{"id":171,"date":"2021-01-18T13:09:57","date_gmt":"2021-01-18T13:09:57","guid":{"rendered":"http:\/\/vminded.com\/?p=171"},"modified":"2021-01-27T19:19:54","modified_gmt":"2021-01-27T18:19:54","slug":"configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2","status":"publish","type":"post","link":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/","title":{"rendered":"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\" id=\"h-phase-2-deploy-the-watchguard-firebox-instance\">Phase 2 \u2013 Deploy the WatchGuard Firebox instance<\/h2>\n\n\n\n<p>In <a href=\"http:\/\/vminded.com\/index.php\/2021\/01\/12\/hello-world\/\" target=\"_blank\" rel=\"noreferrer noopener\">Part 1<\/a> of this blog post, we have deployed a new transit VPC with two subnets and a route table configured accordingly.<\/p>\n\n\n\n<p>Now it&#8217;s time to deploy a WatchGuard FW cloud EC2 instance in the transit VPC. This is possible from the EC2 dashboard:<\/p>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\"><li>After logging on the <strong><a href=\"https:\/\/console.aws.amazon.com\" target=\"_blank\" rel=\"noreferrer noopener\">AWS Console<\/a><\/strong> with my personal AWS account, I have selected\u00a0<strong>Services > <a href=\"https:\/\/aws.amazon.com\/ec2\" target=\"_blank\" rel=\"noreferrer noopener\">EC2<\/a><\/strong>.<\/li><li>In the <strong>EC2 Dashboard<\/strong>, I can easily launch a new instance by Clicking on <strong>Launch instance<\/strong> (easy :=)),<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"492\" height=\"404\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-13.png\" alt=\"\" class=\"wp-image-172\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-13.png 492w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-13-300x246.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-13-329x270.png 329w\" sizes=\"auto, (max-width: 492px) 85vw, 492px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\"><li>I have selected\u00a0<strong>AWS Marketplace <\/strong>and type<strong> \u2018firebox\u2019 <\/strong>in the<strong> search window<\/strong> and have decided to pick the\u00a0<strong><a href=\"https:\/\/www.watchguard.com\/wgrd-resource-center\/docs\/firebox-cloud\">Watchguard <\/a><a href=\"https:\/\/www.watchguard.com\/wgrd-resource-center\/docs\/firebox-cloud\" target=\"_blank\" rel=\"noreferrer noopener\">Firebox<\/a><a href=\"https:\/\/www.watchguard.com\/wgrd-resource-center\/docs\/firebox-cloud\"> Cloud<\/a> (Hourly)<\/strong>\u00a0AMI.<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-1024x756.png\" alt=\"\" class=\"wp-image-184\" width=\"576\" height=\"425\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-1024x756.png 1024w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-300x221.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-768x567.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-1536x1134.png 1536w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-2048x1512.png 2048w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2020-12-23-at-16.14.10-1-366x270.png 366w\" sizes=\"auto, (max-width: 576px) 85vw, 576px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\" start=\"2\"><li>You will get the pricing details and Click <strong>Continue<\/strong><\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"508\" height=\"304\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-15.png\" alt=\"\" class=\"wp-image-185\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-15.png 508w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-15-300x180.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-15-451x270.png 451w\" sizes=\"auto, (max-width: 508px) 85vw, 508px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\" start=\"3\"><li>Select the smallest available instance with free tier <strong>t2.micro<\/strong> instance type and click <strong>Next: Configure Instance details<\/strong><\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-16.png\" alt=\"\" class=\"wp-image-186\" width=\"630\" height=\"132\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-16.png 840w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-16-300x63.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-16-768x161.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-16-604x127.png 604w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\" start=\"4\"><li>The configure Instance Details step opens.<\/li><li>From the&nbsp;<strong>Network<\/strong>&nbsp;drop-down list, select your transit VPC&nbsp;:<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"822\" height=\"240\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-17.png\" alt=\"\" class=\"wp-image-189\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-17.png 822w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-17-300x88.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-17-768x224.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-17-604x176.png 604w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\"><li>From the&nbsp;<strong>Subnet<\/strong>&nbsp;drop-down list, select the public subnet to use for eth0.<br><em>The subnet you select appears in the Network Interfaces section for eth0<\/em><em>.<\/em><\/li><li>To add a second interface, in the&nbsp;<strong>Network interfaces<\/strong>&nbsp;section, click&nbsp;<strong>Add Device<\/strong>.<br><em>Eth1 is added to the list of network interfaces<\/em>.<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"732\" height=\"172\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-18.png\" alt=\"\" class=\"wp-image-190\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-18.png 732w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-18-300x70.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-18-604x142.png 604w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\"><li>Click&nbsp;<strong>Next: Add Storage<\/strong><\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"904\" height=\"226\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-19.png\" alt=\"\" class=\"wp-image-191\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-19.png 904w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-19-300x75.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-19-768x192.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-19-604x151.png 604w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 1362px) 62vw, 840px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\"><li>Use the default storage size (5 GB).&nbsp;<\/li><li>Click&nbsp;<strong>Next: Add <\/strong><strong>Tags<\/strong><\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"904\" height=\"336\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-20.png\" alt=\"\" class=\"wp-image-192\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-20.png 904w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-20-300x112.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-20-768x285.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/image-20-604x224.png 604w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 1362px) 62vw, 840px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\" start=\"11\"><li>Click&nbsp;<strong>Next: Configure Security Group<\/strong>. By default, the instance uses a security group that functions as a basic firewall. This security group restricts following ports: HTTPS (TCP 8080), SSH, TCP 4118 (WatchGuard Firewalls may allow remote management using WSM (WatchGuard System Manager) over ports 4117, 4118 TCP).<\/li><\/ol>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group-1024x262.jpg\" alt=\"\" class=\"wp-image-271\" width=\"767\" height=\"196\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group-1024x262.jpg 1024w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group-300x77.jpg 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group-768x196.jpg 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group-1200x307.jpg 1200w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/security-group.jpg 1384w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\" start=\"12\"><li>Click&nbsp;<strong>Review and Launch<\/strong>.<br><em>The configured information for your instance appears.<\/em><\/li><li>Click&nbsp;<strong>Launch<\/strong>.<br><em>The key pair settings dialog box opens.<\/em><\/li><\/ol>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-phase-3-finish-configuring-the-instance-of-the-firebox\">Phase 3 \u2013 Finish configuring the instance of the Firebox<\/h2>\n\n\n\n<p>In this phase we will finish configuring the EC2 instance of our Firebox.<\/p>\n\n\n\n<p>Once the firewall is deployed, from the <strong>EC2<\/strong> <strong>Dashboard<\/strong>, Click on the instance option, the new instance should appear as here:<\/p>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08-1024x23.jpg\" alt=\"\" class=\"wp-image-251\" width=\"512\" height=\"12\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08-1024x23.jpg 1024w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08-300x7.jpg 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08-768x17.jpg 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08-1200x27.jpg 1200w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Screenshot-2021-01-21-at-15.24.08.jpg 1376w\" sizes=\"auto, (max-width: 512px) 85vw, 512px\" \/><\/figure><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-disable-source-destination-checks\"><strong>Disable Source\/Destination Checks<\/strong><\/h3>\n\n\n\n<p>By default, each EC2 instance completes <em>source\/destination<\/em> checks. For the networks on your VPC to successfully use your instance of Firebox Cloud for <strong>NAT<\/strong>, you must <strong>disable<\/strong> the <em>source\/destination<\/em> check for the <strong>network interfaces<\/strong> assigned to the Firebox Cloud instance.<\/p>\n\n\n\n<p>Disabling<strong> source\/destination check<\/strong>s for the public interface is quite simple:<\/p>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\"><li>From the EC2 Management Console, select&nbsp;<strong>Instances &gt; Instances<\/strong>.<\/li><li>Select the instance of Firebox Cloud.<\/li><li>Select&nbsp;<strong>Actions &gt; Networking &gt; Change Source\/Dest. Check<\/strong>.<em> The confirmation message includes the public interface for this instance.<\/em><\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2-1024x171.jpg\" alt=\"\" class=\"wp-image-305\" width=\"623\" height=\"104\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2-1024x171.jpg 1024w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2-300x50.jpg 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2-768x129.jpg 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2-1200x201.jpg 1200w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/firebox-instance-2.jpg 1368w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\" start=\"3\"><li>Click&nbsp;<strong>Yes, Disable<\/strong>.<br><em>The source and destination checks are disabled for the public &amp; private interface.<\/em><\/li><\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-assign-an-elastic-ip-address-to-the-external-interface\"><strong>Assign<\/strong> <strong>an Elastic IP Address to the External Interface<\/strong><\/h3>\n\n\n\n<p>You must assign an <a href=\"https:\/\/docs.aws.amazon.com\/AWSEC2\/latest\/UserGuide\/elastic-ip-addresses-eip.html\" target=\"_blank\" rel=\"noreferrer noopener\">Elastic IP<\/a> (EIP) address to the <strong><em>eth0<\/em><\/strong> interface for the instance of Firebox Cloud. You can use any available EIP address. To make sure you assign it to the correct interface, find and copy the <em><strong>eth0<\/strong><\/em> <strong>interface ID <\/strong>of  your instance of Firebox Cloud.<\/p>\n\n\n\n<p>To find the <em>eth0<\/em> interface ID for your instance of Firebox Cloud:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>From the EC2 Management Console, select&nbsp;<strong>Instances<\/strong>.<\/li><li>Select the <strong>instance<\/strong> of Firebox Cloud.<br><em>The instance details appear.<\/em><\/li><li>Click the <em>eth0 <\/em><strong>network interface<\/strong>.<br><em>More information about the network interface appears.<\/em><\/li><li>Copy the&nbsp;<strong>Interface ID<\/strong>&nbsp;value.<\/li><\/ol>\n\n\n\n<p>To associate the Elastic IP address with the <em>eth0<\/em> interface:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>From the EC2 Management Console, select&nbsp;<strong>Network &amp; Security &gt; Elastic IPs<\/strong>.<\/li><li>Select an available Elastic IP address.<\/li><\/ol>\n\n\n\n<figure class=\"wp-block-image size-large is-resized is-style-default\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-1024x115.png\" alt=\"\" class=\"wp-image-261\" width=\"633\" height=\"71\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-1024x115.png 1024w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-300x34.png 300w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-768x86.png 768w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-1200x134.png 1200w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1.png 1384w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/figure>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\" start=\"3\"><li>Select&nbsp;<strong>Actions &gt; Associate Elastic IP Address<\/strong>.<br><em>The Associate Elastic IP&nbsp;Address page opens.<\/em><\/li><\/ol>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1.jpg\" alt=\"\" class=\"wp-image-259\" width=\"531\" height=\"419\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1.jpg 766w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Picture-1-300x237.jpg 300w\" sizes=\"auto, (max-width: 531px) 85vw, 531px\" \/><\/figure><\/div>\n\n\n\n<p>If you have created 2 <strong>sub-interfaces,<\/strong> You can associate two different publics IPs to the interface:<\/p>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Mange-IP-Address.jpg\" alt=\"\" class=\"wp-image-263\" width=\"476\" height=\"374\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Mange-IP-Address.jpg 540w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/Mange-IP-Address-300x236.jpg 300w\" sizes=\"auto, (max-width: 476px) 85vw, 476px\" \/><\/figure><\/div>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-run-the-firebox-cloud-setup-wizard\"><strong>Run the Firebox Cloud Setup Wizard<\/strong><\/h3>\n\n\n\n<p>After you deploy the Firebox Cloud instance, you can connect to <strong>Fireware <\/strong>Web UI through the <strong>public IP<\/strong> address to run the<strong> Firebox Cloud Setup Wizard<\/strong>. You use the wizard to set the administrative <em>passphrase<\/em>s for Firebox Cloud.<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>Connect to Fireware Web UI for your Firebox Cloud with the public IP&nbsp;address:<br><strong><em>https:\/\/&lt;eth0_public_IP&gt;:8080<\/em><\/strong><\/li><li>Log in with the default <strong>Administrator<\/strong> account user name and <strong>passphrase<\/strong>:<ul><li>User name \u2014&nbsp;<strong>admin<\/strong><\/li><li>Passphrase \u2014 The Firebox Cloud Instance ID<\/li><\/ul><\/li><\/ol>\n\n\n\n<p><em>The Firebox Cloud Setup Wizard welcome page opens.<\/em><\/p>\n\n\n\n<ul class=\"wp-block-list\" type=\"1\" start=\"3\"><li>Click&nbsp;<strong>Next<\/strong>.<br><em>The setup wizard starts.<\/em><\/li><li>Review and accept the End-User License Agreement. Click&nbsp;<strong>Next<\/strong>.<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/fireware-Web-UI-1.jpg\" alt=\"\" class=\"wp-image-275\" width=\"576\" height=\"332\" srcset=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/fireware-Web-UI-1.jpg 451w, https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/fireware-Web-UI-1-300x173.jpg 300w\" sizes=\"auto, (max-width: 576px) 85vw, 576px\" \/><\/figure><\/div>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\" start=\"5\"><li>Specify new passphrases for the built-in&nbsp;<strong>status<\/strong>&nbsp;and&nbsp;<strong>admin<\/strong>&nbsp;user accounts.<\/li><li>Click&nbsp;<strong>Next<\/strong>.<br><em>The configuration is saved to Firebox Cloud and the wizard is complete.<\/em><\/li><\/ol>\n\n\n\n<p>This is the end of <a href=\"http:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\" target=\"_blank\" rel=\"noreferrer noopener\">Part 2<\/a>, in <a href=\"http:\/\/vminded.com\/index.php\/2021\/01\/21\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-3\/\" target=\"_blank\" rel=\"noreferrer noopener\">Part 3<\/a> we are going to configure the IPSEC route based VPN between the Firebox instance and both a native <strong>VPC<\/strong> and a <strong>VMC on AWS<\/strong> <strong>SDDC<\/strong>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Phase 2 \u2013 Deploy the WatchGuard Firebox instance In Part 1 of this blog post, we have deployed a new transit VPC with two subnets and a route table configured accordingly. Now it&#8217;s time to deploy a WatchGuard FW cloud EC2 instance in the transit VPC. This is possible from the EC2 dashboard: After logging &hellip; <a href=\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":112,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[3],"tags":[],"class_list":["post-171","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-vmconaws"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com\" \/>\n<meta property=\"og:description\" content=\"Phase 2 \u2013 Deploy the WatchGuard Firebox instance In Part 1 of this blog post, we have deployed a new transit VPC with two subnets and a route table configured accordingly. Now it&#8217;s time to deploy a WatchGuard FW cloud EC2 instance in the transit VPC. This is possible from the EC2 dashboard: After logging &hellip; Continue reading &quot;Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2&quot;\" \/>\n<meta property=\"og:url\" content=\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\" \/>\n<meta property=\"og:site_name\" content=\"vminded.com\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-18T13:09:57+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-01-27T18:19:54+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"512\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Christophe\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Christophe\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\"},\"author\":{\"name\":\"Christophe\",\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a\"},\"headline\":\"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2\",\"datePublished\":\"2021-01-18T13:09:57+00:00\",\"dateModified\":\"2021-01-27T18:19:54+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\"},\"wordCount\":788,\"commentCount\":2,\"publisher\":{\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a\"},\"image\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg\",\"articleSection\":[\"VMConAWS\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\",\"url\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\",\"name\":\"Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com\",\"isPartOf\":{\"@id\":\"https:\/\/vminded.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg\",\"datePublished\":\"2021-01-18T13:09:57+00:00\",\"dateModified\":\"2021-01-27T18:19:54+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage\",\"url\":\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg\",\"contentUrl\":\"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg\",\"width\":2560,\"height\":512},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/vminded.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/vminded.com\/#website\",\"url\":\"https:\/\/vminded.com\/\",\"name\":\"vminded.com\",\"description\":\"feed your mind with virtual thoughts\",\"publisher\":{\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/vminded.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":[\"Person\",\"Organization\"],\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a\",\"name\":\"Christophe\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/8a35247a893da5c4bd4e7b117047b93859d3def341ac950cf2285f9d9b9220bf?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/8a35247a893da5c4bd4e7b117047b93859d3def341ac950cf2285f9d9b9220bf?s=96&d=mm&r=g\",\"caption\":\"Christophe\"},\"logo\":{\"@id\":\"https:\/\/vminded.com\/#\/schema\/person\/image\/\"},\"sameAs\":[\"http:\/\/vminded.com\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/","og_locale":"en_US","og_type":"article","og_title":"Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com","og_description":"Phase 2 \u2013 Deploy the WatchGuard Firebox instance In Part 1 of this blog post, we have deployed a new transit VPC with two subnets and a route table configured accordingly. Now it&#8217;s time to deploy a WatchGuard FW cloud EC2 instance in the transit VPC. This is possible from the EC2 dashboard: After logging &hellip; Continue reading \"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2\"","og_url":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/","og_site_name":"vminded.com","article_published_time":"2021-01-18T13:09:57+00:00","article_modified_time":"2021-01-27T18:19:54+00:00","og_image":[{"width":2560,"height":512,"url":"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg","type":"image\/jpeg"}],"author":"Christophe","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Christophe","Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#article","isPartOf":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/"},"author":{"name":"Christophe","@id":"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a"},"headline":"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2","datePublished":"2021-01-18T13:09:57+00:00","dateModified":"2021-01-27T18:19:54+00:00","mainEntityOfPage":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/"},"wordCount":788,"commentCount":2,"publisher":{"@id":"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a"},"image":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage"},"thumbnailUrl":"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg","articleSection":["VMConAWS"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/","url":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/","name":"Configure VPN from VMC to WatchGuardTM Firebox Cloud - Part 2 - vminded.com","isPartOf":{"@id":"https:\/\/vminded.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage"},"image":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage"},"thumbnailUrl":"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg","datePublished":"2021-01-18T13:09:57+00:00","dateModified":"2021-01-27T18:19:54+00:00","breadcrumb":{"@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#primaryimage","url":"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg","contentUrl":"https:\/\/vminded.com\/wp-content\/uploads\/2021\/01\/20200817-DSC_3740-scaled.jpg","width":2560,"height":512},{"@type":"BreadcrumbList","@id":"https:\/\/vminded.com\/index.php\/2021\/01\/18\/configure-vpn-from-vmc-to-watchguardtm-firebox-cloud-part-2\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/vminded.com\/"},{"@type":"ListItem","position":2,"name":"Configure VPN from VMC to WatchGuardTM Firebox Cloud &#8211; Part 2"}]},{"@type":"WebSite","@id":"https:\/\/vminded.com\/#website","url":"https:\/\/vminded.com\/","name":"vminded.com","description":"feed your mind with virtual thoughts","publisher":{"@id":"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/vminded.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":["Person","Organization"],"@id":"https:\/\/vminded.com\/#\/schema\/person\/1800a04c708828d9b5c7b64f8eab3b3a","name":"Christophe","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/vminded.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/8a35247a893da5c4bd4e7b117047b93859d3def341ac950cf2285f9d9b9220bf?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/8a35247a893da5c4bd4e7b117047b93859d3def341ac950cf2285f9d9b9220bf?s=96&d=mm&r=g","caption":"Christophe"},"logo":{"@id":"https:\/\/vminded.com\/#\/schema\/person\/image\/"},"sameAs":["http:\/\/vminded.com"]}]}},"_links":{"self":[{"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/posts\/171","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/comments?post=171"}],"version-history":[{"count":34,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/posts\/171\/revisions"}],"predecessor-version":[{"id":1842,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/posts\/171\/revisions\/1842"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/media\/112"}],"wp:attachment":[{"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/media?parent=171"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/categories?post=171"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/vminded.com\/index.php\/wp-json\/wp\/v2\/tags?post=171"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}