all | frequencies |
|
|
|
|
|
exhibits | applications |
---|---|---|---|---|---|---|---|---|
manuals | photos | label |
app s | submitted / available | |||||||
---|---|---|---|---|---|---|---|---|
1 2 |
|
Hardware Guide | Users Manual | 755.29 KiB | May 15 2020 | |||
1 2 |
|
Manual | Users Manual | 3.95 MiB | May 15 2020 | |||
1 2 |
|
Int | Internal Photos | 698.71 KiB | May 15 2020 | |||
1 2 |
|
Ext | External Photos | 833.59 KiB | May 15 2020 | |||
1 2 |
|
Label | ID Label/Location Info | 686.66 KiB | May 15 2020 | |||
1 2 |
|
Agent Authorization | Cover Letter(s) | 137.14 KiB | May 15 2020 | |||
1 2 | Block | Block Diagram | May 15 2020 | confidential | ||||
1 2 |
|
Confid | Cover Letter(s) | 184.98 KiB | May 15 2020 | |||
1 2 | Engineering Spec | Operational Description | May 15 2020 | confidential | ||||
1 2 | Ops | Operational Description | May 15 2020 | confidential | ||||
1 2 |
|
Quick Start | Test Setup Photos | 629.08 KiB | May 15 2020 | |||
1 2 |
|
RFx | RF Exposure Info | 29.47 KiB | May 15 2020 | |||
1 2 |
|
Report Appendix | Test Report | 3.47 MiB | May 15 2020 | |||
1 2 | Schema | Schematics | May 15 2020 | confidential | ||||
1 2 |
|
Setup | Test Setup Photos | 476.53 KiB | May 15 2020 | |||
1 2 |
|
Test Report | Test Report | 3.83 MiB | May 15 2020 | |||
1 2 | NII Security | SDR Software/Security Inf | May 15 2020 | confidential | ||||
1 2 |
|
Test Report Appendix | Test Report | 4.66 MiB | May 15 2020 |
1 2 | Hardware Guide | Users Manual | 755.29 KiB | May 15 2020 |
Firebox T20, T20-W Hardware Guide Firebox T20, T20-W FS2AE5, FS2AE5W About This Guide Information in this guide is subject to change without notice. Companies, names, and data used in examples herein are fictitious unless otherwise noted. No part of this guide may be reproduced or transmitted in any form or by any means, electronic or mechanical, for any purpose, without the express written permission of WatchGuard Technologies, Inc. Guide revised: 1/24/2020 Copyright, Trademark, and Patent Information Copyright 1998 2020 WatchGuard Technologies, Inc. All rights reserved. All trademarks or trade names mentioned herein, if any, are the property of their respective owners. Complete copyright, trademark, patent, and licensing information can be found in the Copyright and Licensing Guide, available online at https://www.watchguard.com/wgrd-help/documentation/overview. About WatchGuard WatchGuard Technologies, Inc. is a global leader in network security, providing best-in-class Unified Threat Management, Next Generation Firewall, secure Wi-Fi, and network intelligence products and services to more than 75,000 customers worldwide. The companys mission is to make enterprise-grade security accessible to companies of all types and sizes through simplicity, making WatchGuard an ideal solution for Distributed Enterprises and SMBs. WatchGuard is headquartered in Seattle, Washington, with offices throughout North America, Europe, Asia Pacific, and Latin America. To learn more, visit WatchGuard.com. For additional information, promotions and updates, follow WatchGuard on Twitter, @WatchGuard on Facebook, or on the LinkedIn Company page. Also, visit our InfoSec blog, Secplicity, for real-time information about the latest threats and how to cope with them at www.secplicity.org. Address 505 Fifth Avenue South Suite 500 Seattle, WA 98104 Support www.watchguard.com/support U.S. and Canada +877.232.3531 All Other Countries +1.206.521.3575 Sales U.S. and Canada +1.800.734.9905 All Other Countries +1.206.613.0895 WatchGuardTechnologies,Inc. i Contents WatchGuard Firebox T20/T20-W Hardware Guide Fireware OS About Your Hardware Hardware Specifications Interface Specifications Environmental Requirements Hardware Description Front Rear AC Power Adapter Wall Mounting Plate Restore Factory-Default Settings Notices Product Safety Certification Safety Warning Disclaimer Hinweise Zur Sicherheit Sicherheitshinweis Aviso De Seguridad Certificacin de seguridad del producto Advertencia de seguridad Federal Communications Commission Interference Statement IMPORTANT NOTE:
FCC Radiation Exposure Statement: (Wireless) Europe EU Declaration of Conformity (Wireless) CE Notice vii iv iv iv iv v v vi vi ix ix x xi xi xi xi xi xii xii xii xii xiii xiii xiii xiii xiv ii WatchGuardTechnologies,Inc. RoHS Statement WEEE Statement REACH Industry Canada Statement Caution:(Wireless) Avertissement:
For Mobile Device Usage (Wireless) Radiation Exposure Statement Dclaration dexposition aux radiations:
France (Wireless) Japan VCCI Notice (Class A ITE) Taiwan RoHS (T20) Taiwan Class A Notice Taiwan NCC Mexico Notice Limited Hardware Warranty Declaration of Conformity xiv xiv xv xv xvi xvi xvi xvi xvi xvi xvi xvii xvii xvii xviii xviii xx WatchGuardTechnologies,Inc. iii WatchGuardFireboxT20/T20-WHardwareGuide WatchGuard Firebox T20/T20-W Hardware Guide WatchGuard Firebox security appliances deliver unparalleled unified threat management, superior performance, ease of use, and value for your small organization or branch office. Our security subscriptions give you fully integrated protection from spyware, spam, viruses, worms, trojans, web-based exploits, and blended threats. From firewall and VPN protection to secure remote access, WatchGuard Firebox appliances support a broad range of network environments. This guide introduces the Firebox T20 RoHS-compliant (lead-free) hardware product. The Firebox T20 network security appliance is designed for small organizations and branch offices. Fireware OS The Firebox T20 supports WatchGuards next generation UTM OSFireware OS. Each Firebox appliance includes Fireware OS and delivers exceptional protection against today's sophisticated threats to make sure that your business stays connected. For more information on the features of Fireware OS, see Fireware Help. About Your Hardware Hardware Specifications Processor NXP LS1023A, 1.0GHz, 2-Core Memory DDR4 2GB with ECC Storage eMMC 4GB Power Supply Input Ratings: 100-240V AC, MAX 1.2A, 50-60Hz Output: 12V DC Dimensions D = 205.5 mm (8") W = 217 mm (8.5") H = 43 mm(1.7") Weight T20: 0.88 kg(1.94 lbs) T20W: 0.9 kg (1.98 lbs) iv WatchGuardTechnologies,Inc. WatchGuardFireboxT20/T20-WHardwareGuide Interface Specifications Network Interfaces 5 RJ45 connectors, 1000 Base-TX (10/100/1000Mbps) T20-W is compliant with the IEEE802.11AC wave1 standard. Radio Type and Frequency Band A single 3x3:3 radio that can operate on one of these bands:
(T20W) I/O Interfaces n 2.4 GHz 802.11 b/g/n n 5 GHz 802.11 a/n/ac 2x USB3.0, Type-A 1 RJ45 Serial Port Environmental Requirements To safely install your Firebox, we recommend that you:
n Install it indoors. permission to use it. n Put it in a secure area, such as a locked room, to block the device from people who do not have n Connect it to a conditioned power supply to prevent damage from sudden power changes. Other environmental requirements:
n Operating temperature: 0 to 40C (32 to 104F) n Operating humidity: 5% to 90% non-condensing n Non-operating temperature: 25 to 75C (-13 to 167F) n Non-operating humidity: 0% to 95% non-condensing WatchGuardTechnologies,Inc. v WatchGuardFireboxT20/T20-WHardwareGuide Hardware Description Front Front view of the Firebox:
Failover WAP The Failover indicator is lit when there is a WAN failover from the primary external interface to the backup interface. After the external interface connection fails back to the primary external interface, the indicator is not lit. On the Firebox T20-W model, the WAP indicator is lit when the appliance is activated as a wireless access point or a wireless client. The color indicates the active wireless radio band. The light blinks when data is sent and received. The speed of the blink increases as the data flow increases. Indicator Indicator Color Wireless Band WAP Yellow Green 2.4 GHz radio band 5 GHz radio band vi WatchGuardTechnologies,Inc. WatchGuardFireboxT20/T20-WHardwareGuide NetworkInterfaceStatusIndicators Indicator Indicator Color The Firebox T20 has five network interfaces. There are two status indicators for each interface. Blinks (speed of blink increases as the data flow Data sent and received Interface Status Link speed: 1000 Mbps Link speed: 10 Mbps or 100 Mbps Blinks (speed of blink increases as the data flow Data sent and received On On increases) increases) The Status indicator is lit when there is a management connection to the device. The Status indicator is lit for 30 seconds after you connect to the device with the Fireware Web UI or the command line interface. It is also lit when the device is polled by WatchGuard System Manager. The Mode indicator shows the status of the external network connection. If the device can connect to the external network and send traffic, the indicator is green. The indicator flashes if the device cannot send traffic to the external network. The Attn indicator is yellow when you start the device with the Reset button pressed. For more information, see RestoreFactory-DefaultSettings. The Power indicator is lit to indicate power status. It is green when the Firebox is powered on. 1000 Yellow 10/100 Green Status Mode Attn Power( ) Rear Rear view of the Firebox:
SerialPort(Console) The leftmost port is an RJ45 serial console port. An RJ45 serial cable is not included with the device. WatchGuardTechnologies,Inc. vii WatchGuardFireboxT20/T20-WHardwareGuide USBInterfaces NetworkInterfaces ResetButton PowerSwitch PowerInput The device includes two USB 3.0 interfaces. Connect a USB storage device for USB backup and restore, or to store a support snapshot. For more information, see Fireware Help. The Ethernet interfaces have standard RJ45 connectors and support link speeds of 10, 100, or 1000 Mbps. The Firebox T20 has five network interfaces. These interfaces are labeled 0/WAN, 1/LAN, 2, 3, 4. This resets the device. To restore the device to factory-default settings, see RestoreFactory-Default Settings. Controls the power supplied to the device. Move the switch to position 1 to power on the device, or position 0 to power it off. An AC power adapter is included with your device. Connect the AC adapter to the device and to a power source. The power supply tip is plus (+) polarity. Use only the supplied AC power adapter. viii WatchGuardTechnologies,Inc. WatchGuardFireboxT20/T20-WHardwareGuide AC Power Adapter The AC power adapter supplies power for the Firebox. The power supply connector has a screw-type retention mechanism. To prevent a disruption in the power supply, tighten the screw on the connector. Before you connect the adapter, verify that the color band on the cord matches the color ring around the power plug on the Firebox. To safely connect the power supply:
Insert the silver connector on the power cord into the power port on the Firebox. Tighten the screw until the connector is securely attached to the Firebox. A T20 Firebox shipped outside the United States includes four power plugs to connect to the AC power adapter. Use the correct power plug for the power source used in your country. Wall Mounting Plate The wall mounting plate (available separately) enables you to mount the Firebox on a wall in a good location to increase the wireless range. You need four screws 1/8" (3 mm) wide and at least 3/4" (18 mm) long to install the mounting plate. To install the wall mounting plate:
1. Place the wall mounting plate horizontally against the wall where you want to install the Firebox. 2. Securely screw the wall mounting plate to the wall with the four screws. 3. Align the two holes on the bottom of the Firebox with the two connection points on the mounting plate. 4. Push the Firebox toward the mounting plate, until the two connection points on the mounting plate are inside the holes on the bottom of the Firebox. Then press firmly down to seat the device on the plate. To remove the Firebox from the mounting plate, push the Firebox up slightly, and then pull out, to separate the connection points on the mounting plate from the holes on the bottom of the Firebox. WatchGuardTechnologies,Inc. ix WatchGuardFireboxT20/T20-WHardwareGuide Restore Factory-Default Settings If you have a problem in your configuration file that you cannot correct, you can restore the factory-default settings and start from a new configuration file. For example, if you do not know the administrator account passphrase, or if a power interruption causes damage to the Fireware OS, you can restore the Firebox to the factory-default settings and build your configuration again. To reset the Firebox to factory-default settings:
1. Power off the Firebox. 2. Press and hold the Reset button on the back of the Firebox. 3. Power on the Firebox while you continue to hold the Reset button. 4. Continue to hold the Reset button until the Attn indicator on the front of the Firebox begins to flash. 5. Release the Reset button. 6. Wait until the Attn indicator stays lit and does not flash. This can take 75 seconds or more. You must start the device again before you can connect to it. If you do not, when you try to connect to the device, a web page appears with the message, "Your device is running from a backup copy of firmware." This message also appears if the Reset button is stuck in the depressed position. If you continue to see this message, check the Reset button and start the device again. 7. Power off the Firebox. 8. Power on the Firebox. TheFireboxrestartswithfactory-defaultsettings. x WatchGuardTechnologies,Inc. Notices Notices All WatchGuard products are designed and tested to meet strict safety requirements. These requirements include product safety approvals and other global compliance standards. Please read the following instructions carefully before operating the product, and refer to them as needed to ensure the continued safe operation of your product. Product Safety Certification The WatchGuard product is safety certified under the following standards:
n CAN/CSA C22.2 No.60950-1-07, Second Edition 2014-10 n UL 60950-1, Second Edition 2014-10-14 n IEC 60950-1, 2005+A1:2009+A2:2013 n IEC 62368-1: 2014 2nd edition n EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Safety Warning n Do not place objects on the power cord. n Do not obstruct the ventilation openings. These openings prevent overheating of the machine. n Never push objects of any kind into slots or openings on this equipment. Making a contact with a voltage point or shorting out a part may result in fire or electrical shock. n When removing or installing an appliance, follow the general installation safety instructions. n You must disconnect the AC power cord from the Firebox before you remove the cover of the Firebox for any reason. n There is risk of explosion if the battery is replaced by an incorrect type. Dispose of used batteries according to the manufacturers instructions. n Disclaimer WatchGuard shall not be held liable if the end user alters, modifies, or repairs any WatchGuard hardware appliance. Hinweise Zur Sicherheit Alle WatchGuard Produkte werden entwickelt und getestet, um strenge Sicherheitsanforderungen zu erfllen. Diese Anforderungen umfassen Produktsicherheit Zulassungen und andere globale Compliance-
Standards. Bitte lesen Sie die folgenden Anweisungen sorgfltig, bevor Sie das Produkt, und bezeichnen sie als notwendig, um den sicheren Betrieb des Gerts zu gewhrleisten. Weitere Informationen finden Sie WatchGuardTechnologies,Inc. xi Notices in der elektronischen Hardware Guide. Die WatchGuard Produkt ist Sicherheit unter den folgenden Normen zertifiziert n CAN/CSA C22.2 No.60950-1-07, Second Edition 2014-10 n UL 60950-1, Second Edition 2014-10-14 n IEC 60950-1:2005+A1:2009+A2:2013 n IEC 62368-1: 2014 2nd edition n EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Sicherheitshinweis n Legen Sie keine Gegenstnde auf das Netzkabel. n Verdecken Sie nicht die Lftungsffnungen. Diese ffnungen verhindern eine berhitzung der Maschine. n Stecken Sie niemals Gegenstnde jeglicher Art in die Schlitze oder ffnungen des Gerts stecken. Der Kontakt mit einem spannungsfhrenden Punkt oder das Kurzschlieen eines Bauteils kann zu einem Brand oder elektrischen Schlag fhren. n Beim Entfernen oder Installieren eines Gertes, nach den allgemeinen Installation Sicherheitshinweise. Aviso De Seguridad Todos los productos WatchGuard estn diseados y probados para satisfacer estrictos requisitos de seguridad. Estos requisitos incluyen la homologacin de productos de seguridad y otras normas de cumplimiento global. Por favor, lea atentamente las siguientes instrucciones antes de utilizar el producto, y se refieren a ellos como sea necesario para garantizar el funcionamiento seguro y continuo de su producto. Informacin adicional se puede encontrar en la Gua del usuario electrnica. Certificacin de seguridad del producto El producto tiene certificacin de seguridad WatchGuard bajo las siguientes normas:
n CAN/CSA C22.2 No.60950-1-07, Second Edition 2014-10 n UL 60950-1, Second Edition 2014-10-14 n IEC 60950-1:2005+A1:2009+A2:2013 n IEC 62368-1: 2014 2nd edition n EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Advertencia de seguridad n No coloque objetos sobre el cable de alimentacin. n No obstruya las aberturas de ventilacin. Estas aberturas evitan el sobrecalentamiento de la mquina. n Nunca introduzca objetos de ningn tipo en las ranuras o aberturas del equipo. El contacto con puntos de voltaje o el cortocircuito de una pieza podra provocar un incendio o una descarga elctrica. n Al extraer o instalar un electrodomstico, siga las instrucciones generales de instalacin de seguridad. xii WatchGuardTechnologies,Inc. Notices Federal Communications Commission Interference Statement This equipment has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation. This equipment generates, uses and can radiate radio frequency energy and, if not installed and used in accordance with the instructions, may cause harmful interference to radio communications. However, there is no guarantee that interference will not occur in a particular installation. If this equipment does cause harmful interference to radio or television reception, which can be determined by turning the equipment off and on, the user is encouraged to try to correct the interference by one of the following measures:
n Reorient or relocate the device. n Increase the separation between the equipment and receiver. n Connect the equipment into an outlet on a circuit different from that to which the receiver is connected. n Consult the dealer or an experienced radio/TV technician for help. FCC Caution: Any changes or modifications not expressly approved by the party responsible for compliance could void the users authority to operate this equipment. Operation is subject to the following two conditions: (1) This device may not cause harmful interference, and
(2) this device must accept any interference received, including interference that may cause undesired operation. IMPORTANT NOTE:
FCC Radiation Exposure Statement: (Wireless) This equipment complies with FCC radiation exposure limits set forth for an uncontrolled environment. This equipment should be installed and operated with minimum distance 20cm between the radiator &vyour body. This transmitter must not be co-located or operating in conjunction with any other antenna or transmitter. Europe EU Declaration of Conformity (Wireless) This device complies with the essential requirements of the RED 2014/53/EU. The following test methods have been applied in order to prove presumption of conformity with the essential requirements of the RED 2014/53/EU:
n EN 60950-1 - Safety of Information Technology Equipment n EN 50385 - Generic standard to demonstrate the compliance of electronic and electrical apparatus with the basic restrictions related to human exposure to electromagnetic fields (0 Hz - 300 GHz) n EN 62368-1:2014+A11:2017 - Safety standard that classifies energy sources, prescribes safeguards against those energy sources, and provides guidance on the application of, and requirements for, those safeguards. WatchGuardTechnologies,Inc. xiii Notices n EN 300 328 - Electromagnetic compatibility and Radio spectrum Matters (ERM); Wideband Transmission systems; Data transmission equipment operating in the 2,4 GHz ISM band and using spread spectrum modulation techniques; Harmonized EN covering essential requirements under article 3.2 of the RED Directive n EN 301 893 - Broadband Radio Access Networks (BRAN); 5 GHz high performance RLAN;
Harmonized EN covering essential requirements of article 3.2 of the RED Directive n EN 301 489-1 - Electromagnetic compatibility and Radio Spectrum Matters (ERM); ElectroMagnetic Compatibility (EMC) standard for radio equipment and services; Part 1: Common technical requirements n EN 301 489-17 - Electromagnetic compatibility and Radio spectrum Matters (ERM); ElectroMagnetic Compatibility (EMC) standard for radio equipment and services; Part 17: Specific conditions for 2.4 GHz wideband transmission systems and 5 GHz high performance RLAN equipment This device is a 5GHz wideband transmission system (transceiver), intended for use in all EU member states and EFTA countries, except in France and Italy where restrictive use applies. In Italy the end-user should apply for a license at the national spectrum authorities in order to obtain authorization to use the device for setting up outdoor radio links and/or for supplying public access to telecommunications and/or network services. This device may not be used for setting up outdoor radio links in France and in some areas the RF output power may be limited to 10 mW EIRP in the frequency range of 2454 2483.5 MHz. For detailed information the end-user should contact the national spectrum authority in France. CE Notice symbol on your WatchGuard Technologies equipment indicates that it is in compliance with the The Electromagnetic Compatibility (EMC) directive and the Low Voltage Directive (LVD) of the European Union
(EU). RoHS Statement The member states of the European Union approved directive 2002/95/EC, Restrictions of Hazardous Substances (RoHS directive) that became valid on July 1, 2006. It states that all new electrical and electronic equipment put on the market within the member states must not contain certain hazardous materials. This device complies with the European Unions R0HS directive 2002/95/EC and similar regulations that may be adopted by other countries for European Sales. WEEE Statement WEEE is a general set of requirements dictated in the EU Directive 2002/96/EC. This Directive mandated that member EU countries enact regulations governing the Waste of Electrical and Electronic Equipment
(WEEE). The Directive, and its individual transpositions into specific country laws and legislation, is aimed at the reduction of WEEE through reuse, recovery, and recycling of WEEE. xiv WatchGuardTechnologies,Inc. Notices WatchGuard is working in partnership with our European Union (EU) distribution partners to ensure that our products are in compliance with the WEEE statutes, and that the recovery of our product per the specific EU country legislative requirements is seamless for our products end users. If you have a WatchGuard product that is at its end of life and needs to be disposed of, please contact WatchGuard Customer Care Department at:
U.S. Customers: 877.232.3531 International Customers: +1.206.613.0456 WatchGuard is reasonably confident that our products do not contain any substances or hazardous materials presently banned by any legislation, and do not present a risk due to hazardous materials. WEEE recovery professionals should also note that these products do not have any materials that are of particular high value in their individual form. REACH The new EU chemicals policy REACH (Registration, Evaluation, Authorization and restriction of Chemicals) came into effect on June 1, 2007. REACH is Europes new chemicals legislation, which is applicable in all 27 EU Member States as well as the EFTA European Economic Area (EEA). REACH creates a new system for gathering information, assessing risks to human health and the environment, and authorizing or restricting the marketing and use of chemicals produced or supplied in the EEA. REACH has an impact on EEA producers and importers of finished products and users of chemicals in the course of industrial or professional activities. WatchGuard supports the overall REACH objective of improving the protection of human health and the environment and will meet all applicable REACH requirements. WatchGuard is strongly committed to working with our customers and supply chain to define and implement the REACH requirements and ensure a smooth transition to compliance. One of the REACH requirements is that manufacturers and importers have the duty to register substances they are producing or importing. In accordance with the regulations, the products of WatchGuard do not need to be registered for the following reasons:
n WatchGuard does not import more than 1 metric ton per year of a substance as defined by REACH. n WatchGuard products are non-chemical products that are not designed to release any substance under normal and reasonably predictable application. n Our products do not contain the listed substances at more than 0.1% by weight of the whole product/part. Industry Canada Statement This device contains licence-exempt transmitter(s) that comply with Innovation, Science and Economic Development Canadas licence-exempt RSS(s). Operation is subject to the following two conditions:
(1) this device may not cause interference,
(2) this device must accept any interference, including interference that may cause undesired operation of the device. WatchGuardTechnologies,Inc. xv Notices Lmetteur exempt de licence contenu dans le prsent appareil est conforme aux CNR dInnovation, Sciences et Dveloppement conomique Canada applicables aux appareils radio exempts de licence. Lexploitation est autorise aux deux conditions suivantes :
1) Lappareil ne doit pas produire de brouillage;
2) Lappareil doit accepter tout brouillage radiolectrique subi, mme si le brouillage est susceptible den compromettre le fonctionnement. Caution:(Wireless)
(i) The device for operation in the band 5150-5250 MHz is only for indoor use to reduce the potential for harmful interference to co-channel mobile satellite systems;
(ii) high-power radars are allocated as primary users (i.e. priority users) of the bands 5250-5350 MHz and 5650-5850 MHz and that these radars could cause interference and/or damage to LE-LAN devices. Avertissement:
Les dispositifs fonctionnant dans la bande 5150-5 250 MHz sont rservs uniquement pour une utilisation lintrieur afin de rduire les risques de brouillage prjudiciable aux systmes de satellites mobiles utilisant les mmes canaux. For Mobile Device Usage (Wireless) Radiation Exposure Statement This equipment complies with IC radiation exposure limits set forth for an uncontrolled environment. This equipment should be installed and operated with minimum distance 20cm between the radiator & your body. Dclaration dexposition aux radiations:
Cet quipement est conforme aux limites dexposition aux rayonnements IC tablies pour un environnement non contrl. Cet quipement doit tre install et utilis avec un minimum de 20cm de distance entre la source de rayonnement et votre corps. France (Wireless) Les dispositifs fonctionnant dans la bande 5150-5250 MHz est rserv une utilisation en intrieur pour rduire le risque de brouillage prjudiciable aux systmes mobiles par satellite utilisant les mmes canaux;
propia operacin no deseada. Japan VCCI Notice (Class A ITE) VCCI A VCCI-A xvi WatchGuardTechnologies,Inc. Taiwan RoHS (T20) Notices Taiwan Class A Notice Taiwan NCC
, , MPE (MPE) 1mW/cm2 0.338 mW/cm2 WatchGuardTechnologies,Inc. xvii Notices Mexico Notice La operacin de este equipo est sujeta a las siguientes dos condiciones:
(i) es posible que este equipo o dispositivo no cause interferencia perjudicial y
(ii) este equipo o dispositivo debe aceptar cualquier interferencia, incluyendo la que pueda causar su operacin no deseada. Limited Hardware Warranty This Limited Hardware Warranty (the Warranty) applies to the enclosed hardware product, not including any associated software, which is licensed pursuant to a separate end-user license agreement and warranty (the Product). BY USING THE PRODUCT, YOU (either an individual or a single entity) AGREE TO THE TERMS HEREOF. If you do not agree to these terms, please return this package, along with proof of purchase, to the authorized dealer from which you purchased it for a full refund. WatchGuard Technologies, Inc.
(WatchGuard) and you agree as set forth below or on the reverse side of this card, as applicable. 1. LIMITED WARRANTY. WatchGuard warrants that upon delivery and for one (1) year thereafter (the Warranty Period): (a) the Product will be free from material defects in materials and workmanship, and
(b) the Product, when properly installed and used for its intended purpose and in its intended operating environment, will perform substantially in accordance with WatchGuard applicable specifications. This warranty does not apply to any Product that has been: (i) altered, repaired or modified by any party other than WatchGuard except for the replacement or inclusion of specified components authorized in, and performed in strict accordance with, documentation provided by WatchGuard; or (ii) damaged or destroyed by force majeure events, accidents, power spikes or similar events or by any intentional, reckless or negligent acts or omissions of any party. You may have additional warranties with respect to the Product from the manufacturers of Product components. However, you agree not to look to WatchGuard for, and hereby release WatchGuard from any liability for, performance of, enforcement of, or damages or other relief on account of, any such warranties or any breach thereof. 2. REMEDIES. If any Product does not comply with the WatchGuard warranties set forth in Section 1 above, WatchGuard will, following the receipt of the product you claim is defective and at its option, either (a) repair the Product, or (b) replace the Product with a like or similar product; provided, that you will be responsible for returning the Product and for all costs of shipping and handling. Repair or replacement of the Product shall not extend the Warranty Period. Any Product, component, part or other item replaced by WatchGuard becomes the property of WatchGuard. WatchGuard shall not be responsible for return of or damage to any software, firmware, information or data contained in, stored on, or integrated with any returned Products. 3. DISCLAIMER AND RELEASE. THE WARRANTIES, OBLIGATIONS AND LIABILITIES OF WATCHGUARD, AND YOUR REMEDIES, SET FORTH IN PARAGRAPHS 1 AND 2 ABOVE ARE EXCLUSIVE AND IN SUBSTITUTION FOR, AND YOU HEREBY WAIVE, DISCLAIM AND RELEASE ANY AND ALL OTHER WARRANTIES, OBLIGATIONS AND LIABILITIES OF WATCHGUARD AND ALL OTHER RIGHTS, CLAIMS AND REMEDIES YOU MAY HAVE AGAINST WATCHGUARD, EXPRESS OR IMPLIED, ARISING BY LAW OR OTHERWISE, WITH xviii WatchGuardTechnologies,Inc. Notices RESPECT TO ANY NONCONFORMANCE OR DEFECT IN THE PRODUCT (INCLUDING, BUT NOT LIMITED TO, ANY IMPLIED WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE, ANY IMPLIED WARRANTY ARISING FROM COURSE OF PERFORMANCE, COURSE OF DEALING, OR USAGE OF TRADE, ANY WARRANTY O NONINFRINGEMENT, ANY WARRANTY OF UNINTERRUPTED OR ERROR-FREE OPERATION, ANY OBLIGATION, LIABILITY, RIGHT, CLAIM OR REMEDY IN TORT, WHETHER OR NOT ARISING FROM THE NEGLIGENCE (WHETHER ACTIVE, PASSIVE OR IMPUTED) OR FAULT OF WATCHGUARD OR FROM PRODUCT LIABILITY, STRICT LIABILITY OR OTHER THEORY, AND ANY OBLIGATION, LIABILITY, RIGHT, CLAIM OR REMEDY FOR LOSS OR DAMAGE TO, OR CAUSED BY OR CONTRIBUTED TO BY, THE PRODUCT). 4. LIMITATION AND LIABILITY. WATCHGUARDS LIABILITY (WHETHER ARISING IN CONTRACT (INCLUDING WARRANTY), TORT (INCLUDING ACTIVE, PASSIVE OR IMPUTED NEGLIGENCE AND STRICT LIABILITY AND FAULT) OR OTHER THEORY) WITH REGARD TO ANY PRODUCT WILL IN NO EVENT EXCEED THE PURCHASE PRICE PAID BY YOU FOR SUCH PRODUCT. THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY. IN NO EVENT WILL WATCHGUARD BE LIABLE TO YOU OR ANY THIRD PARTY (WHETHER ARISING IN CONTRACT (INCLUDING WARRANTY), TORT (INCLUDING ACTIVE, PASSIVE OR IMPUTED NEGLIGENCE AND STRICT LIABILITY AND FAULT) OR OTHER THEORY) FOR COST OF COVER OR FOR ANY INDIRECT, SPECIAL, INCIDENTAL, OR CONSEQUENTIAL DAMAGES (INCLUDING WITHOUT LIMITATION LOSS OF PROFITS, BUSINESS, OR DATA) ARISING OUT OF OR IN CONNECTION WITH THIS WARRANTY OR THE USE OF OR INABILITY TO USE THE PRODUCT, EVEN IF WATCHGUARD HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY. 5. MISCELLANEOUS PROVISIONS. This Warranty will be governed by the laws of the state of Washington, U.S.A., without reference to its choice of law rules. The provisions of the 1980 United Nations Convention on Contracts for the International Sales of Goods, as amended, shall not apply. You agree not to directly or indirectly transfer the Product or use of the product or associated documentation to any country to which such transfer would be prohibited by the U.S. Export laws and regulations. If any provision of this Warranty is found to be invalid or unenforceable, then the remainder shall have full force and effect and the invalid provision shall be modified or partially enforced to the maximum extent permitted by law to effectuate the purpose of this Warranty. This is the entire agreement between WatchGuard and you relating to the Product, and supersedes any prior purchase order, communications, advertising or representations concerning the Product AND BY USING THE PRODUCT YOU AGREE TO THESE TERMS. IF THE PRODUCT IS BEING USED BY AN ENTITY, THE INDIVIDUAL INDICATING AGREEMENT TO THESE TERMS BY USING THE PRODUCT REPRESENTS AND WARRANTS THAT (A) SUCH INDIVIDUAL IS DULY AUTHORIZED TO ACCEPT THE WARRANTY ON BEHALF OF THE ENTITY AND TO BIND THE ENTITY TO THE TERMS OF THIS WARRANTY; (B) THE ENTITY HAS THE FULL POWER, CORPORATE OR OTHERWISE, TO ENTER INTO THE WARRANTY AND PERFORM ITS OBLIGATIONS UNDER THE WARRANTY AND; (C) THE WARRANTY AND THE PERFORMANCE OF THE ENTITYS OBLIGATIONS UNDER THE WARRANTY DO NOT VIOLATE ANY THIRD-PARTY AGREEMENT TO WHICH THE ENTITY IS A PARTY. No change or modification of the Warranty will be valid unless it is in writing and is signed by WatchGuard. WatchGuardTechnologies,Inc. xix Notices Declaration of Conformity xx WatchGuardTechnologies,Inc.
1 2 | Manual | Users Manual | 3.95 MiB | May 15 2020 |
Firebox T20 / T20-W HW Models: FS2AE5, FS2AE5W Quick Start Guide Guide de dmarrage rapide Kurzanleitung Guida introduttiva Gua Rpida Guia de incio rpido WatchGuard Technologies, Inc. D R A F T E n g l i s h Activate Your Device 1. Go to www.watchguard.com/activate 2. Log in to your WatchGuard account, or create a new account*.
*If you create a new account, return to www.watchguard.com/activate after you finish the account creation process. 3. Type the serial number for your device. 4. During activation, select your setup method:
RapidDeploy QuickStart Automatically download and apply a QuickStart configuration file to your device, pre-configured with security settings recommended by WatchGuard. Classic Activation Use the Web Setup Wizard to create a basic configuration file for your device. 5. Use the setup directions in this guide that match the method you selected. 2 3 D R A F T RapidDeploy QuickStart Setup 1. Connect Your Device and Power it On Make sure the computers on your network are configured to use DHCP. When you install your Firebox, it will assign an IP address on the 10.0.1.0/24 network. Classic Activation Setup 1. Connect Your Device and Power it On Make sure your computer is configured to use DHCP. When you connect to the Firebox, it will assign an IP address on the 10.0.1.0/24 network. Computer Internet E n g l i s h Your Network Internet 2. Connect to the Web UI A. Go to https://10.0.1.1:8080 B. You can safely ignore any certificate warnings you see because the device uses a self-signed certificate. C. Log in with the user account admin and the Admin (readwrite) passphrase you set during activation. Your device has a basic configuration:
Allows outbound TCP, UDP, and ping traffic Blocks all unrequested traffic from the external network Uses licensed security services to protect the trusted and optional networks Includes optimized security settings 4 2. Connect to the Web UI A. Go to https://10.0.1.1:8080 B. You can safely ignore certificate warnings, because the device uses a self-signed certificate. C. Log in with the user name admin and the passphrase readwrite. D. Follow the directions in the Web Setup Wizard to create a basic configuration file for a new device. Click More Information if you have questions. E. When the Wizard completes, log in to the Web UI with the admin user account and the Admin (readwrite) passphrase you set during the Wizard. F. Install the Firebox in your network. Your device has a basic configuration:
Allows outbound TCP, UDP, and ping traffic Blocks all unrequested traffic from the external network Uses licensed security services to protect the trusted and optional networks Inspects outgoing FTP, HTTP, and HTTPS traffic 5 D R A F T Next Steps Congratulations! You have finished basic setup of your Firebox. You can use the Web UI to view and edit your configuration and to manage and monitor your Firebox. Or, you can download and install WatchGuard System Manager (WSM) and use Policy Manager and the WSM suite of management and monitoring tools. Here are some recommendations to help you get started:
Verify your Internet connectivity With your Firebox installed in your network, make sure that your users can successfully browse the Internet. Get the latest software To upgrade the Firebox OS:
1. Log in to Fireware Web UI. 2. Select System > Upgrade OS. To get the latest version of WSM, WatchGuard Dimension, VPN clients, and other software for your Firebox:
1. Go to www.watchguard.com/support and click Download Software. 2. Find the software downloads page for the Firebox T35 and select the software you want to install. Explore the Features and Functions of Your Firebox Browse the Web UI or the tools in WatchGuard System Manager and click Help on any page or dialog box to learn more about the management, monitoring, and security features of your Firebox. About the Device Status Lights Fail Over Lights when there is a WAN failover from the primary external interface to the backup interface. WAP - (Wireless models only) Lights when the device is activated as a wireless access point or as a wireless client. Network interface status indicators The Firebox T35 has five network interfaces. There are two status indicators for each interface. Indicator color Interface Status E n g l i s h Indicator 1000 10/100 Yellow Blinks*
Green Blinks*
Link speed: 1000 Mbps Data sent and received Link speed: 10 Mbps or 100 Mbps Data sent and received
* Blink speed increases as the data flow increases Status Shows when there is a management connection to the device. The Status indicator is lit for 30 seconds after you connect to the device with the Fireware Web UI or the command line interface. It is also lit when the device is polled by WatchGuard System Manager. Mode Shows the status of the external network connection. If the device can connect to the external network and send traffic, the indicator is green. The indicator flashes if the device cannot connect to the external network and send traffic. Attn Lights when you start the device with the Reset button pressed. Power ( ) The power indicator is lit when the device is on. 6 7 D R A F T Reset the Firebox to Factory-Default Settings If you ever need to, you can restore your Firebox to its factory-default settings. For example, if you do not know your administrator account passphrase or you want to start over with RapidDeploy QuickStart, you can reset your device. 1. www.watchguard.com/activate 2. WatchGuard *
* www.watchguard.com/activate For more information, see the Hardware Guide for your Firebox, available at:
www.watchguard.com/help/documentation/hardware.asp 3. 4. WatchGuard 5. 8 9 D R A F T 1. DHCPIP Firebox 10.0.1.0/24 IP 1. DHCPIP Firebox 10.0.1.0/24 IP Internet Internet 2. A. https://10.0.1.1:8080 B. C. admin readwrite TCPUDP Ping 2. A. https://10.0.1.1:8080 B. C. admin readwrite D.
(More Information) E. admin readwrite F. Firebox TCPUDP Ping 10 11 D R A F T FTPHTTP HTTPS Firebox Firebox WatchGuard WSM WSM Fail Over WAN WAP Firebox T35 5 1000 10/100
1000 Mbps 10 Mbps 100 Mbps
Status Fireware 30 WatchGuard System Manager Mode Attn (Reset) Power (
) Internet Firebox Firebox 1. Fireware 2. >
Firebox WSMWatchGuard DimensionVPN 1. www.watchguard.com/support 2. Firebox T30/T50 Firebox WatchGuard Firebox 12 13 D R A F T Firebox Firebox FireboxHardware Guide www.watchguard.com/help/documentation/hardware.asp F r a n a i s Activation de votre appareil 1. Rendez-vous l'adresse www.watchguard.com/activate 2. Connectez-vous votre compte WatchGuard ou crez un nouveau compte*.
*Si vous crez un nouveau compte, retournez l'adresse www.watchguard.com/activate la fin du processus de cration de compte. 3. Saisissez le numro de srie de votre appareil. 4. Lors de l'activation, slectionnez votre mthode de configuration:
RapidDeploy QuickStart: tlchargement et application automatiques d'un fichier de configuration QuickStart sur votre appareil. Ce fichier est pr-configur avec les paramtres de scurit recommands par WatchGuard. Classic Activation: utilisation de l'Assistant de configuration Web pour gnrer un fichier de configuration de base pour votre appareil. 5. Suivez les instructions de configuration correspondant la mthode slectionne. 14 15 D R A F T Configuration RapidDeploy QuickStart 1. Branchement et mise sous tension de votre appareil Assurez-vous que les ordinateurs de votre rseau sont configurs pour utiliser le protocole DHCP. Lorsque vous installez votre Firebox, il attribue une adresseIP sur le rseau 10.0.1.0/24 Configuration Classic Activation 1. Branchement et mise sous tension de votre appareil Assurez-vous que votre ordinateur est configur pour utiliser le protocole DHCP. Lorsque vous connectez votre Firebox, il attribue une adresseIP sur le rseau 10.0.1.0/24 Ordinateur Internet F r a n a i s Votre rseau Internet 2. Connexion l'interface utilisateur Web A. Rendez-vous l'adresse https://10.0.1.1:8080 B. Votre appareil utilisant un certificat auto-sign, vous pouvez, sans risque, ignorer les avertissements lis aux certificats. C. Connectez-vous avec le compte utilisateur admin et le mot de passe Admin
(readwrite) que vous avez dfinis lors de l'activation. Votre appareil prsente une configuration de base:
Trafic sortant TCP, UDP et Ping autoriss Blocage de tout le trafic non demand en provenance du rseau externe Paramtres de scurit optimiss Utilisation de services de scurit sous licence pour protger les rseaux approuvs et en option 16 2. Connexion l'interface utilisateur Web A. Rendez-vous l'adresse https://10.0.1.1:8080 B. Votre appareil utilisant un certificat auto-sign, vous pouvez, sans risque, ignorer les avertissements lis aux certificats. C. Connectez-vous avec le nom d'utilisateur admin et le mot de passe readwrite. D. Suivez les instructions de l'Assistant de configuration Web pour gnrer un fichier de configuration pour un nouvel appareil. Si vous avez des questions, cliquez sur Plus d'informations. E. Une fois que l'Assistant a termin, connectez-vous l'interface utilisateur Web avec le nom d'utilisateur admin et le mot de passe Admin (readwrite) que vous avez dfinis dans l'Assistant. Installez le Firebox dans votre rseau. F. Votre appareil prsente une configuration de base:
Trafic sortant TCP, UDP et Ping autoriss Blocage de tout le trafic non demand en provenance du rseau externe Utilisation de services de scurit sous licence pour protger les rseaux Inspection du trafic sortant FTP, HTTP et HTTPS approuvs et en option 17 D R A F T tapes suivantes Flicitations! Vous avez prsent termin la configuration de base de votre Firebox. Vous pouvez utiliser linterface utilisateur Web pour consulter et modifier votre configuration, mais aussi pour grer et contrler votre Firebox. Autrement, vous pouvez tlcharger et installer WatchGuard System Manager (WSM) et utiliser Policy Manager et la suite WSM doutils de gestion et de surveillance. Voici quelques recommandations pour dbuter:
Vrifiez votre connectivit Internet Une fois votre Firebox install dans votre rseau, assurez-vous que vos utilisateurs peuvent naviguer correctement sur Internet. Procurez-vous le logiciel le plus rcent Pour mettre niveau le systme dexploitation du Firebox:
1. Connectez-vous linterface utilisateur Web de Fireware. 2. Slectionnez System > Upgrade OS (Systme > Mise niveau du systme dexploitation). Pour obtenir la toute dernire version de WSM, de WatchGuard Dimension, des clients VPN et dautres logiciels pour votre Firebox:
1. Rendez-vous ladresse www.watchguard.com/support et cliquez sur Download Software (Tlchargements de logiciels). 2. Recherchez la page des tlchargements de logiciels pour le FireboxT30/T50 et slectionnez le logiciel installer. Examen des fonctions de votre Firebox Accdez linterface utilisateur Web ou aux outils de WatchGuard System Manager et cliquez sur licne dAide dune page ou dune bote de dialogue pour en savoir plus sur les fonctions de gestion, de surveillance et de scurit de votre Firebox. propos des tmoins d'tat de l'appareil Fail Over (Basculement): s'allume en cas de basculement WAN depuis l'interface externe principale vers l'interface de secours. WAP (modles sans fil uniquement): s'allume lorsque l'appareil est activ en tant que point d'accs sans fil ou en tant que client sans fil. Indicateurs d'tat des interfaces rseau: le Firebox T35 possde cinq interfaces rseau. Chaque interface comporte deux indicateurs d'tat. Couleur de l'indicateur tat de l'interface F r a n a i s Indicateur 1000 10/100 Jaune Clignote*
Vert Clignote*
Vitesse des liens: 1000 Mbps Donnes envoyes et reues Vitesse des liens: 10 Mbps ou 100 Mbps Donnes envoyes et reues
* La vitesse de clignotement augmente avec le dbit du flux de donnes Status (tat): indique qu'il y a une connexion de gestion avec l'appareil. L'indicateur d'tat s'allume pendant 30 secondes aprs avoir connect l'appareil l'interface utilisateur Web de Fireware ou l'interface de ligne de commande. Il s'allume galement lorsque l'appareil est sond par WatchGuard System Manager. Mode: indique l'tat de la connexion du rseau externe. Si l'appareil peut se connecter au rseau externe et envoyer du trafic, cet indicateur est vert. Si l'appareil ne peut pas se connecter au rseau externe et envoyer du trafic, cet indicateur clignote. Attn: s'allume lorsque vous dmarrez l'appareil tout en maintenant le bouton Reset
(Rinitialiser) enfonc. Power (Alimentation) (
sous tension.
): l'indicateur d'alimentation s'allume lorsque l'appareil est 18 19 D R A F T Rtablissement des paramtres d'usine du Firebox En cas de besoin, vous pouvez rinitialiser votre Firebox sur ses paramtres d'usine. Par exemple, vous pouvez rinitialiser votre appareil si vous ne connaissez pas le mot de passe de votre compte administrateur ou si vous souhaitez recommencer l'aide de RapidDeploy QuickStart. Pour en savoir plus, reportez-vous au Guide du matriel pour votre Firebox, disponible l'adresse suivante:
www.watchguard.com/help/documentation/hardware.asp D e u t s c h Gert aktivieren 1. Rufen Sie die Website www.watchguard.com/activate auf. 2. Melden Sie sich bei Ihrem WatchGuard-Account an oder erstellen Sie ein neues Konto*.
*Falls Sie ein neues Konto erstellen, kehren Sie nach erfolgreichem Abschluss zur Seite www.watchguard.com/activate zurck. 3. Geben Sie die Seriennummer Ihres Gerts ein. 4. Whlen Sie bei der Aktivierung eines der folgenden Setup-Verfahren aus:
RapidDeploy-Schnellstart Sie knnen automatisch eine Schnellstart-
Konfigurationsdatei auf Ihr Gert herunterladen und ausfhren. Hierbei sind die von WatchGuard empfohlenen Sicherheitseinstellungen bereits vorkonfiguriert. Klassische Aktivierung Erstellen Sie mithilfe des Web-Setup-Assistenten eine Basiskonfigurationsdatei fr Ihr Gert. 5. Folgen Sie den Setup-Anweisungen in diesem Handbuch fr das von Ihnen gewhlte Verfahren. 20 21 D R A F T Setup mit RapidDeploy-Schnellstart 1. Gert anschlieen und einschalten Stellen Sie sicher, dass die Computer in Ihrem Netzwerk fr die Verwendung von DHCP konfiguriert sind. Wenn Sie Ihre Firebox installieren, wird eine IP-Adresse im Netzwerk 10.0.1.0/24 zugewiesen. Ihr Netzwerk Internet Setup mit klassischer Aktivierung 1. Gert anschlieen und einschalten Stellen Sie sicher, dass Ihr Computer fr die Verwendung von DHCP konfiguriert ist. Wenn Sie eine Verbindung zu Ihrer Firebox herstellen, wird eine IP-Adresse im Netzwerk 10.0.1.0/24 zugewiesen. Internet Computer D e u t s c h 2. Verbindung zum Web-Interface herstellen A. Rufen Sie die Website https://10.0.1.1:8080 auf. B. Etwaig angezeigte Zertifikatswarnungen knnen Sie ignorieren, da das Gert ein selbstsigniertes Zertifikat verwendet. C. Melden Sie sich mit dem Benutzerkonto admin und dem Admin-Kennwort
(readwrite) an, das Sie whrend der Aktivierung festgelegt haben. Ihr Gert verfgt ber die folgende Basiskonfiguration:
Untersttzung fr ausgehenden TCP-, UDP- und Ping-Datenverkehr Blockierung von nicht angefordertem Datenverkehr aus dem externen Netzwerk Bereitstellung optimierter Sicherheitseinstellungen Verwendung lizenzierter Sicherheitsdienste zum Schutz vertrauenswrdiger und optionaler Netzwerke 22 2. Verbindung zum Web-Interface herstellen A. Rufen Sie die Website https://10.0.1.1:8080 auf. B. Eventuell angezeigte Zertifikatswarnungen knnen Sie ignorieren, da das Gert ein selbstsigniertes Zertifikat verwendet. C. Melden Sie sich mit dem Benutzernamen admin und dem Kennwort readwrite an. D. Folgen Sie den Anweisungen im Web-Setup-Assistenten, um eine Basiskonfigurationsdatei fr ein neues Gert zu erstellen. Klicken Sie bei weiteren Fragen auf More Information. E. Melden Sie sich nach Abschluss des Assistenten mit dem Benutzerkonto admin und dem Admin-Kennwort (readwrite), das Sie mit dem Assistenten festgelegt haben, an der Web-Schnittstelle an. Installieren Sie die Firebox in Ihrem Netzwerk. F. Ihr Gert verfgt ber die folgende Basiskonfiguration:
Untersttzung fr ausgehenden TCP-, UDP- und Ping-Datenverkehr Blockierung von nicht angefordertem Datenverkehr aus dem externen Netzwerk Prfung von ausgehendem FTP-, HTTP- und HTTPS-Datenverkehr Verwendung lizenzierter Sicherheitsdienste zum Schutz vertrauenswrdiger und optionaler Netzwerke 23 D R A F T Weitere Schritte Herzlichen Glckwunsch! Sie haben das Basis-Setup fr Ihre Firebox abgeschlossen. ber das Web-Interface knnen Sie Ihre Konfiguration anzeigen lassen sowie bearbeiten und Ihre Firebox verwalten und berwachen. Alternativ knnen Sie den WatchGuard System Manager (WSM) herunterladen und installieren und den Policy Manager und die WSM-
Suite mit Management- und berwachungstools verwenden. Tipps fr den Start:
Internetverbindung berprfen Stellen Sie sicher, dass Ihre Nutzer nach der Installation der Firebox im Netzwerk problemlos im Internet navigieren knnen. Neueste Software implementieren So fhren Sie ein Upgrade des Firebox-Betriebssystems durch:
1. Melden Sie sich beim Fireware Web UI an. 2. Whlen Sie die Option System > Upgrade OS aus. So rufen Sie die neueste Version von WSM, WatchGuard Dimension, VPN-Clients und anderer Software fr die Firebox ab:
1. Rufen Sie die Website www.watchguard.com/support auf, und klicken Sie auf Download Software. 2. Gehen Sie auf die Seite mit den Software-Downloads fr die Firebox T30/T50, und whlen Sie die zu installierende Software aus. Merkmale und Funktionen der Firebox erkunden Durchsuchen Sie das Web-Interface oder die Tools in WatchGuard System Manager und klicken Sie auf einer beliebigen Seite oder in einem beliebigen Dialogfeld auf Help, um weitere Informationen zu den Verwaltungs-, berwachungs- und Sicherheitsmerkmalen Ihrer Firebox zu erhalten. D e u t s c h Informationen zu den Statusanzeigen des Gerts Fail Over Diese Anzeige leuchtet bei WAN-Failover zwischen der primren externen Schnittstelle und der Backup-Schnittstelle. WAP (nur bei Drahtlosmodellen) Diese Anzeige leuchtet, wenn das Gert als Wireless Access Point oder als drahtloser Client aktiviert wurde. Statusanzeigen der Netzwerkschnittstellen Die Firebox T35 verfgt ber fnf Netzwerkschnittstellen. Fr jede Schnittstelle gibt es zwei Statusanzeigen. Anzeige 1000 10/100 Farbsignal Schnittstellenstatus Gelb Blinkt*
Grn Blinkt*
Verbindungsgeschwindigkeit: 1000 MBit/s Daten werden gesendet und empfangen Verbindungsgeschwindigkeit: 10 MBit/s oder 100 MBit/s Daten werden gesendet und empfangen
* Bei zunehmendem Datenverkehr erhht sich die Blinkfrequenz Status Zeigt an, ob eine Verwaltungsverbindung zum Gert besteht. Die Statusanzeige leuchtet 30 Sekunden lang, nachdem Sie ber das Fireware-Web-Interface oder das Kommandozeileninterface die Verbindung zum Gert hergestellt haben. Sie leuchtet auerdem, wenn das Gert vom WatchGuard System Manager abgefragt wird. Mode Zeigt den Status der externen Netzwerkverbindung an. Die Anzeige leuchtet grn, wenn das Gert eine Verbindung zum externen Netzwerk herstellen und Datenverkehr senden kann. Die Anzeige blinkt, wenn das Gert keine Verbindung zum externen Netzwerk herstellen und keinen Datenverkehr senden kann. Attn Diese Anzeige leuchtet, wenn Sie das Gert mit gedrckter Reset-Taste starten. Ein/Aus (
) Diese Anzeige leuchtet, wenn das Gert eingeschaltet ist. 24 25 D R A F T Zurcksetzen der Firebox auf die Standard-
Werkseinstellungen Falls erforderlich, lassen sich jederzeit die Werkseinstellungen Ihrer Firebox wiederherstellen. Sie knnen Ihr Gert beispielsweise zurcksetzen, wenn Sie Ihr Kennwort fr das Administratorkonto vergessen haben oder den RapidDeploy QuickStart durchfhren mchten. Weitere Informationen finden Sie im Hardwarehandbuch fr Ihre Firebox. Sie finden es unter:
www.watchguard.com/help/documentation/hardware.asp I t a l i a n o Attivazione del dispositivo 1. Vai su www.watchguard.com/activate 2. Accedi al tuo account WatchGuard, oppure creane uno nuovo*.
*Se crei un nuovo account, ritorna a www.watchguard.com/activate dopo aver terminato la procedura di creazione dellaccount. 3. Digita il numero di serie del tuo dispositivo. 4. Durante lattivazione, seleziona il metodo di installazione preferito:
RapidDeploy QuickStart Scarica automaticamente e applica il file di configurazione sul tuo dispositivo, con le impostazioni di sicurezza consigliate da WatchGuard. Attivazione classica Utilizza la procedura guidata, attraverso linterfaccia di gestione via Web, per creare il file di configurazione base per il tuo dispositivo. 5. Utilizza le istruzioni per linstallazione contenute in questa guida, corrispondenti al metodo selezionato. 26 27 D R A F T Impostazione di RapidDeploy QuickStart 1. Collegamento e accensione del dispositivo Assicurati che i computer collegati alla rete siano configurati per utilizzare il protocollo DHCP. Quando installi il tuo Firebox, questo assegner al computer un indirizzo IP nella sottorete 10.0.1.0/24 La tua rete Impostazioni di attivazione classiche 1. Collegamento e accensione del dispositivo Verifica che il computer in uso sia configurato per utilizzare il protocollo DHCP. Quando installi il tuo Firebox, questo assegner al computer un indirizzo IP nella sottorete 10.0.1.0/24 Computer Internet I t a l i a n o Internet 2. Collegamento all'interfaccia di gestione via Web A. Vai all'indirizzo https://10.0.1.1:8080 B. Puoi ignorare l'avviso di sito web non sicuro dovuto al certificato SSL, perch il dispositivo utilizza un certificato auto-firmato. C. Accedi con laccount utente admin e la passphrase di amministratore (readwrite) impostata durante lattivazione. Il dispositivo contiene una configurazione di base:
Consente il traffico TCP e UDP in uscita, e il ping Blocca tutto il traffico non richiesto dalla rete esterna Utilizza i servizi di sicurezza concessi in licenza per proteggere le reti affidabili e Include impostazioni di sicurezza ottimizzate opzionali 28 2. Collegamento all'interfaccia di gestione via Web A. Vai all'indirizzo https://10.0.1.1:8080 B. Puoi ignorare tranquillamente qualsiasi avviso di certificato visualizzato perch il dispositivo utilizza un certificato autofirmato. C. Accedi con il nome utente admin e la passphrase readwrite. D. Per creare un file di configurazione di base per il nuovo dispositivo, segui le indicazioni contenute nella procedura guidata per linstallazione basata sul Web. In caso di domande, fai clic su Ulteriori informazioni. E. Una volta completata la procedura guidata, accedi allinterfaccia di gestione via Web con laccount utente admin e la password (readwrite), impostata durante la procedura guidata. Installa il Firebox nella tua rete. F. Il dispositivo contiene una configurazione di base:
Consente il traffico TCP e UDP in uscita, e il ping Blocca tutto il traffico non richiesto dalla rete esterna Utilizza i servizi di sicurezza concessi in licenza per proteggere le reti affidabili e Ispeziona il traffico in uscita FTP, HTTP e HTTPS opzionali 29 D R A F T Passaggi successivi Congratulazioni! Linstallazione di base di Firebox completata. Per visualizzare e modificare la configurazione in uso e per gestire e monitorare Firebox, utilizza linterfaccia di gestione via Web. In alternativa, possibile scaricare e installare WatchGuard System Manager (WSM) e utilizzare Policy Manager e la suite di strumenti gestionali e di monitoraggio WSM. Di seguito alcuni consigli utili per iniziare:
Verifica della connessione a Internet Dopo avere installato Firebox nella tua rete, verifica che gli utenti possano navigare in Internet senza problemi. Aggiornamento del software Per aggiornare il sistema operativo Firebox:
1. Accedi allinterfaccia utente Web Fireware. 2. Seleziona System > Upgrade OS. Per ottenere lultima versione di WSM, WatchGuard Dimension, client VPN e altro software per Firebox:
1. Vai su www.watchguard.com/support e fai clic su Download Software. 2. Cerca la pagina per scaricare il software di Firebox T30/T50 e seleziona il software che desideri installare. Esplorazione delle caratteristiche e delle funzionalit di Firebox Per ulteriori informazioni sulle funzionalit di gestione, monitoraggio e sicurezza di Firebox, sfogliare linterfaccia utente basata sul web o gli strumenti di WatchGuard System Manager e fare clic su ? o su qualsiasi altra pagina o finestra di dialogo. Informazioni sulle spie di stato del dispositivo Fail Over Si accende in caso di failover WAN dallinterfaccia esterna primaria allinterfaccia di backup. WAP (Solo nei modelli wireless) Si accende quando il dispositivo viene attivato come un punto di accesso wireless o un come un client wireless. Indicatori di stato della scheda di rete Firebox T35 ha cinque interfacce di rete. Per ogni scheda sono disponibili due indicatori di stato. I t a l i a n o Indicatore 1000 10/100 Colore dellindicatore Stato dellinterfaccia Giallo Lampeggi*
Verde Velocit collegamento: 1000 Mbps Dati inviati e ricevuti Velocit collegamento: 10 Mbps o 100 Mbps Lampeggi*
Dati inviati e ricevuti
* La velocit di lampeggio aumenta insieme allincremento del flusso di dati Stato Si accende quando viene stabilita una connessione per la gestione del dispositivo. Lindicatore di stato si accende per 30 secondi una volta collegatisi al dispositivo mediante linterfaccia utente basata sul web di Fireware o linterfaccia a riga di comando. Si accende anche quando il dispositivo viene sondato da WatchGuard System Manager. Modo Mostra lo stato della connessione alla rete esterna. Se il dispositivo pu collegarsi alla rete esterna e inviare traffico, lindicatore verde. Se il dispositivo non pu collegarsi alla rete esterna e inviare traffico, lindicatore lampeggia. Attn Si accende quando il dispositivo viene avviato premendo il pulsante Reset. Alimentazione (
viene acceso.
) Lindicatore dellalimentazione si accende quando il dispositivo 30 31 D R A F T Ripristino delle impostazioni di fabbrica predefinite di Firebox Se necessario, possibile ripristinare le impostazioni di fabbrica di Firebox. Per esempio, il dispositivo pu essere ripristinato se non conosci la passphrase dellaccount administrator o se desideri ricominciare la procedura con RapidDeploy QuickStart. Per maggiori informazioni, consulta la Guida all'hardware del tuo Firebox, disponibile allindirizzo:
www.watchguard.com/help/documentation/hardware.asp 1. www.watchguard.com/activate 2. WatchGuard*
www.watchguard.com/activate 3. 4. RapidDeploy QuickStart QuickStart WatchGuard 5. 32 33 D R A F T RapidDeploy QuickStart 1. DHCP Firebox10.0.1.0/24IP 1. DHCPFirebox 10.0.1.0/24IP 2. WebUI A. https://10.0.1.1:8080 B. Firebox C. admin readwrite TCPUDPping 34 2. WebUI A. https://10.0.1.1:8080 B. Firebox C. adminreadwrite D.
[More Information]
E. admin readwriteUI F. Firebox TCPUDPping FTPHTTPHTTPS 35 D R A F T Firebox Web UI Firebox / WatchGuard System ManagerWSM Policy Manager WSM /
Firebox Firebox OS 1. Fireware Web UI 2. System > Upgrade OS Firebox WSMWatchGuard DimensionVPN clients
1. www.watchguard.com/support Download Software 2. Firebox T30/T50 Firebox Firebox UI WatchGuard System Manager [Help]
Fail Over WAN WAP -
Firebox T355 2 1000 10/100
: 1000 Mbps
: 10 Mbps 100 Mbps
Status Fireware Web UI30 WatchGuard System Manager Mode Attn Power (
) 36 37 D R A F T Firebox Firebox RapidDeploy QuickStart Firebox www.watchguard.com/help/documentation/hardware.asp 1. www.watchguard.com/activate 2. WatchGuard
www.watchguard.com/activate
. 3. 4. 5. RapidDeploy QuickStart WatchGuard QuickStart
. Classic Activation Web Setup Wizard
. 38 39 D R A F T RapidDeploy QuickStart 1. DHCP IP
. Firebox 10.0.1.0/24 Classic Activation 1. IP DHCP
. Firebox 10.0.1.0/24
. 2. Web UI A. https://10.0.1.1:8080
. admin Admin
(readwrite)
. TCP, UDP Ping
. B. C. 40 2. Web UI A. https://10.0.1.1:8080
. D. Web Setup Wizard More Information admin readwrite
. Admin
(readwrite)
. admin B. C. E. F. Web UI Firebox
. TCP, UDP Ping FTP, HTTP HTTPS
. 41 D R A F T
! Firebox . Web UI Firebox . WatchGuard System Manager
(WSM) Policy Manager WSM
. . Firebox . Firebox OS . 1. Fireware Web UI . 2. System > Upgrade OS . WSM, WatchGuard Dimension, VPN Firebox . 1. www.watchguard.com/support Download Software . 2. Firebox T30/T50
. Firebox Web UI WatchGuard System Manager Help Firebox , . Fail Over WAP - (
. WAN
. Firebox T35
1000Mbps
100Mbps 10Mbps
. 30 WatchGuard System Manager
. Fireware Web UI
. 1000 10/100 Status
. Mode
. Attn Reset Power (
. 42 43 D R A F T Firebox Firebox RapidDeploy QuickStart
. www.watchguard.com/help/documentation/hardware.asp
. . Firebox E s p a o l Active su dispositivo 1. Visite www.watchguard.com/activate 2. Inicie sesin con su cuenta de WatchGuard o cree una cuenta nueva*.
*Si usted crea una cuenta nueva, regrese a www.watchguard.com/activate luego de finalizar el proceso de creacin de la cuenta. Ingrese el nmero de serie de su dispositivo. 3. 4. Durante la activacin, seleccione su mtodo de instalacin:
Inicio rpido de RapidDeploy: automticamente descargue y aplique un archivo de configuracin de inicio rpido en su dispositivo, configurado previamente con la configuracin de seguridad recomendada por WatchGuard. Activacin clsica: use el asistente de instalacin web para crear un archivo de configuracin bsico para su dispositivo. 5. Use las directivas de instalacin de esta gua que correspondan al mtodo que seleccion. 44 45 D R A F T Instalacin del inicio rpido RapidDeploy 1. Conecte su dispositivo y encindalo Asegrese de que los equipos de su red estn configurados para usar DHCP. Cuando instale su Firebox, este le asignar una direccin IP en la red 10.0.1.0/24 Instalacin de activacin clsica 1. Conecte su dispositivo y encindalo Asegrese de que su equipo est configurado para usar DHCP. Cuando se conecte a su Firebox, este le asignar una direccin IP en la red 10.0.1.0/24 Equipo Internet E s p a o l Su red Internet 2. Conctese a la interfaz de usuario web A. Vaya a https://10.0.1.1:8080 B. De manera segura, puede ignorar cualquier certificado de advertencia que vea debido a que el dispositivo usa un certificado con firma automtica. C. Inicie sesin con la cuenta de usuario admin y la frase de contrasea de Administrador
(readwrite) que estableci durante la activacin. Su dispositivo tiene una configuracin bsica:
Permite trfico ping, UDP y TCP saliente Bloquea todo el trfico no solicitado de la red externa Incluye configuracin de seguridad optimizada Usa servicios de seguridad con licencia para proteger las redes confiablesy opcionales. 46 2. Conctese a la interfaz de usuario web A. Vaya a https://10.0.1.1:8080 B. De manera segura, puede ignorar cualquier certificado de advertencia debido a que el dispositivo usa un certificado con firma automtica. C. Inicie sesin con el nombre de usuario admin y la frase de contrasea readwrite. D. Siga las directivas en el asistente de instalacin web para crear un archivo de configuracin bsico para un dispositivo nuevo. Haga clic en Ms informacin si tiene preguntas. E. Cuando el asistente finalice, inicie sesin en la interfaz de usuario web con la cuenta de usuario admin y la frase de contrasea de Administrador (readwrite) que estableci durante el asistente. Instale el Firebox en su red F. Su dispositivo tiene una configuracin bsica:
Permite trfico ping, UDP y TCP saliente Bloquea todo el trfico no solicitado de la red externa Inspecciona trfico HTTPS, HTTP y FTP saliente. Usa servicios de seguridad con licencia para proteger las redes confiablesy opcionales. 47 D R A F T Prximos pasos Felicitaciones! Ha finalizado la instalacin bsica de su Firebox. Puede usar la interfaz de usuario web para ver y editar su configuracin, y para administrar y controlar su Firebox. O bien, puede descargar e instalar WatchGuard System Manager (WSM) y usar la funcin Policy Manager y el conjunto de herramientas de gestin y supervisin de WSM. A continuacin, presentamos algunas recomendaciones para ayudarlo a comenzar:
Con su Firebox instalado en su red, asegrese de que sus usuarios puedan navegar Verifique su Conexin a Internet correctamente en Internet. Obtenga el Software ms Reciente Para actualizar el SO Firebox:
1. Inicie sesin en la interfaz de usuario web de Fireware. 2. Seleccione System (Sistema) > Upgrade OS (Actualizar SO). Para obtener la versin ms reciente de WSM, WatchGuard Dimension, clientes de VPN y otro software para su Firebox:
1. Visite www.watchguard.com/support y haga clic en Download Software
(Descargas de software). 2. Encuentre la pgina de descargas de software para el Firebox T30/T50 y seleccione el software que desee instalar Explore las Caractersticas y Funciones de su Firebox Explore la interfaz de usuario web o las herramientas de WatchGuard System Manager y haga clic en Help (Ayuda) en cualquier pgina o cuadro de dilogo para aprender ms sobre las caractersticas de seguridad, control y gestin de su Firebox. E s p a o l Acerca de las luces de estado del dispositivo Conmutacin por error: las luces se encienden cuando hay una conmutacin por error de WAN de la interfaz externa principal a la interfaz de copia de seguridad. WAP: (nicamente en modelos inalmbricos) las luces se encienden cuando el dispositivo est activado como punto de acceso inalmbrico o como cliente inalmbrico. Indicadores de estado de la interfaz de la red: el Firebox T35 tiene cinco interfaces de red. Hay dos indicadores de estado para cada interfaz. Indicador 1000 Color del indicador Estado de interfaz Amarillo Velocidad de vnculo: 1000Mbps Las luces parpadean*
Datos enviados y recibidos 10/100 Verde Velocidad de vnculo: 10Mbps o 100Mbps Las luces parpadean*
Datos enviados y recibidos
* La velocidad de parpadeo de las luces aumenta a medida que el flujo de datos aumenta Estado: muestra cuando hay una conexin de administracin al dispositivo. El indicador de estado est iluminado durante 30 segundos despus de que usted se conecta al dispositivo con la interfaz de usuario web de Fireware o con la interfaz de lnea de comandos. Tambin est iluminado cuando WatchGuard System Manager realiza un sondeo en el dispositivo. Modo: muestra el estado de la conexin de red externa. Si el dispositivo se puede conectar a la red externa y enviar trfico, el indicador se muestra de color verde. El indicador se enciende y apaga de forma intermitente si el dispositivo no se puede conectar a la red externa y enviar trfico. Attn: las luces se encienden cuando enciende el dispositivo con el botn para reiniciar apretado. Encendido (
est encendido.
): el indicador de encendido est iluminado cuando el dispositivo 48 49 D R A F T Restablecimiento del Firebox a la configuracin predeterminada de fbrica Si alguna vez lo necesita, puede restaurar su Firebox a la configuracin predeterminada de fbrica. Por ejemplo, si no conoce la frase de contrasea de su cuenta de administrador o quiere comenzar de nuevo con el inicio rpido RapidDeploy, puede restablecer su dispositivo. Para obtener ms informacin, consulte la gua de hardware de su Firebox, disponible en:
www.watchguard.com/help/documentation/hardware.asp P o r t u g u s Ative o dispositivo 1. Acesse www.watchguard.com/activate 2. Faa login na conta WatchGuard ou crie uma conta nova*.
*Se for criar uma conta nova, volte a www.watchguard.com/activate depois de concludo o processo de criao de conta. 3. Insira o nmero de srie do dispositivo. 4. Durante a ativao, selecione o mtodo de configurao:
RapidDeploy QuickStart baixe e aplique automaticamente um arquivo de configurao QuickStart no dispositivo, pr-configurado com as configuraes de segurana recomendadas pela WatchGuard. Ativao clssica use o Assistente de Configurao pela Web para criar um arquivo de configurao bsica para o dispositivo. 5. Use as orientaes de configurao neste guia que correspondam ao mtodo selecionado. 50 51 D R A F T Configurao RapidDeploy QuickStart 1. Conecte o dispositivo e ligue-o Certifique-se de que os computadores da rede estejam configurados para usar DHCP. Ao instalar o Firebox, ele atribuir um endereo IP na rede 10.0.1.0/24 Configurao de ativao clssica 1. Conecte o dispositivo e ligue-o Certifique-se de que o computador esteja configurado para usar DHCP. Ao conectar-se ao Firebox, ele atribuir um endereo IP na rede 10.0.1.0/24 Computador Internet P o r t u g u s Sua rede Internet 2. Conecte interface de usurio da web A. Acesse https://10.0.1.1:8080 B. seguro ignorar os avisos de certificado exibidos porque o dispositivo usa um certificado autoassinado. C. Faa login com a conta de usurio admin e a senha do Admin (readwrite) definida durante a ativao. O dispositivo tem uma configurao bsica:
Permite TCP, UDP e trfego de ping de sada Bloqueia todo trfego no solicitado da rede externa Contm configuraes de segurana otimizadas Usa servios de segurana licenciados para proteger as redes opcionais e confiveis 52 2. Conecte interface de usurio da web A. Acesse https://10.0.1.1:8080 B. seguro ignorar os avisos de certificado porque o dispositivo usa um certificado autoassinado. C. Faa login com o nome de usurio admin e a senha readwrite. D. Siga as instrues no Assistente de Configurao da Web para criar um arquivo de configurao bsica para o dispositivo. Em caso de dvidas, clique em Mais informaes. E. Na concluso do assistente, faa login na interface de usurio da web com a conta de usurio admin e a senha do Admin (readwrite) definida durante o Assistente. Instale o Firebox na rede. F. O dispositivo tem uma configurao bsica:
Permite TCP, UDP e trfego de ping de sada Bloqueia todo trfego no solicitado da rede externa Inspeciona o trfego de sada de FTP, HTTP e HTTPS Usa servios de segurana licenciados para proteger as redes opcionais e confiveis 53 D R A F T Prximas etapas Parabns! Voc concluiu a configurao bsica do Firebox. Use a interface de usurio da web para editar as configuraes e para gerenciar e monitorar o Firebox. Ou voc pode fazer o download e instalar o WatchGuard System Manager (WSM) e usar o Policy Manager e o conjunto WSM de ferramentas de gerenciamento e monitoramento. Eis algumas recomendaes para ajudar no incio:
Verifique a conectividade com a internet Com o Firebox instalado na rede, certifique-se de que os usurios consigam navegar na internet. Obtenha o software mais recente Para atualizar o Firebox OS:
1. Faa login na interface de usurio da web do Fireware. 2. Selecione System > Upgrade OS (Sistema > Atualizar SO). Para obter a verso mais recente do WSM, do WatchGuard Dimension, dos clientes VPN e outros softwares para o Firebox:
1. Acesse www.watchguard.com/support e clique em Download Software 2. Localize a pgina de downloads de software do Firebox T30/T50 e selecione o
(Baixar software). software que deseja instalar. Explore os recursos e as funes do Firebox Abra a interface de usurio da web ou as ferramentas no WatchGuard System Manager e clique em Help (Ajuda) em qualquer pgina ou caixa de dilogo para saber mais sobre os recursos de gerenciamento, monitoramento e segurana do Firebox. P o r t u g u s Sobre as luzes de estado do dispositivo Fail Over acende quando existe um failover de WAN a partir da interface externa principal para a interface de backup. WAP (somente modelos sem fio) acende quando o dispositivo ativado como um ponto de acesso sem fio ou um cliente sem fio. Indicadores de estado da interface de rede o Firebox T35 tem cinco interfaces de rede. Existem dois indicadores de status de cada interface. Indicador 1.000 10/100 Cor do indicador Estado da interface Amarelo Velocidade do link: 1.000 Mbps Intermitente*
Dados enviados e recebidos Verde Velocidade do link: 10 Mbps ou 100 Mbps Intermitente*
Dados enviados e recebidos
* A velocidade da intermitncia aumenta proporcionalmente ao aumento do fluxo de dados Status indica que existe uma conexo de gerenciamento com o dispositivo. O indicador Status acende por 30 segundos depois de conectar ao dispositivo pela interface de usurio da web do Fireware ou pela interface de linha de comando. Ela tambm acende quando o dispositivo sondado pelo WatchGuard System Manager. Mode indica o status da conexo de rede externa. Se o dispositivo puder se conectar com a rede externa e enviar trfego, a luz ficar verde. O indicador piscar se o dispositivo no puder se conectar com a rede externa e enviar trfego. Attn acende ao iniciar o dispositivo com o boto Reset pressionado. Power (
) o indicador de alimentao acende quando o dispositivo est ligado. 54 55 D R A F T Redefina o Firebox com as configuraes padro de fbrica Se for necessrio, possvel restaurar as configuraes padro de fbrica do Firebox. Por exemplo, se no souber a senha da conta do administrador ou quiser reiniciar o RapidDeploy QuickStart, voc pode redefinir o dispositivo. 1. www.watchguard.com/activate 2. WatchGuard *
* www.watchguard.com/activate Para obter mais informaes, consulte o guia de hardware do seu Firebox, disponvel em:
www.watchguard.com/help/documentation/hardware.asp 3. 4. RapidDeploy QuickStart () QuickStart WatchGuard Classic Activation () 5. 56 57 D R A F T RapidDeploy QuickStart () Classic Activation () 1. DHCP Firebox 10.0.1.0/24 IP 1. DHCP Firebox 10.0.1.0/24 IP 2. Web UI A. https://10.0.1.1:8080 B. C. admin Admin (readwrite) TCPUDP Ping 2. Web UI A. https://10.0.1.1:8080 B. C. admin readwrite D. Web
[More Information] () E. admin Admin (readwrite) Web UI F. Firebox TCPUDP Ping 58 59 D R A F T FTP HTTP HTTPS Firebox Web UI Firebox WatchGuard System Manager (WSM) Policy Manager WSM Firebox Firebox OS 1. Fireware Web UI 2. [System] () > [Upgrade OS] ( OS) WSMWatchGuard DimensionVPN Firebox
() 1. www.watchguard.com/support [Download Software]
2. Firebox T30/T50 Firebox Web UI WatchGuard System Manager
[Help] () Firebox
(Fail Over) WAN WAP - () Firebox T35 1000 10/100
1000 Mbps 10 Mbps 100 Mbps
(Status) Fireware Web UI Status () 30 WatchGuard System Manager (WatchGuard
(Mode)
(Attn) []
(Power) 60 61 D R A F T Firebox Firebox RapidDeploy QuickStart () Firebox www.watchguard.com/help/documentation/hardware.asp 62 63 D R A F T Notices:
All WatchGuard products are designed and tested to meet strict safety requirements. These requirements include product safety approvals and other global compliance standards. Please read the following instructions carefully before operating the product, and refer to them as needed to ensure the continued safe operation of your product. Additional information can be found in the Hardware Guide located on the WatchGuard website:
http://www.watchguard.com/help/documentation/hardware.asp Product Safety Certification The WatchGuard product is safety certified under the following standards:
IEC 60950-1, 2005+A1:2009+A2:2013 CAN/CSA C22.2 No.60950-1-07, Second Edition 2014-10 UL 60950-1, Second Edition 2014-10-14 EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Safety Warning Do not place objects on the power cord. Do not obstruct the ventilation openings. These openings prevent overheating of the machine. Never push objects of any kind into slots or openings on this equipment. Making a contact with a voltage point or shorting out a part may result in fire or electrical shock. When removing or installing an appliance, follow the general installation safety instructions. You must disconnect the AC power cord from the Firebox before you remove the cover of the Firebox for any reason. There is risk of explosion if the battery is replaced by an incorrect type. Dispose of used batteries according to the manufacturers instructions. Disclaimer WatchGuard shall not be held liable if the end user alters, modifies, or repairs any WatchGuard hardware appliance. Hinweise Zur Sicherheit Alle WatchGuard Produkte werden entwickelt und getestet, um strenge Sicherheitsanforderungen zu erfllen. Diese Anforderungen umfassen Produktsicherheit Zulassungen und andere globale Compliance- Standards. Bitte lesen Sie die folgenden Anweisungen sorgfltig, bevor Sie das Produkt, und bezeichnen sie als notwendig, um den sicheren Betrieb des Gerts zu gewhrleisten. Weitere Informationen finden Sie in der elektronischen Hardware Guide. IEC 60950-1:2005+A1:2009+A2:2013 Die WatchGuard Produkt ist Sicherheit unter den folgenden Normen zertifiziert:
CAN/CSA C22.2 No.60950-1-07, Second edition 2014-14 UL 60950-1, Second Edition 2014-10-14 EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Sicherheitshinweis Legen Sie keine Gegenstnde auf das Netzkabel. Verdecken Sie nicht die Lftungsffnungen. Diese ffnungen verhindern eine berhitzung der Maschine Stecken Sie niemals Gegenstnde jeglicher Art in die Schlitze oder ffnungen des Gerts stecken. Der Kontakt mit einem spannungsfhrenden Punkt oder das Kurzschlieen eines Bauteils kann zu einem Brand oder elektrischen Schlag fhren. Beim Entfernen oder Installieren eines Gertes, nach den allgemeinen Installation Sicherheitshinweise. 64 65 D R A F T Aviso De Seguridad Todos los productos WatchGuard estn diseados y probados para satisfacer estrictos requisitos de seguridad. Estos requisitos incluyen la homologacin de productos de seguridad y otras normas de cumplimiento global. Por favor, lea atentamente las siguientes instrucciones antes de utilizar el producto, y se refieren a ellos como sea necesario para garantizar el funcionamiento seguro y continuo de su producto. Informacin adicional se puede encontrar en la Gua del usuario electrnica. Certificacin de seguridad del producto El producto tiene certificacin de seguridad WatchGuard bajo las siguientes normas:
IEC 60950-1:2005+A1:2009+A2:2013 CAN/CSA C22.2 No.60950-1-07, Second edition 2014-14 UL 60950-1, Second Edition 2014-10-14 EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013 Advertencia de seguridad No coloque objetos sobre el cable de alimentacin. No obstruya las aberturas de ventilacin. Estas aberturas evitan el sobrecalentamiento de Nunca introduzca objetos de ningn tipo en las ranuras o aberturas del equipo. El contacto con puntos de voltaje o el cortocircuito de una pieza podra provocar un incendio o una descarga elctrica. Al extraer o instalar un electrodomstico, siga las instrucciones generales de instalacin la mquina. de seguridad. CE Notice:
The CE symbol on your WatchGuard Technologies equipment indicates that it is in compliance with the Electromagnetic Compatibility (EMC) directive and the Low Voltage Directive (LVD) of the European Union (EU). Federal Communication Commission Interference Statement Operations in the 5.15-5.25GHz band are restricted to indoor usage only. This equipment has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation. This equipment generates, uses and can radiate radio frequency energy and, if not installed and used in accordance with the instructions, may cause harmful interference to radio communications. However, there is no guarantee that interference will not occur in a particular installation. If this equipment does cause harmful interference to radio or television reception, which can be determined by turning the equipment off and on, the user is encouraged to try to correct the interference by one of the following measures:
Reorient or relocate the device. Connect the equipment into an outlet on a circuit different from that to which the receiver Increase the separation between the equipment and receiver. is connected. Consult the dealer or an experienced radio/TV technician for help. FCC Caution: Any changes or modifications not expressly approved by the party responsible for compliance could void the users authority to operate this equipment. Operation is subject to the following two conditions: (1) This device may not cause harmful interference, and (2) this device must accept any interference received, including interference that may cause undesired operation. IMPORTANT NOTE:
FCC Radiation Exposure Statement: (Wireless) This equipment complies with FCC radiation exposure limits set forth for an uncontrolled environment. This equipment should be installed and operated with minimum distance 20cm between the radiator & your body. This transmitter must not be co-located or operating in conjunction with any other antenna or transmitter. 66 67 D R A F T Europe EU Declaration of Conformity (Wireless) This device complies with the essential requirements of the RED 2014/53/EU. The following test methods have been applied in order to prove presumption of conformity with the essential requirements of the RED 2014/53/EU:
EN 60950-1 - Safety of Information Technology Equipment EN 50385 - Generic standard to demonstrate the compliance of electronic and electrical apparatus with the basic restrictions related to human exposure to electromagnetic fields (0 Hz - 300 GHz) EN 300 328 - Electromagnetic compatibility and Radio spectrum Matters (ERM); Wideband Transmission systems; Data transmission equipment operating in the 2,4 GHz ISM band and using spread spectrum modulation techniques; Harmonized EN covering essential requirements under article 3.2 of the RED Directive EN 301 893 - Broadband Radio Access Networks (BRAN); 5 GHz high performance RLAN; Harmonized EN covering essential requirements of article 3.2 of the RED Directive EN 301 489-1 - Electromagnetic compatibility and Radio Spectrum Matters (ERM); ElectroMagnetic Compatibility (EMC) standard for radio equipment and services; Part 1: Common technical requirements EN 301 489-17 - Electromagnetic compatibility and Radio spectrum Matters (ERM); ElectroMagnetic Compatibility (EMC) standard for radio equipment and services; Part 17: Specific conditions for 2.4 GHz wideband transmission systems and 5 GHz high performance RLAN equipment This device is a 5GHz wideband transmission system (transceiver), intended for use in all EU member states and EFTA countries, except in France and Italy where restrictive use applies. In Italy the end-user should apply for a license at the national spectrum authorities in order to obtain authorization to use the device for setting up outdoor radio links and/or for supplying public access to telecommunications and/or network services. This device may not be used for setting up outdoor radio links in France and in some areas the RF output power may be limited to 10 mW EIRP in the frequency range of 2454 2483.5 MHz. For detailed information the end-user should contact the national spectrum authority in France. RoHS Statement The member states of the European Union approved directive 2002/95/EC, Restrictions of Hazardous Substances (RoHS directive) that became valid on July 1, 2006. It states that all new electrical and electronic equipment put on the market within the member states must not contain certain hazardous materials. This device complies with the European Unions R0HS directive 2002/95/EC and similar regulations that may be adopted by other countries for European Sales. WEEE Statement WEEE is a general set of requirements dictated in the EU Directive 2002/96/EC. This Directive mandated that member EU countries enact regulations governing the Waste of Electrical and Electronic Equipment (WEEE). The Directive, and its individual transpositions into specific country laws and legislation, is aimed at the reduction of WEEE through reuse, recovery, and recycling of WEEE. WatchGuard is working in partnership with our European Union (EU) distribution partners to ensure that our products are in compliance with the WEEE statutes, and that the recovery of our product per the specific EU country legislative requirements is seamless for our products end users. If you have a WatchGuard product that is at its end of life and needs to be disposed of, please contact WatchGuard Customer Care Department at:
U.S. Customers: 877.232.3531 International Customers: +1.206.613.0456 WatchGuard is reasonably confident that our products do not contain any substances or hazardous materials presently banned by any legislation, and do not present a risk due to hazardous materials. WEEE recovery professionals should also note that these products do not have any materials that are of particular high value in their individual form. REACH The new EU chemicals policy REACH (Registration, Evaluation, Authorization and restriction of Chemicals) came into effect on June 1, 2007. REACH is Europes new chemicals legislation, which is applicable in all 27 EU Member States as well as the EFTA European Economic Area (EEA). REACH creates a new system for gathering information, assessing risks to human health and the environment, and authorizing or restricting the marketing and use of chemicals produced or 68 69 D R A F T supplied in the EEA. REACH has an impact on EEA producers and importers of finished products and users of chemicals in the course of industrial or professional activities. WatchGuard supports the overall REACH objective of improving the protection of human health and the environment and will meet all applicable REACH requirements. WatchGuard is strongly committed to working with our customers and supply chain to define and implement the REACH requirements and ensure a smooth transition to compliance. One of the REACH requirements is that manufacturers and importers have the duty to register substances they are producing or importing. In accordance with the regulations, the products of WatchGuard do not need to be registered for the following reasons:
WatchGuard does not import more than 1 metric ton per year of a substance as defined by REACH. WatchGuard products are non-chemical products that are not designed to release any substance under normal and reasonably predictable application. Our products do not contain the listed substances at more than 0.1% by weight of the whole product/part. Industry Canada statement:
This device contains licence-exempt transmitter(s) that comply with Innovation, Science and Economic Development Canadas licence-exempt RSS(s). Operation is subject to the following two conditions: (1) this device may not cause interference, (2) this device must accept any interference, including interference that may cause undesired operation of the device. Lmetteur exempt de licence contenu dans le prsent appareil est conforme aux CNR dInnovation, Sciences et Dveloppement conomique Canada applicables aux appareils radio exempts de licence. Lexploitation est autorise aux deux conditions suivantes : 1) Lappareil ne doit pas produire de brouillage; 2) Lappareil doit accepter tout brouillage radiolectrique subi, mme si le brouillage est susceptible den compromettre le fonctionnement. Warning:
This device is not to be mounted or installed on ceilings Attention:
Cet appareil ne doit pas tre mont ou install au plafond 70 Caution: (Wireless) The device for operation in the band 5150-5250 MHz is only for indoor use to reduce the potential for harmful interference to co-channel mobile satellite systems;
Avertissement:
Les dispositifs fonctionnant dans la bande 5150-5 250 MHz sont rservs uniquement pour une utilisation lintrieur afin de rduire les risques de brouillage prjudiciable aux systmes de satellites mobiles utilisant les mmes canaux. For Mobile Device Usage (Wireless) Radiation Exposure Statement:
This equipment complies with IC radiation exposure limits set forth for an uncontrolled environment. This equipment should be installed and operated with minimum distance 20cm between the radiator & your body. Dclaration dexposition aux radiations:
Cet quipement est conforme aux limites dexposition aux rayonnements IC tablies pour un environnement non contrl. Cet quipement doit tre install et utilis avec un minimum de 20cm de distance entre la source de rayonnement et votre corps. France (Wireless) Les dispositifs fonctionnant dans la bande 5150-5250 MHz est rserv une utilisation en intrieur pour rduire le risque de brouillage prjudiciable aux systmes mobiles par satellite utilisant les mmes canaux;
Japan VCCI Notice (Class A ITE) VCCIA VCCI-A 71 D R A F T Taiwan Class A Notice:
Taiwan NCC MS3AE5,MS3AE5W,MS5AE5,MS5AE5W Equipment name Type designation (Type) Restricted substances and its chemical symbols nit Lead
(Pb) Mercury Cadmium
(Hg)
(Cd) Hexavalent chromium
(Cr+6) Polybrominated biphenyls
(PBB) Polybrominated diphenyl ethers
(PBDE) 1.0.1 wt %0.01 wt %
Note 1Exceeding 0.1 wt % and exceeding 0.01 wt % indicate that the percentage content of the restricted substance exceeds the reference percentage value of presence condition. 2. Note 2 indicates that the percentage content of the restricted substance does not exceed the percentage of reference value of presence. 3. Note 3The indicates that the restricted substance corresponds to the exemption. PCBA Power Supply ME metal part ME plastic part
) Accessory
(cable, etc.) 72
, , MPE(MPE) 1mW/cm20.338 mW/cm2 Mexico Notice:
La operacin de este equipo est sujeta a las siguientes dos condiciones:
(i) es posible que este equipo o dispositivo no cause interferencia perjudicial y
(ii) este equipo o dispositivo debe aceptar cualquier interferencia, incluyendo la que pueda causar su operacin no deseada. 73 D R A F T Declaration of Conformity WatchGuard Technologies, Inc. 505 Fifth Ave. S., Suite 500 Seattle, WA 98104 USA WatchGuard Technologies Inc. hereby declares that the product(s) listed below conform to the European Union directives and standards identified in this declaration. WatchGuard Model: Firebox T35-W and Firebox T35, Hardware Model: MS3AE5W and MS3AE5 Product (s):
EU Directive(s):
Low Voltage (2006/95/EC) Electromagnetic Compatibility (2004/108/EC) RoHS (2002/95/EC) WEEE Directive 2002/96/EC REACH EC 1907/2006 The Radio Equipment Directive (2014/53/EU) Common Standard(s):
EN 60950-1:2006+A11+A1+A12 EN55032:2012/AC:2013 EN 55024:2010 EN 50385:2002 EN 61000-3-2:2014 Class A EN 61000-3-3:2013 EN 61000-4-2:2009 EN 61000-4-3:2006+A1:2008+A2:2010 EN 61000-4-4:2012 EN 61000-4-5:2014 EN 61000-4-6:2014 EN 61000-4-11:2004 Wireless Standard(s):
EN 301 489-1 v2.1.1 EN 301 489-17 v3.1.1 EN 300 328 v2.1.1 EN 301 893 v2.2.1 Safety for ITE Class A Emissions for ITE Immunity for ITE EMC and Radio Spectrum Matters EMC and Radio Spectrum Matters Radio Spectrum Matters Broadband Radio Access Networks Ave S. Suite 500, Seattle, WA 98104 USA This device complies with Directive 2014/53/EU issued by the Commission of the European Community. Manufacturer / Hersteller:
WatchGuard Technologies 505 5th Wireless Access Point Firebox T35-W and Firebox T35 802.11a,b,g,n,ac (2.4Ghz & 5GHz) Indoor Access Point Class II Radio Equipment / Funkanlage:
Type Designation / Typenbezeichnung:
Specifications / Technische Daten:
Intended Purpose / Verwendungszweck:
Equipment Class / Betriebsmittel der Klasse:
The above device complies with the essential requirements and other relevant provisions to Directive 2014/53/EU when used for its intended purpose. This equipment may be operated in the USA, Canada, & Europe Union. Warning! This is a Class A product. In a domestic environment this product may cause radio interference in which case the user may be required to take adequate measures. The frequency and maximum transmitted power limit in EU are listed as belows, 2412 - 2472 MHz: 20 dBm 5150 - 5350 MHz: 20 dBm Restrictions: France les dispositifs fonctionnant dans la bande 5150-5250 MHz sont rservs uniquement pour une utilisation lintrieur afin de rduire les risques de brouillage prjudiciable aux systmes de satellites mobiles utilisant les mmes canaux Warnung! Dies ist eine Einrichtung der Klasse A. Diese Einrichtung kann im Wohnbereich Funkstrungen verursachen. In diesem Fall kann vom Betreiber verlangt werden, angemessene Manahmen durchzufhren Einschrnkungen: Frankreich Gerte, die im Band 5150-5250 MHz ist nur fr den Innenbereich, um das Risiko von Strungen des mobilen Satelliten-Systeme, die die gleichen Kanle Full Name:
Position: Manufacturing Program Manager Date: July 21, 2017 Laurence Huang Signature 74 75 D R A F T Limited Hardware Warranty This Limited Hardware Warranty (the Warranty) applies to the enclosed hardware product, not including any associated software, which is licensed pursuant to a separate end-user license agreement and warranty (the Product). BY USING THE PRODUCT, YOU (either an individual or a single entity) AGREE TO THE TERMS HEREOF. If you do not agree to these terms, please return this package, along with proof of purchase, to the authorized dealer from which you purchased it for a full refund. WatchGuard Technologies, Inc. (WatchGuard) and you agree as set forth below or on the reverse side of this card, as applicable. 1. LIMITED WARRANTY. WatchGuard warrants that upon delivery and for one (1) year thereafter (the Warranty Period): (a) the Product will be free from material defects in materials and workmanship, and (b) the Product, when properly installed and used for its intended purpose and in its intended operating environment, will perform substantially in accordance with WatchGuard applicable specifications. This warranty does not apply to any Product that has been: (i) altered, repaired or modified by any party other than WatchGuard except for the replacement or inclusion of specified components authorized in, and performed in strict accordance with, documentation provided by WatchGuard; or (ii) damaged or destroyed by force majeure events, accidents, power spikes or similar events or by any intentional, reckless or negligent acts or omissions of any party. You may have additional warranties with respect to the Product from the manufacturers of Product components. However, you agree not to look to WatchGuard for, and hereby release WatchGuard from any liability for, performance of, enforcement of, or damages or other relief on account of, any such warranties or any breach thereof. 2. REMEDIES. If any Product does not comply with the WatchGuard warranties set forth in Section 1 above, WatchGuard will, following the receipt of the product you claim is defective and at its option, either (a) repair the Product, or (b) replace the Product with a like or similar product; provided, that you will be responsible for returning the Product and for all costs of shipping and handling. Repair or replacement of the Product shall not extend the Warranty Period. Any Product, component, part or other item replaced by WatchGuard becomes the property of WatchGuard. WatchGuard shall not be responsible for return of or damage to any software, firmware, information or data contained in, stored on, or integrated with any returned Products. 3. DISCLAIMER AND RELEASE. THE WARRANTIES, OBLIGATIONS AND LIABILITIES OF WATCHGUARD, AND YOUR REMEDIES, SET FORTH IN PARAGRAPHS 1 AND 2 ABOVE ARE EXCLUSIVE AND IN SUBSTITUTION FOR, AND YOU HEREBY WAIVE, DISCLAIM AND RELEASE ANY AND ALL OTHER WARRANTIES, OBLIGATIONS AND LIABILITIES OF WATCHGUARD AND ALL OTHER RIGHTS, CLAIMS AND REMEDIES YOU MAY HAVE AGAINST WATCHGUARD, EXPRESS OR IMPLIED, ARISING BY LAW OR OTHERWISE, WITH RESPECT TO ANY NONCONFORMANCE OR DEFECT IN THE PRODUCT (INCLUDING, BUT NOT LIMITED TO, ANY IMPLIED WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE, ANY IMPLIED WARRANTY ARISING FROM COURSE OF 76 PERFORMANCE, COURSE OF DEALING, OR USAGE OF TRADE, ANY WARRANTY OF NONINFRINGEMENT, ANY WARRANTY OF UNINTERRUPTED OR ERROR-FREE OPERATION, ANY OBLIGATION, LIABILITY, RIGHT, CLAIM OR REMEDY IN TORT, WHETHER OR NOT ARISING FROM THE NEGLIGENCE (WHETHER ACTIVE, PASSIVE OR IMPUTED) OR FAULT OF WATCHGUARD OR FROM PRODUCT LIABILITY, STRICT LIABILITY OR OTHER THEORY, AND ANY OBLIGATION, LIABILITY, RIGHT, CLAIM OR REMEDY FOR LOSS OR DAMAGE TO, OR CAUSED BY OR CONTRIBUTED TO BY, THE PRODUCT). 4. LIMITATION AND LIABILITY. WATCHGUARDS LIABILITY (WHETHER ARISING IN CONTRACT (INCLUDING WARRANTY), TORT (INCLUDING ACTIVE, PASSIVE OR IMPUTED NEGLIGENCE AND STRICT LIABILITY AND FAULT) OR OTHER THEORY) WITH REGARD TO ANY PRODUCT WILL IN NO EVENT EXCEED THE PURCHASE PRICE PAID BY YOU FOR SUCH PRODUCT. THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY. IN NO EVENT WILL WATCHGUARD BE LIABLE TO YOU OR ANY THIRD PARTY (WHETHER ARISING IN CONTRACT (INCLUDING WARRANTY), TORT (INCLUDING ACTIVE, PASSIVE OR IMPUTED NEGLIGENCE AND STRICT LIABILITY AND FAULT) OR OTHER THEORY) FOR COST OF COVER OR FOR ANY INDIRECT, SPECIAL, INCIDENTAL, OR CONSEQUENTIAL DAMAGES (INCLUDING WITHOUT LIMITATION LOSS OF PROFITS, BUSINESS, OR DATA) ARISING OUT OF OR IN CONNECTION WITH THIS WARRANTY OR THE USE OF OR INABILITY TO USE THE PRODUCT, EVEN IF WATCHGUARD HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. THIS SHALL BE TRUE EVEN IN THE EVENT OF THE FAILURE OF ANY AGREED REMEDY. 5. MISCELLANEOUS PROVISIONS. This Warranty will be governed by the laws of the state of Washington, U.S.A., without reference to its choice of law rules. The provisions of the 1980 United Nations Convention on Contracts for the International Sales of Goods, as amended, shall not apply. You agree not to directly or indirectly transfer the Product or use of the product or associated documentation to any country to which such transfer would be prohibited by the U.S. Export laws and regulations. If any provision of this Warranty is found to be invalid or unenforceable, then the remainder shall have full force and effect and the invalid provision shall be modified or partially enforced to the maximum extent permitted by law to effectuate the purpose of this Warranty. This is the entire agreement between WatchGuard and you relating to the Product, and supersedes any prior purchase order, communications, advertising or representations concerning the Product AND BY USING THE PRODUCT YOU AGREE TO THESE TERMS. IF THE PRODUCT IS BEING USED BY AN ENTITY, THE INDIVIDUAL INDICATING AGREEMENT TO THESE TERMS BY USING THE PRODUCT REPRESENTS AND WARRANTS THAT (A) SUCH INDIVIDUAL IS DULY AUTHORIZED TO ACCEPT THE WARRANTY ON BEHALF OF THE ENTITY AND TO BIND THE ENTITY TO THE TERMS OF THIS WARRANTY; (B) THE ENTITY HAS THE FULL POWER, CORPORATE OR OTHERWISE, TO ENTER INTO THE WARRANTY AND PERFORM ITS OBLIGATIONS UNDER THE WARRANTY AND; (C) THE WARRANTY AND THE PERFORMANCE OF THE ENTITYS OBLIGATIONS UNDER THE WARRANTY DO NOT VIOLATE ANY THIRD-PARTY AGREEMENT TO WHICH THE ENTITY IS A PARTY. No change or modification of the Warranty will be valid unless it is in writing and is signed by WatchGuard. 77 D R A F T WATCHGUARD TECHNICAL SUPPORT 1.877.232.3531
(U.S. and Canada)
+1.206.613.0456
(all other countries) www.watchguard.com/support ADDRESS: 505 Fifth Avenue South, Suite 500, Seattle, WA 98104 WEB: www.watchguard.com U.S. SALES: 1.800.734.9905 INTERNATIONAL SALES: +1.206.613.0895 2017 WatchGuard Technologies, Inc. All rights reserved. WatchGuard, the WatchGuard Logo, Fireware, and LiveSecurity are registered trademarks of WatchGuard Technologies, Inc. in the United States and/or other countries. All other trademarks and tradenames are the property of their respective owners. P.N. 352-T350-001_082617 Rev A D R A F T
1 2 | Label | ID Label/Location Info | 686.66 KiB | May 15 2020 |
Witcrsuarc
| Fecee T20-W Certificate Label IW M FS2AESW
| AN od HW Model : FS:
ee 1 verte pe eee we ame
| Wwatcnuoudlda BECAUSE: FS2ZAESW tC ae Eanes: RB Are WatchGuard Technologies, Inc 505 5th CAN ICP EC _2/A\/NIR _2/A\
SNE Avenue 5S, Suite 500 Seattle, WA 98104 _ 7 This device complies with Part 15 of the FCC Rules. Operationis FCC ID: Q6G-FS2AE5W subject to the following two conditions: (1) this device may notcause [C: 4657A- FS2AE5W harmful interference, and (2) this device must accept any interference) ni aR paag n9907 ay Sy ee Sey eee ee LLL CORES, PIAMRAMRETH. AMES Nee 9 MOM OO TET 0 SUITOR ESI EMS SEFBRENSCEMHVET. VCCEA
| (viet) |rovmens| | NF _ Ee CC CRoHS. LON FINN vee vnc oh Indoor use only
| ey R]
r((G CCAF17LP1180T2 lTraAreDaD INPUT RATING (4A) = 12V ==22.5AO0-@
Ef Tl AUW-UUl REV A Mage In taiwan Eor natent information nieace vicit httn://iwww watchoauard cam/natentc T40-W Certificate Label HW Model : FS4AI
| WwatcnGauala GRR: FS4AESW!
wane Bnei : REG ATE WatchGuard Technologies, Inc 505 5th PAN ICFEC 2/A\/NINER 2/A\
ve Avenue S, Suite 500 Seattle, WA 98104 ee ee This device complies with Part 15 of the FCC Rules. Operationis FCC ID: Q6G-FS4AE5W subject to the following two conditions: (1) this device may not cause |C: 4657A- FS4AE5W harmful interference, and (2) this device must accept any interference A Rag naan AMS NS Re FOOTE Fo OO NA I ES I EMT SESBRENSCEMHVET, VCCEA tT Cr") omer i, beDecS RoHS LON FINO eevee ANE a Indoor use only Mi CCAF17LP1190T5 Toa for BKB
|) ISNN S&S INPUT RATING(#jJ) = 54V 2/7-1GU0W-UUl Rev A MlaGe I lalwall For patent information. please visit http://www watchaquard com/patents
1 2 | Agent Authorization | Cover Letter(s) | 137.14 KiB | May 15 2020 |
WatchGuard Technologies, Inc. Number:
MS-0004558 Version:
Page:
2.1 1 of 1 The following is a sample Agency Request letter, which needs to be completed on company letterhead, signed by an authorized Applicant/Agent, and submitted to T V Rheinland. Authority to Act as Agent Date: 2020-04-27 TUV Rheinland of North America, Inc. 1279 Quarry Ln., Ste. A Pleasanton, CA 94566 To Whom It May Concern:
I appoint TUV Taiwan to act as our agent in the preparation of this application for equipment certification. I certify that submitted documents properly describe the device or system for which equipment certification is sought. I also certify that each unit manufactured, imported or marketed, as defined in the FCC or Industry Canadas regulations will have affixed to it a label identical to that submitted for approval with this application. For instances where our authorized agent signs the application for certification on our behalf, I acknowledge that all responsibility for complying with the terms and conditions for Certification, as specified by TUV Rheinland Group, still resides with WatchGuard Technologies, Inc., 505 Fifth Avenue South, Suite 500, Seattle, Washington For TCB applications, We certify that we are not subject to denial of federal benefits, that includes FCC benefits, pursuant to Section 5301 of the Anti-Drug Abuse Act of 1988, 21 U.S.C. 862. Further, no party, as defined in 47 CFR 1.2002 (b), to the application is subject to denial of federal benefits, that includes FCC benefits. Thank you, Agency Agreement Expiration Date: _____( 12 months)_____ By:
Title:
On behalf of: __WatchGuard Technologies, Inc.___ __________________________ Hardware Sustainment Coordinator Telephone (206) 521-3579 Adam Witthuhn
(Print name)
(Company Name)
(Signature) This document is issued in strict confidence and shall not be reproduced, copied, or otherwise used without the expressed written consent of Printed: April 27, 2020 Approved Documents Valid 2 Days Verify as current revision when invalid. the Management of T V Rheinland Industrial Solutions, Inc.
1 2 | Confid | Cover Letter(s) | 184.98 KiB | May 15 2020 |
Longterm Confidentiality Request Letter Longterm Confidentiality Request regarding application for certification of FCC ID: Q6G-FS2AE5W and IC: 4657A-FS2AE5W Pursuant to Sections 0.457 and 0.459 of the Commissions Rules, and IC RSP-100, Section 10, we hereby request confidential treatment of information accompanying this application as outlined below:
Exhibit Type Block Diagram, Schematics, Operational Description The above materials contain trade secrets and proprietary information not customarily released to the public. The public disclosure of these materials may be harmful to the applicant and provide unjustified benefits to its competitors. The applicant understands that pursuant to Section 0.457 of the Rules, disclosure of this application and accompanying documentation will not be made before the date of the Grant for this application. Sincerely, Adam Witthuhn
frequency | equipment class | purpose | ||
---|---|---|---|---|
1 | 2020-05-15 | 2422 ~ 2452 | DTS - Digital Transmission System | Original Equipment |
2 | 5775 ~ 5775 | NII - Unlicensed National Information Infrastructure TX |
app s | Applicant Information | |||||
---|---|---|---|---|---|---|
1 2 | Effective |
2020-05-15
|
||||
1 2 | Applicant's complete, legal business name |
WatchGuard Technologies, Inc.
|
||||
1 2 | FCC Registration Number (FRN) |
0024847071
|
||||
1 2 | Physical Address |
505 Fifth Avenue South, Suite 500
|
||||
1 2 |
505 Fifth Avenue South
|
|||||
1 2 |
Seattle, WA
|
|||||
1 2 |
United States
|
|||||
app s | TCB Information | |||||
1 2 | TCB Application Email Address |
w******@us.tuv.com
|
||||
1 2 | TCB Scope |
A4: UNII devices & low power transmitters using spread spectrum techniques
|
||||
app s | FCC ID | |||||
1 2 | Grantee Code |
Q6G
|
||||
1 2 | Equipment Product Code |
FS2AE5W
|
||||
app s | Person at the applicant's address to receive grant or for contact | |||||
1 2 | Name |
A******** W****
|
||||
1 2 | Title |
Hardware Sustainment Coordinator
|
||||
1 2 | Telephone Number |
20652********
|
||||
1 2 | Fax Number |
20652********
|
||||
1 2 |
a******@watchguard.com
|
|||||
app s | Technical Contact | |||||
1 2 | Firm Name |
WatchGuard Technologies, Inc
|
||||
1 2 |
WatchGuard Technologies Inc
|
|||||
1 2 | Name |
A****** W****
|
||||
1 2 | Physical Address |
505 Fifth Avenue
|
||||
1 2 |
Seattle, 98104
|
|||||
1 2 |
Seattle, Washington 98104
|
|||||
1 2 |
United States
|
|||||
1 2 | Telephone Number |
206 5********
|
||||
1 2 |
a******@watchguard.com
|
|||||
app s | Non Technical Contact | |||||
n/a | ||||||
app s | Confidentiality (long or short term) | |||||
1 2 | Does this application include a request for confidentiality for any portion(s) of the data contained in this application pursuant to 47 CFR § 0.459 of the Commission Rules?: | Yes | ||||
1 2 | Long-Term Confidentiality Does this application include a request for confidentiality for any portion(s) of the data contained in this application pursuant to 47 CFR § 0.459 of the Commission Rules?: | No | ||||
if no date is supplied, the release date will be set to 45 calendar days past the date of grant. | ||||||
app s | Cognitive Radio & Software Defined Radio, Class, etc | |||||
1 2 | Is this application for software defined/cognitive radio authorization? | No | ||||
1 2 | Equipment Class | DTS - Digital Transmission System | ||||
1 2 | NII - Unlicensed National Information Infrastructure TX | |||||
1 2 | Description of product as it is marketed: (NOTE: This text will appear below the equipment class on the grant) | Firebox T20 / T20W | ||||
1 2 | Related OET KnowledgeDataBase Inquiry: Is there a KDB inquiry associated with this application? | No | ||||
1 2 | Modular Equipment Type | Does not apply | ||||
1 2 | Purpose / Application is for | Original Equipment | ||||
1 2 | Composite Equipment: Is the equipment in this application a composite device subject to an additional equipment authorization? | Yes | ||||
1 2 | Related Equipment: Is the equipment in this application part of a system that operates with, or is marketed with, another device that requires an equipment authorization? | No | ||||
1 2 | Grant Comments | Power Output listed is the maximum combined conducted output power. Device is a 3x3 router in a Spatial Multiplexing MIMO configuration. The antenna(s) used for this transmitter must be installed to provide a separation distance of at least 20 cm from all persons and must not be co-located or operating in conjunction with any other antenna or transmitter within a device, except in accordance with accepted multi-transmitter product procedures. End-users and installers must be provided with antenna installation instructions and transmitter operating conditions for satisfying RF exposure compliance. | ||||
1 2 | Power Output listed is the maximum combined conducted output power. Device is a 3x3 router in a Spatial Multiplexing MIMO configuration. The antenna(s) used for this transmitter must be installed to provide a separation distance of at least 20 cm from all persons and must not be co-located or operating in conjunction with any other antenna or transmitter within a device, except in accordance with accepted multi-transmitter product procedures. End-users and installers must be provided with antenna installation instructions and transmitter operating conditions for satisfying RF exposure compliance. | |||||
1 2 | Is there an equipment authorization waiver associated with this application? | No | ||||
1 2 | If there is an equipment authorization waiver associated with this application, has the associated waiver been approved and all information uploaded? | No | ||||
app s | Test Firm Name and Contact Information | |||||
1 2 | Firm Name |
TUV Rheinland Taiwan Ltd. Taipei Testing Lab.
|
||||
1 2 | Name |
A**** H******
|
||||
1 2 | Telephone Number |
886-2********
|
||||
1 2 | Fax Number |
+886-********
|
||||
1 2 |
A******@tuv.com
|
|||||
Equipment Specifications | |||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Line | Rule Parts | Grant Notes | Lower Frequency | Upper Frequency | Power Output | Tolerance | Emission Designator | Microprocessor Number | |||||||||||||||||||||||||||||||||
1 | 1 | 15C | CC MO | 2412 | 2462 | 0.6607 | |||||||||||||||||||||||||||||||||||
1 | 2 | 15C | CC MO | 2422 | 2452 | 0.2877 | |||||||||||||||||||||||||||||||||||
Line | Rule Parts | Grant Notes | Lower Frequency | Upper Frequency | Power Output | Tolerance | Emission Designator | Microprocessor Number | |||||||||||||||||||||||||||||||||
2 | 1 | 15E | CC MO | 5180 | 5240 | 0.1222 | |||||||||||||||||||||||||||||||||||
2 | 2 | 15E | CC MO | 5190 | 5230 | 0.1524 | |||||||||||||||||||||||||||||||||||
2 | 3 | 15E | CC MO | 5210 | 5210 | 0.0344 | |||||||||||||||||||||||||||||||||||
2 | 4 | 15E | CC MO | 5745 | 5825 | 0.0582 | |||||||||||||||||||||||||||||||||||
2 | 5 | 15E | CC MO | 5755 | 5795 | 0.092 | |||||||||||||||||||||||||||||||||||
2 | 6 | 15E | CC MO | 5775 | 5775 | 0.0703 |
some individual PII (Personally Identifiable Information) available on the public forms may be redacted, original source may include additional details
This product uses the FCC Data API but is not endorsed or certified by the FCC