1 Click the appliance tab that corresponds to the type of appliance that you want to add: Firewall, SRA, CDP, or Email Security.
2 Expand the GMS tree and select the group to which you will add the SonicWALL appliance. Then, right-click the group and select Add Unit from the pop-up menu. To not specify a group, right-click an open area in the left pane (TreeControl pane) of the GMS management interface and select Add Unit or click the Add Unit icon in the tool bar.
The Add Unit dialog box appears:
3 Enter a descriptive name for the SonicWALL appliance in the Unit Name field.
Do not enter the single quote character (‘) in the Unit Name field.
4 If applicable, choose a Domain to add this appliance to from the Domain pull-down list.
5 Enter the serial number of the SonicWALL appliance in the Serial Number field.
6 For the Managed Address, choose whether to Determine automatically, or Specify manually. Most deployments are able to determine the IP address automatically. If you choose to specify the IP address manually, an option to Make manual address sticky is available. This retains the Manual Mode and the specified IP address is not overwritten.
7 Enter the Administrator login name for the SonicWALL appliance in the Login Name field. The Administrator of the appliance can also enter a Local User or a Remote User name (as configured on the Firewall) for GMS Management. If using Local User or Remote User names, they must be included in the user list created on the Firewall.
8 Enter the password used to access the SonicWALL appliance in the Password field.
9 For Management Mode, select from the following:
• If the SonicWALL appliance is managed through an existing VPN tunnel or over a private network, select Using Existing Tunnel or LAN.
• If the SonicWALL appliance is managed through a dedicated management VPN tunnel, select Using Management Tunnel.
• If the SonicWALL appliance is managed using SSL, select Using SSL (default).
10 Enter the IP address of the managed appliance in the Management Port field.
11 For VPN tunnel management, enter a 16-character encryption key in the SA Encryption Key field. The key must be exactly 16 characters long and composed of hexadecimal characters. Valid hexadecimal characters are “0” to “9”, and “a” to “f” (such as 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, a, b, c, d, e, f). For example, a valid key would be “1234567890abcdef.”
12 For VPN tunnel management, enter a 32-character authentication key in the SA Authentication Key field. The key must be exactly 32 characters long and composed of hexadecimal characters. For example, a valid key would be “1234567890abcdef1234567890abcdef.”
13 Select the IP address of the GMS agent server that manages the SonicWALL appliance from the Agent IP Address list box:
14 If the GMS is configured in a multi-tier distributed environment, enter the IP address of the backup GMS server in the Standby Agent IP field. The backup server automatically manages the SonicWALL appliance in the event of a primary server failure. Any Agent can be configured as the backup.
15 To add the appliance to Net Monitor, select Add this unit to Net Monitor.
16 Click Properties. The Unit Properties dialog box appears.
17 This dialog box displays the category fields to which the SonicWALL appliance belongs. To change any of the values, select a new value from the pull-down list. When you are finished, click OK. You are returned to the Add Unit dialog box.
18 Click OK. The User Privileges dialog box displays.
20 Click OK. The new SonicWALL appliance appears in the GMS management interface. It will have a yellow icon that indicates it has not yet been successfully acquired.
The GMS will then attempt to establish a management VPN tunnel, set up an SSL connection, or use the existing site-to-site VPN tunnel to access the appliance. GMS then reads the appliance configuration and acquires the SonicWALL appliance for management. This might take a few minutes.