User guide

Appendix A: Troubleshooting Firebox Connectivity
228 WatchGuard Firebox System
2 Connect one end of the crossover cable to the Optional Interface and
the other end to the External Interface, creating a loop. Power-cycle
the Firebox.
This cabling should produce the following light sequence on the front of the
Firebox:
Armed light: steady
Sys A light: flickering
(Do not be concerned with the lights on the Security Triangle Display indicating
traffic between interfaces.)
3 Disconnect the crossover cable from the Optional and External
Interfaces. Now, connect one end to the Trusted interface and the
other end to the Management Station. Do not turn off the Firebox.
4 Make sure the Management Station has a static IP address. If it
doesn't, change the TCP/IP settings to a static IP address. The
computer designated as the Management Station should be on the
same network as the configuration file, preferably the Trusted
network, so you do not need to reassign an IP address to your
computer after the configuration file has been uploaded.
The following is an example of a typical IP address scheme:
Management Station: 192.168.0.5
Subnet mask: 255.255.255.0
Default gateway: 192.168.0.1
Trusted Network: 192.168.0.1 (from the configuration file)
5 It is recommended that you double-check the IP address of the
Management Station. To do this, open a DOS prompt and type
ipconfig /all.
6 Use the Ping command to assign the Firebox a temporary IP address
so your Management Station can communicate with the Firebox. At
the DOS prompt, type ping 192.168.0.1 (this is the default
gateway of your computer). You will then see a request timeout. Ping
again. You should get four replies.
7 Open Policy Manager from Control Center. Do not connect to the
Firebox at this time.
8 In Policy Manager, select File => Open => Configuration File. Select
the configuration file you want to load onto the Firebox and load it
into Policy Manager.
9 In Policy Manager, select File => Save => To Firebox. You are then
prompted for the IP address of the Firebox and the Firebox
configuration passphrase. Use the address you used to ping the
Firebox and
wg for the passphrase.