Introduction A Watchguard
Introduction A Watchguard
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
2
Introduction to Dimension
What is WatchGuard Dimension?
Deploy WatchGuard Dimension
Set Up WatchGuard Dimension
Configure WatchGuard Dimension
Use WatchGuard Dimension
Support WatchGuard Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
3
What is Dimension?
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
4
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
5
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
6
Dimension Architecture
Log Collector
• Receives log messages
from Firebox devices
• Aggregates data
Web Services
• Serves web application
to users and
administrators
• Interface for device
management and
visibility
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
7
Dimension Architecture
Dimension Server
• Provides API for log
data, provisioning,
maintenance, and
configuration
Database
• Persistent storage for:
– Log and report data
– Device configuration
files
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
8
Deploy Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
9
Deployment Requirements
WatchGuard Dimension is distributed as an .ova file for
installation on VMware ESXi 5.x–6.x and a .vhd file for
installation on Hyper-V.
• Your VM host must support 64-bit guest operating systems
• WatchGuard Dimension has been primarily tested on VMWare
ESXi hypervisors and Microsoft Hyper-V. It can also be installed
in VMware Workstation, Player, Fusion environments, and other
Hyper-V platforms, which is a great option for training and
demonstration.
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
10
Deployment Requirements
WatchGuard Dimension is available on the WatchGuard
website Software Downloads pages.
1. Log in to WatchGuard.com.
2. Select Support Home.
3. Click Software Downloads.
4. From the Show downloads for drop-down list, select
Dimension.
5. Download the current version of Dimension and the Release
Notes.
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
11
Deployment Notes
The Dimension VM default data disk size is 40GB.
If you use the built-in PostgreSQL database, the data disk is
fully reserved for the log database, the web service, and the
related overhead space required by PostgreSQL.
After the Dimension VM is deployed, the data disk size cannot
be reduced.
To limit the size to be less than 40GB and avoid data loss, you
must remove and add Hard disk 2 again, before you power on
the VM for the first time.
After your VM is powered on, you see the IP address
assigned to Dimension through DHCP.
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
12
Deployment Notes
If you do not have a
DHCP server, you must
make a console
connection to your
Dimension VM, and set a
static IP address.
Use this IP address to
make an HTTPS
connection to Dimension
and start the Dimension
Setup Wizard.
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
13
Set Up Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
14
Dimension Requirements
WatchGuard Dimension supports these web browsers:
• Firefox v22 and higher
• Internet Explorer 9 and higher
• Safari 5 and later
• Safari on iOS 6 and higher
• Chrome v29 and higher
Note: FireWatch requires browser versions that support HTML5.
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
15
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
16
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
17
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
18
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
19
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
20
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
21
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
22
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
23
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
24
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
25
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
26
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
27
Configure Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
28
Administration
The (Administration)
menu includes options to
configure, manage, and
use Dimension:
• Manage Tasks
– Schedule Reports
– Back Up Database
– Restore Database
• Server Management
• Database
• Access Management
• System Settings
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
29
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
30
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
31
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
32
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
33
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
35
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
37
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
38
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
40
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
41
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
42
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
43
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
44
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
45
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
46
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
47
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
49
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
50
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
51
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
52
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
53
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
54
Database — Status
On the Database >
Status page, you can
monitor the status of the
Dimension database
Database Status
• Current database status
• Stop & start the
database processes
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
55
Database — Status
Database Backup
• Create or restore a
backup file of the
database
• Does not include
historical data
Log Rate
• Review the last 24
hours of database
activity
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
56
Database — Configuration
On the Database >
Configuration page,
you can change the
location of the
Dimension database.
• Built-in database
• External PostgreSQL
database
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
57
Database — Diagnostics
On the Database >
Diagnostics page, you
can monitor the status of
the Dimension database.
• Database Process List
– See all the active
database processes
• Log Messages
– View the log
messages generated
each day
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
58
Database — Diagnostics
• Status Report
– See statistics for the
devices connected to
Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
59
Manage Tasks
From the Manage Tasks
page, you can add, edit,
or remove these tasks:
• Schedule Reports
• Back Up Historical Data
• Restore Historical Data
Schedule reports to
generate repeatedly, but
back up & restore of
historical data is a one-
time task
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
60
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
61
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
62
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
63
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
64
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
65
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
66
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
67
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
68
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
69
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
70
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
72
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
73
Access Management
On the Access Management pages, you can:
• Manage the local user accounts to specify who can connect to
Dimension
• Configure settings to authentication servers for connections to
Dimension
• Run diagnostic tasks to test the connection to your
authentication servers
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
74
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
75
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
76
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
78
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
80
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
81
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
82
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
83
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
84
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
87
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
90
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
91
Use Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
92
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
93
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
94
Management with
Dimension
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
95
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
96
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
97
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
98
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
99
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
100
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
101
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
102
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
103
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
104
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
105
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
106
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
107
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
109
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
110
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
111
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
112
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
113
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
114
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
115
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
116
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
117
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
118
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
119
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
120
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
121
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
123
Executive Dashboard
Executive Dashboard
Widgets
• Top Zero-Day Malware
(APT)
• Top Clients
• Top Domains
• Top URL Categories
• Top Destinations
• Top Applications
• Top Application
Categories
• Top Protocols
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
124
Executive Dashboard
Click a summary widget
to expand it and see
more detail
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
125
Security Dashboard
Security Dashboard
Widgets
• Top Blocked Advanced
Malware (APT)
• Top Blocked Clients
• Top Blocked Destinations
• Top Blocked URL
Categories
• Top Blocked Applications
• Top Blocked Application
Categories
• Top Blocked Protocols
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
126
Security Dashboard
IPS Signatures
Gateway AntiVirus
Click a summary widget
to expand it and see
more detail
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
127
Subscription Services
Subscription Services
Dashboard Widgets:
• Blocked Websites
• Virus (GAV)
• Intrusions (IPS)
• Malware (APT)
• Reputation Enabled
Defense
• Data Loss Violations (DLP)
• spam
• Botnet Detection
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
128
Subscription Services
Move your cursor over
the chart in each widget
to see more details
View Summary — See
a summary report of the
data included in each
widget
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
129
Threat Map
Denied Packets
(Blocked)
Intrusion Prevention
Service
Web Traffic
Application Control
All Traffic
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
130
FireWatch
Shows IPv4 & IPv6
addresses
Sort by:
• Source
• Destination
• Domains
• Application
• Web Audit
• Protocol
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
131
FireWatch
Pivot on:
• Bytes
(Only for packet filter
traffic for Fireware OS
v11.8 or higher)
• Connections
Hover for more detail:
• Filter further
• Show connections
Full screen mode
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
132
Policy Map
An interactive tool that
aggregates the traffic
through your Firebox
devices and shows the
traffic in a visualization of
the traffic flows
Traffic flows appear as
ribbons that flow through
the connections the
traffic makes
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
133
Policy Map
Policy Map shows the
number of flows, bytes,
and connections that are
included in the traffic
flow
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
134
Policy Map
Filter Policy Map on: • Interfaces in use
• Subscription Services • Connections between active
activity interfaces
• Application activity through
policies
• Policies in use
• Users in policy flows
• Policies that use the most
bandwidth
• Connections between the
Trusted and Optional
interfaces
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
135
Policy Map
Pivot Policy Map on:
• Bytes
• Connections
(Not available for the
Web Audit filter)
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
136
Policy Map
See the traffic flow
The traffic flow ribbon
passes through the
connection columns in
Policy Map
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
137
Policy Map
Click a column to see the
traffic flow details
• Number of connections
• Filter Policy Map on the
selected traffic flow
• View connections in
Policy Map for the
selected traffic flow
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
138
Policy Map
Filtered view of the
selected traffic flow
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
139
Policy Map
View connections from
the selected traffic flow
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
140
AP Devices
AP Devices Dashboard
shows a summary of the
WatchGuard AP devices
connected to the Firebox
Shows the number of
clients for each AP
device over the selected
time range
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
141
AP Devices
Hover to see more
information about a
section of the graph
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
142
AP Devices
Pivot to change data:
• By Bytes
• By Clients
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
143
AP Devices
Filter on:
• All AP Devices
• All SSIDs
• All Bands
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
144
Mobile Devices
The Mobile Devices
Dashboard shows
summary information for
all mobile devices
connected to your
Firebox
Details include:
• Mobile Device name
• Last User name
• Device Type
• VPN Name
• Update Time
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
145
Mobile Devices
Mobile Devices
Widgets:
• Compliance Check
• Device Type
• VPN
Hover over a section of
a Widget for more
information
Click the ? adjacent to
the Widget title for
details about the
information in the
Widget
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
146
Log Manager
Log messages are
stored in UTC time
Appears in your web
browser’s local time
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
147
Log Search
Run simple or complex
search queries to refine
the list of log messages
for the selected Firebox
Filter search results by
log message type:
• Traffic
• Alarm
• Event
• Diagnostic
• Statistic
• All
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
148
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
149
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
150
View Reports
On the Reports tab for a
Firebox, group, or server,
you can expand a report
type and select many of
the same reports that are
available on your
WatchGuard Report
Server
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
151
View Reports
On a report, select
options to pivot
on from the pivot
drop-down list
Export the report to
a PDF file
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
152
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
153
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
154
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
155
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
156
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
157
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved
Thank You!
WatchGuard Training
Copyright ©2016 WatchGuard Technologies, Inc. All Rights Reserved