Watchguard Settings

Firewall Policies

  • Navigate to the Firewall Submenu and select Firewall Policies
  • Click on Add Policy
    • Select Custom under Policy Type
    • Click Add

      • Enter a policy name: Ringfree
      • Enter a policy description: Ringfree Ports
        • Click Add under Protocols

          • Select type: Single Port
          • Select Protocol: UDP
          • Enter Server port: 5060
        • Click Add under Protocols

          • Select type: Port Range
          • Select protocol: UDP
          • Enter Start Server Port: 10000
          • Enter End Server Port: 20000
        • Click Save
    • Select the new policy template Ringfree under Policy Type and verify that the ports are correct
    • Click Add Policy
  • Select the new Ringfree firewall policy and select Edit Policy from the action dropdown
    • Under the From box, click Add
      • Select Member Type: Alias
      • Select Any-Trusted
      • Click Ok
    • Under the To box, click Add
      • Select Member Type: Alias
      • Select Any-External
      • Click Ok

    • Make sure the enable box at the top is checked
    • Save

Bandwidth Management

  • Navigate to the Firewall submenu and select Traffic Management
  • Click Add
    • Enter a name: RF – UP
    • Enter a description
    • Select a type: All Policies
    • Enter the locations Maximum upstream bandwidth
    • Enter a guaranteed bandwidth for voice service
    • Click Save
  • Select the Ringfree Policy
  • Select RF – UP from the forward action dropdown
  • Save

Port Forwarding – NOTE: ONLY TO BE USED FOR TEMPORARY ACCESS TO A NONFUNCTIONING PHONE.  NOT NECESSARY FOR CALL QUALITY.

  • Navigate to Firewall, then SNAT
    • Click Add
      • Enter a name: PF
      • Enter a description: Port Forward
      • Under SNAT Members, click Add
        • Enter the local IP of the device to be accessed
        • Check Set internal port to a different port: 443
        • Click OK
      • Save
  • Navigate to Firewall Policies
    • Click Add Policy
      • Enter Policy name: PF
      • Select Custom Policy type: PF
      • Click Add Policy
  • Select the PF Firewall Policy and Click Edit
    • Set From to Any-external
    • Set to to the Port Forward SNAT
    • Check the Enable box at the top to activate the port forward (Be sure to disable it once maintenance is complete)
    • Click Save