cloud:

  1. Log in to your WatchGuard Cloud account.
  2. For Service Provider accounts, from Account Manager, select My Account.
  3. Select Manage > Devices or Configure > Devices.
  4. Click Add Device.
    A list of activated Fireboxes opens.

Screen shot of the Add Device list

To add a FireCluster to WatchGuard Cloud, select Add FireCluster. For more information, see Locally-Managed and Cloud-Managed FireClusters.

  1. Click the Name of the Firebox you want to add or click . Tip!
    A confirmation dialog box opens.
  2. Click Add Device.
    The Add Device page opens.

Screen shot of the Add Device page with the Local Management option selected

  1. Select Local Management.
  2. Click Next.
    The verification code appears.

When you add a Firebox manufactured with Fireware v12.3.1 or higher to WatchGuard Cloud, this page also includes the option: Setup with RapidDeploy. For more information, see RapidDeploy from WatchGuard Cloud.

Screen shot of the step to copy the Verification Code

  1. To copy the verification code, click Copy Code.
  2. To enable WatchGuard Cloud on the Firebox, open the Firebox configuration in Policy Manager or Fireware Web UI, enable WatchGuard Cloud, and paste the verification code, if required. For more information, see Enable WatchGuard Cloud on the Firebox.
  3. Click Done.
    The Firebox is added to the list of devices in WatchGuard Cloud.

Enable WatchGuard Cloud on the Firebox

After you add your Firebox to WatchGuard Cloud, enable WatchGuard Cloud on the Firebox.

If your Firebox has a TPM (Trusted Platform Module) chip, and runs Fireware v12.5.3 or higher, the Firebox uses TPM to register with WatchGuard Cloud.

Firebox T10, T30, T50, T70, M200, M300, M400, M500, M440, M4600, and M5600 models do not have a TPM chip.

For an active/passive locally-managed FireCluster, you must always paste the verification code into the Firebox configuration, regardless of Firebox model.

To connect a locally-managed Firebox or FireCluster to WatchGuard Cloud, you must open the Firebox configuration in Policy Manager or Fireware Web UI and enable WatchGuard Cloud.

Verify the Connection Status

After you enable a device in WatchGuard Cloud, verify the connection status in WatchGuard Cloud or on the Firebox. For more information, see:

For information about how to troubleshoot registration and connection errors, see Troubleshoot Firebox Connections to WatchGuard Cloud.

Related Topics

About Firebox WatchGuard Cloud Licenses

About WatchGuard Cloud