advertisement
Contents
Limited Hardware Warranty
FCC Certification
............................................... ii
............................................................. v
CE Notice
....................................................................... vi
Industry Canada
.............................................................. vi
Taiwanese Notice
........................................................... vii
VCCI Notice Class A ITE
................................................. vii
Hardware Requirements
...................................................1
Hardware Description
.......................................................2
Firebox III front view (all models except Model 500 and 700) .3
Firebox III front view (Model 500 and 700) ..........................5
Firebox III rear view (all models except Model 500 and 700) ...6
Firebox III rear view (Model 500 and 700) ...........................8
Physical specifications (All models except
Model 500 and 700) ...............................................9
Physical specifications (Model 500 and 700)
.......................................................10
Hardware Guide ix
x
Hardware Guide
The WatchGuard Firebox III is a specially designed and optimized security appliance. Solid-state architecture removes the risk of hard-drive failure and disk crashes. Three independent network interfaces allow you to separate your protected office network from the Internet while providing you an optional public interface for hosting Web, email, or FTP servers. Each network interface is independently monitored and visually displayed on the front of the Firebox.
Easily installed into your network, the rack-mountable
Firebox plugs in at the Internet connection of your offices to implement security policies and protection.
For information on installing the Firebox, see the Firebox QuickStart Poster or the “Getting Started” chapter in the WatchGuard Firebox System User Guide .
Hardware Requirements
WatchGuard recommends physically installing a Firebox III under the following conditions:
Hardware Guide 1
• Securely rack-mounted
• Placed in a dry, temperature-controlled environment from —10 to +70 degrees Celsius (14 to +158 degrees
Fahrenheit).
• Placed in a secured environment, such as a locked LAN room, or similar space, to prevent physical compromise by unprivileged personnel
• Connected to conditioned power to prevent damage caused by power spikes and other power fluctuations
The following minimum hardware requirements pertain to the management station–the computer that administers the Firebox. This computer runs the Firebox System Manager software, which provides access to WatchGuard Firebox System applications.
Hardware feature Minimum requirements (management station)
CPU
Memory
Hard disk space
CD-ROM drive
Pentium II
Same as for operating system.
Recommended:
64 MB for Windows NT 4.0
64 MB for Windows 2000 Professional
256 MB for Windows 2000 Server
25 MB to install all WatchGuard modules
15 MB minimum for log file
Additional space as required for log files
Additional space as required for multiple configuration files
One CD-ROM drive to install WatchGuard from its
CD-ROM distribution disk
Hardware Description
The Firebox III has indicator lights on the front and connections on the back.
2
Hardware Description
Firebox III front view (all models except
Model 500 and 700)
Indicators for the Firebox III Model 1000, Model 2500, and
Model 4500 are on a central back-lit indicator panel. The following photograph shows the entire front view.
The photograph below shows a close-up of the indicator panel. From the left, the indicators are as described on the next page.
Hardware Guide
Disarm
Red light indicates the Firebox detected an error, shut down its interfaces, and will not forward any packets. Reboot the Firebox.
3
4
Armed
Green light indicates the Firebox has been booted and is running.
Sys A
Indicates that the Firebox is running from its primary user-defined configuration.
Sys B
Indicates that the Firebox is running from the readonly factory default system area.
Power
Indicates that the Firebox is currently powered up.
Security Triangle Display
Indicates traffic between Firebox interfaces. Green arrows briefly light to indicate allowed traffic between two interfaces in the direction of the arrows. A red light at a triangle corner indicates that the Firebox is denying packets at that interface.
Traffic
A stack of lights that functions as a meter to indicate levels of traffic volume through the
Firebox. Low volume indicators are green, while high volume indicators are yellow. The display updates three times per second. The scale is exponential: the first light represents 64 packets/ second, the second light represents 128 packets/ second, increasing to the eighth light which represents 8,192 packets/second.
Load
A stack of lights that functions as a meter to indicate the system load average. The system load average is the average number of processes running (not including those in wait states) during the last minute. Low average indicators are green, while high average indicators are yellow. The display updates three times per second. The scale is exponential with each successive light representing a doubling of the load average. The first light
Hardware Description represents a load average of 0.15. The most significant load factor on a Firebox is the number of proxies running.
Firebox III front view (Model 500 and 700)
Firebox III Model 500 and 700 indicators are on a central back-lit indicator panel. The following photograph shows the entire front view.
The following photograph shows a close-up of the indicator panel. From the left, the indicators are as described below.
Hardware Guide 5
6
Disarm
Red light indicates the Firebox detected an error, shut down its interfaces, and will not forward any packets.
Armed
Green light indicates the Firebox has been booted and is running.
Sys A
Indicates that the Firebox is running from its primary user-defined configuration.
Sys B
Indicates that the Firebox is running from the readonly factory default system area.
Power
Indicates that the Firebox is currently powered up.
Security Triangle Display
Indicates traffic between Firebox interfaces. Green arrows briefly light to indicate allowed traffic between two interfaces in the direction of the arrows. A red light at a triangle corner indicates that the Firebox is denying packets at that interface.
Firebox III rear view (all models except
Model 500 and 700)
The rear view of the Firebox III Model 1000, Model 2500, and Model 4500 contains ports and jacks for connectivity as well as a power switch. From the left, rear panel features are as described on the next page:
Hardware Description
Hardware Guide
AC Receptacle
Accepts the detachable AC power cord supplied with the Firebox.
Power Switch
Turns the Firebox on or off.
PCI Expansion Slot
Reserved for future use.
Factory Default
This button is active only during the boot process.
To boot the Firebox to SYS B, press this button and hold it down for 20-60 seconds (or until you see the
Sys B light come on).
Console Port
Connects to the management station or modem through a serial cable supplied with the Firebox using PPP.
.
Ethernet Ports
(Shown on the previous page) Indicators for each network interface display link status, card speed, and activity. The network interface cards (NICs) are auto-sensing and adapt to wire speed automatically. The speed indicator lights when
7
there is a good physical connection to the Firebox.
When the card runs at 10Mbit, the speed indicator is yellow. When the card runs at 100 Mbit, the speed indicator is green. The amber traffic indicator blinks when traffic is passing through the
Firebox.
Firebox III rear view (Model 500 and 700)
The rear view of the Firebox III Model 500 and 700 contains ports and jacks for connectivity as well as a power switch.
From the left, rear panel features are as described below:
8
AC Receptacle
Accepts the detachable AC power cord supplied with the Firebox.
Power Switch
Turns the Firebox on or off.
Factory Default
This button is active only during the boot process.
To boot the Firebox to SYS B, press this button and hold it down for 20-60 seconds (or until you see the
Sys B light come on).
Hardware Description
Console Port
Connects to the management station or modem through a serial cable supplied with the Firebox using PPP.
Ethernet Jacks
Indicators for each network interface display link status, card speed, and activity. The network interface connections (NICs) are auto-sensing and adapt to wire speed automatically. The speed indicator lights when there is a good physical connection to the Firebox. When the card runs at
10Mbit, the speed indicator is yellow. When the card runs at 100 Mbit, the speed indicator is green.
The amber traffic indicator blinks when traffic is passing through the Firebox.
Physical specifications (All models except
Model 500 and 700)
• Three RJ-45 10/100Tx Ethernet interfaces
• 1 DB-9 serial port
• PCI expansion option
• 500 MHz AMD K6-III processor
300 MHz AMD K6-II processor (model 1000 only)
• 64-MB SDRAM (model 1000)
128-MB SDRAM (model 2500)
264-MB SDRAM (model 4500)
• 8-MB flash disk
• 100-240 VAC Autosensing, 50/60 Hz
• Height: 2.85”; Width: 15.5 “; Depth: 10.5”
Physical specifications (Model 500 and 700)
• Three RJ-45 10/100Tx Ethernet interfaces
• 1 DB-9 serial port
Hardware Guide 9
10
• 233 MHz AMD K6-II processor
• 64-MB SDRAM
• 8-MB flash disk
• 100-240 VAC Autosensing, 50/60 Hz
• Height: 2.85”; Width: 15.5 “; Depth: 10.5”
Cross-over cabling
To connect a Firebox to a hub or switch, use a standard, straight-through cable. However, if you plan to connect a
Firebox directly to a router, either purchase or build a cross-over cable for RJ-45 (Cat5) wire.
The tables below provide pin-out descriptions for both a straight-through and a RJ-45 (Cat5) cross-over cable.
Pin Number Pin Number
1 (Transmit Plus) 1 (Transmit Plus)
2 (Transmit -) 2 (Transmit -)
3 (Receive Plus) 3 (Receive Plus)
6 (Receive -) 6 (Receive -)
4,5,7,8 Not Used
Pin Number Pin Number
1 (Transmit Plus) 3 (Receive Plus)
2 (Transmit -) 6 (Receive -)
3 (Receive Plus) 1 (Transmit Plus)
6 (Receive -) 2 (Transmit -)
4,5,7,8 Not Used
advertisement
Related manuals
advertisement
Table of contents
- 2 Limited Hardware Warranty
- 5 FCC Certification
- 6 CE Notice
- 6 Industry Canada
- 7 Taiwanese Notice
- 7 VCCI Notice Class A ITE
- 9 Contents
- 11 Hardware Requirements
- 12 Hardware Description
- 13 Firebox III front view (all models except Model 500 and 700)
- 15 Firebox III front view (Model 500 and 700)
- 16 Firebox III rear view (all models except Model 500 and 700)
- 18 Firebox III rear view (Model 500 and 700)
- 19 Physical specifications (All models except Model 500 and 700)
- 19 Physical specifications (Model 500 and 700)
- 20 Cross-over cabling