Questions tagged [watchguard]

Watchguard make firewalls and other network devices, and related management and monitoring software.

Watchguard (http://www.watchguard.com) is an American network security company, which creates firewalls, wireless access points and associated network security devices, management and monitoring software.

Their main products include:

The Watchguard XTM firewall range

These are targeted at small to medium businesses, and they focus on being feature-rich with network features (site-to-site VPNs, remote user VPNs, firewall clustering, multiple WAN connections, VLANs, QoS and bandwidth reservations, bandwidth limits and very configurable firewall policies), high level control and monitoring of network traffic and internet use (website blocking by category, specific application blocking, per-user and per-group policies) and defense-in-depth with integrated security services (AntiVirus, AntiSpam, Intrusion Prevention signatures, deep packet inspection and protocol analysis for HTTP/HTTPS/FTP/DNS/etc.).

Watchguard firewalls are available as small office devices (XTM 2 and XTM 3 series) with optional integrated WiFi, fullsize rackmount devices for central offices and datacenters (other XTM and M devices), and as virtual machines (the XTMv range) for VMware and Hyper-V deployment.

Their business model is to have a standard firewall software offering, with the more advanced features available by purchasing licensing upgrades, and to have the same management tools, configuration format and monitoring apply up and down the hardware range. The hardware range is differentiated by processing power, memory and number of interfaces of different speeds, although some of the advanced features are unavailable on the smallest models or the XTMv virtual firewalls.

Watchguard XCS Range

The XCS devices are dedicated email filtering devices, with detailed control of users and groups, attachments, content scanning and filtering.

Watchguard AP range

These are wireless access points]1 designed to be used with a Watchguard firewall. The configuration is done as part of the firewall configuration and the access points pick up their settings from the firewall.

Watchguard SSL range

Dedicated SSL VPN portal device for end user access to a central site. They offer The features in these are increasingly included in by the newer firewall firmwares,

Their software includes

Watchguard System Manager

The desktop version of the firewall management software, it comes in two parts - firebox system manager for connecting to a firewall and seeing live status, traffic log messages, running diagnostic commands, and policy manager for editing the firewall policies and general device configuration.

Their firewalls also have a web interface for policy configuration, which is increasingly where Watchguard's focus is going.

Watchguard Dimension

A virtual machine appliance which integrates logging from Watchguard firewalls, alerting from those logs, and analysing the logs and presenting a web interface of the results.

The analysis covers things like bandwidth use per policy, per host, per server, per connection type. Internet access / website use per user or group. Numbers of connections per policy. Attacks detected, and their sources. Usage levels at different times of day, and so on.

Watchguard LogServer and ReportServer

These are Windows services which accept encrypted logging connections from Watchguard firewalls and store them in a PostgreSQL database, it can send email email alerts on firewall log events.

ReportServer analyses the logs and generates reports of internet traffic use, bandwidth use, and so on.

Both of these are being replaced by Watchguard Dimension.

Watchguard Central Management Server

A Windows service which manages firewalls, giving a single place to connect to for firewall management. It can save configuration revision histories, show diffs, and allow configuration rollback, schedule configuration changes and firmware upgrades, and has some support for firewall policy templates and VPN templates.

Utility software

Single-Sign-On helper services, for installing on Windows domain controllers, desktops, and Exchange servers - usable in different combinations to support different ways the firewalls can detect which network traffic is linked to which users and mobile devices.

SSL VPN Client - a VPN client for laptop and desktop users connecting to the SSL VPN service on Watchguard firewalls.

112 questions
1
vote
0 answers

Watchguard - passwordless SSH login to block/ban IP addresses

I have Watchguard XTM22-W as my firewall. On it there are few 1-to-1 NAT policies through which I access local services (mainly SSH on different machines). All these machines have Fail2Ban installed and send everything to a central log server. All…
grs
  • 2,235
  • 6
  • 28
  • 36
1
vote
3 answers

Networking 2 lans together for file transfers

I currently have 2 separate cabinets setup in a data center and each cabinet has it's own Watchguard XTM810 firewall and ISP router. The cabinets are not located next to each other. All of the servers in the cabinets are hosting web services and the…
Dave
  • 13
  • 2
1
vote
2 answers

New EFM leased line setup with Watchguard router, vlan tagging issue

I have recently had a 2mb EFM connection installed in a charity I work for. We were not supplied a router because we already had a watchguard XTM330 in storage ready to be used. The line is presented by a Hatteras HN408-CP which I've plugged into…
Mark
  • 21
  • 2
1
vote
0 answers

Webservice randomly dropping connections - possibly due to firewall nonevent data?

I have a hosted webapp which requests data from a REST webservice in our office. Each page calls one (or several) webservices, which go from our host, via our firewall (a Watchguard Firebox) to a server in our office. All of a sudden, the app has…
adam
  • 243
  • 2
  • 6
1
vote
1 answer

Connecting two networks VPN different IP Schemes

I have a client with two networks in two buildings and they want to access each others resources. Right now site B connects to site A via a VPN over a T1 line. They want to get rid of the T1 and go to our local cable provider which offers a 50mb…
msindle
  • 605
  • 8
  • 26
1
vote
1 answer

WatchGuard proxy error - header-line too large

When trying to access new threads on a forum, I am receiving the error below. It seems like post count on the forum may have reached a point that it is generating a HTTP response header that is too large. Which setting in the WatchGuard HTTP proxy…
firedfly
  • 162
  • 1
  • 1
  • 6
1
vote
1 answer

Wireless LAN Bridge with WAN VPN Failover

My network is below, it's currently just an ordinary 192.168.0.0/24, the branch offices needs to have access to resources on the main site. Currently all internet traffic go across the bridge and through the Watchguards WAN connection. The…
1
vote
1 answer

Watchguard XTM 505 forward ftp reuqests

I have a Watchguard XTM 505 that I need a user to open up their FTP client and connect to the outside IP address of the building and have the watchguard forward that request to the ftp server at 192.168.1.5. The user has a username and password in…
msindle
  • 605
  • 8
  • 26
1
vote
1 answer

Firebox XTM21 failing to route

So I have bought a new XTM 21 appliance from Watchguard. This god awe-full thing will not route any traffic no matter what rules I apply in the firewall setup. When the syslog doesn't crash as I'm viewing it I can see all the traffic being blocked…
Digital ink
  • 500
  • 1
  • 10
  • 23
1
vote
1 answer

Watchguard SSL Certificate problems

We recently purchased a Watchguard XTM 510. The hope is to replace our ISA 2006 proxy with this UTM product. We are having some issues with secured sites in our test setup. Currently We are still running traffic through the ISA server and I have…
Bill Best
  • 165
  • 2
  • 8
0
votes
1 answer

Azure Site-to-Site VPN through a Watchguard Firewall

Summary I'm trying to figure out what Firewall Policy I need to create to allow VPN connection traffic through my Watchguard firewall. Description I'm really struggling to figure out how to create a Site-to-site VPN connection between my Azure VNet…
Pure.Krome
  • 6,508
  • 18
  • 73
  • 87
0
votes
0 answers

Routing to a different Subnet through VPN

im facing the following problem and after 2 days of own research and a huge amount of trial & error i could use some help. Situation: 1 Company, 2 Offices. Both are connected by a BVPN(Branch Office VPN) Tunnel between two Watchguard Fireboxes…
Jesper
  • 1
0
votes
1 answer

Strange Path Selection in WatchGuard OSPF

I am trying to configure OSPF between some cisco CPE routers and two WatchGuards. Already tried quite a lot of different setups, already trying to change network design, unfortunately every time I have the same result. Below I have drawn the network…
Dexterite
  • 170
  • 1
  • 6
0
votes
1 answer

WatchGuard Firebox own Internet connectivity fails after adding BovpnVif route to 0.0.0.0/0

Environment: A company network has a Firebox M-series appliance with Total Security Suite at headquarters. Every branch office has a smaller T-series Firebox without subscription services. For this reason, all traffic from the branch offices is…
Esa Jokinen
  • 46,944
  • 3
  • 83
  • 129
0
votes
1 answer

Getting error trying to connect across VPN using IPSEC IKEv2 PSK unsupport

This is the error I'm getting on the traffic monitor on my firewall. I have Watchguard X510 and I can't seem to get ipsec to work at all. 2018-07-12 10:46:19 iked (12.*.*.*<->10.30.30.146)drop the received IKEv2 message from 10.30.30.146:55402 -…
scott
  • 1
  • 1
  • 1