Add FireboxV to WatchGuard Cloud (Cloud-Managed)

Applies To: Cloud-managed Fireboxes, Locally-managed Fireboxes

Some of the features described in this topic are available only to participants in the WatchGuard Cloud Beta program. If a feature described in this topic is not available in your version of WatchGuard Cloud, it is a beta-only feature.

To manage a FireboxV configuration from WatchGuard Cloud, you must add the virtual Firebox to WatchGuard Cloud as a cloud-managed device and then upload a payload to the device. The payload applies the initial configuration and connection settings so the Firebox can establish a connection with WatchGuard Cloud.

When you add a cloud-managed Firebox, you create a new configuration in WatchGuard Cloud through one of these methods:

For information about how to change an existing Firebox from local management to cloud management, go to Change a Locally-Managed Firebox to Cloud Management.

For best practices on how to change your locally-managed Firebox to cloud management, go to the Firebox Migration to Cloud Management Guide.

Caution: Do not use a factory reset as a general troubleshooting step for a cloud-managed Firebox. It rarely resolves issues and breaks the WatchGuard Cloud management connection. After a reset, the device cannot reconnect because of a WatchGuard Cloud key mismatch. Recovery might require you to remove and re-add the device to WatchGuard Cloud, which can result in the loss of configuration and logs.

Before You Begin

Before you add a FireboxV device to WatchGuard Cloud, make sure that:

  • You have activated the Firebox in your WatchGuard account.
  • The Firebox has a valid Standard Support license (Fireware v12.9 or higher) or a current Total Security Suite or Basic Security Suite subscription.
  • The Firebox is allocated to a Subscriber account (Service Providers only). For more information, go to Allocate Fireboxes.

Your operator role determines what you can view and do in WatchGuard Cloud. Your role must have the Devices permissions to view or configure this feature. For more information, go to Manage WatchGuard Cloud Operators and Roles.

To add a FireboxV device as a cloud-managed device, it must meet these requirements:

Add a Cloud-Managed FireboxV to WatchGuard Cloud

When you add a FireboxV device to WatchGuard Cloud as a cloud-managed device, you configure the device name, time zone, external network settings, and device passwords. WatchGuard Cloud automatically configures other device settings with secure defaults.

To add a FireboxV device to WatchGuard Cloud as a cloud-managed device:

  1. Log in to your WatchGuard Cloud account.
  2. For Service Provider accounts, from Account Manager, select My Account.
  3. Select Manage > Devices or Configure > Devices.
  4. Click Add Device.
    A list of activated devices opens.
  5. Click the Name of the FireboxV device you want to add or click The add device iconThe add device icon.
    A confirmation dialog box opens.
  6. Click Add Device.
    The Add Device to WatchGuard Cloud page opens.

Screenshot of the Add Device page with the Cloud Management option selected

  1. From the Device Management drop-down list, select Cloud-Managed, then click Next.
    The Cloud Management page opens.
  2. From the Configuration Type drop-down list, select one of these configuration types:
    • Create a New Configuration
    • Copy a Configuration from Another Cloud-Managed Firebox
    • Import an .XML Configuration File

Screenshot of the Add Device page with the Configuration Type drop-down list

Upload the Payload and Connect the Firebox

Before you can manage your FireboxV device in WatchGuard Cloud, you must upload the payload you downloaded in WatchGuard Cloud.

The payload includes:

  • Verification code
  • Admin and status passwords
  • Initial configuration
  • Feature key

To upload the payload and connect your FireboxV device to WatchGuard Cloud:

  1. Open a web browser and go to https://<Firebox IP address>:8080.
    A security certificate notification appears in the browser. Click Continue or add an exception.
  2. Log in with the user name admin and the password readwrite.
    The Web Setup Wizard opens.
  3. Select the Enable Cloud Management check box and accept the end-user license agreement.

Screenshot of the Welcome Web Setup Wizard page

  1. Click Next.
  2. Upload the payload to the device.
    1. Type the admin password you created in the Add Device wizard in WatchGuard Cloud. This password decrypts the payload.
    2. Click Browse, navigate to the location where you saved the payload, and select the payload file.

Screenshot of the Upload Payload page in the Web Setup Wizard

  1. Click Next.
    The payload file uploads and applies changes to the Firebox. When the process finishes, you receive a message.

Screenshot of the Upload Payload complete page in the Web Setup Wizard

Verify the FireboxV Status

After you upload the payload and connect the FireboxV in the Web UI, log in to WatchGuard Cloud to verify the device connection status and other summary information on the Device Settings page and Live Status page in WatchGuard Cloud.

For more information:

Related Topics

About the WatchGuard Cloud User Interface

Recover the Firebox Connection to WatchGuard Cloud

Add a Cloud-Managed Firebox to WatchGuard Cloud

Add Firebox Cloud to WatchGuard Cloud (Cloud-Managed)

Copy Configuration Settings from a Cloud-Managed Firebox