Add a Cloud-Managed FireCluster

Applies To: Cloud-managed Fireboxes, Locally-managed Fireboxes

Some of the features described in this topic are available only to participants in the WatchGuard Cloud Beta program. If a feature described in this topic is not available in your version of WatchGuard Cloud, it is a beta-only feature.

Overview

You can add and manage an active/passive FireCluster in WatchGuard Cloud. For more information about FireCluster, go to About FireCluster in WatchGuard Cloud.

To add a cloud-managed FireCluster, use one of these methods:

Before You Begin

Before you add a cloud-managed FireCluster, learn about requirements and plan your configuration. For information about FireCluster requirements, go to Before You Configure a Cloud-Managed FireCluster in WatchGuard Cloud.

Your operator role determines what you can view and do in WatchGuard Cloud. Your role must have the Devices permissions to view or configure this feature. For more information, go to Manage WatchGuard Cloud Operators and Roles.

Add a New Cloud-Managed FireCluster

If you have two Fireboxes that you have not yet configured as a FireCluster, use the method described in this section. Both Fireboxes must have factory-default settings.

When you add a cloud-managed FireCluster, you can:

  • Create a new configuration manually for the FireCluster.
  • Import many supported settings from a Firebox .XML configuration file to help build the cloud-managed configuration. You can do this when you add the FireCluster through the Add Device Wizard, or you can use the Import Configuration wizard after you add the FireCluster. This topic describes how to use the Add Device Wizard. For information about Import Configuration wizard workflow, go to Import Configuration Settings from a Firebox Configuration File.

Verify the FireCluster Connection to WatchGuard Cloud

In WatchGuard Cloud, select Monitor > Devices and view the Device Summary of the FireCluster to verify the connection to WatchGuard Cloud.

Only the cluster master connects to WatchGuard Cloud.

  • The status of the cluster master is Connected.
  • The status of the backup master is Never Connected or Not Connected because the backup master connects only if the current cluster master is unavailable.

Screenshot of the Device Summary page for a Firebox with FireCluster status

Change a Locally-Managed FireCluster to Cloud Management

If you previously added a locally-managed FireCluster to WatchGuard Cloud for visibility, you can change the FireCluster to cloud management.

After you change the management type and deploy the change, the cloud-managed configuration replaces the locally-managed configuration on the Firebox. You can no longer locally manage the FireCluster in WatchGuard System Manager or Fireware Web UI.

Change a Cloud-Managed Firebox to a Cloud-Managed FireCluster Member

To change a single cloud-managed Firebox to a cloud-managed FireCluster member, you must:

  1. Remove the device from cloud management so that it is locally managed. For more information, go to Change the FireCluster Management Type.
  2. Configure a locally-managed cluster. For more information, go to Configure FireCluster with the Setup Wizard.
  3. Add the FireCluster in WatchGuard Cloud as a locally-managed cluster with visibility, and then change the FireCluster to cloud management. For more information, go to Change the FireCluster Management Type.

Caution: The deployment history of a cloud-managed Firebox is no longer available after you add the device to a cloud-managed FireCluster. This means that when you complete the configuration of a cloud-managed FireCluster, you cannot revert to earlier deployment versions of the cloud-managed Firebox.

Manage the FireCluster

After you add a cloud-managed FireCluster, you can:

Related Topics

About FireCluster in WatchGuard Cloud

Change the FireCluster Management Type

Remove a FireCluster from WatchGuard Cloud

Configure an RMA Replacement for a Cloud-Managed FireCluster Member

Copy Configuration Settings from a Cloud-Managed Firebox

Import Configuration Settings from a Firebox Configuration File