User guide
Designating Log Hosts for a Firebox
User Guide 175
- Set the log encryption key on each log host identical to the key
set in Policy Manager
Designating Log Hosts for a Firebox
You should have at least one log host to run the WatchGuard Firebox
System. The default primary log host is the Management Station that is set
when you run the QuickSetup Wizard. You can specify a different
primary log host as well as multiple backup log hosts. The typical
medium-sized operation has two or three high-capacity log hosts.
Multiple log hosts operate in failover, not redundant mode. The primary
log host handles the bulk of the logging duties; others are called in as
needed when the highest-ranking log host is unavailable to receive logs.
Before setting up a log host, you need to have the following information:
• IP address of each log host
• Encryption key to secure the connection between the Firebox and log
hosts
• Priority order of primary and backup log hosts
For log host troubleshooting information, see the following FAQ:
https://support.watchguard.com/advancedfaqs/log_troubleshootinghost.asp
Adding a log host
From Policy Manager:
1 Select Setup => Logging.
The Logging Setup dialog box appears.
2 Click Add.
The Add IP Address dialog box appears, as shown in the following figure.