Configure Forcepoint NGFW software using automatic configuration

Automatic configuration is primarily intended to be used with Forcepoint NGFW appliances, and might not work in all environments when you use your own hardware.

Before you begin

Connect a network cable to the interface that you have configured as the control interface.

If the automatic configuration does not work, use the NGFW Configuration Wizard and import or enter the information manually.

When automatic configuration is used, Interface IDs are mapped to network interfaces on the engine in sequential order: Physical Interface ID 0 is mapped to eth0, Physical Interface ID 1 is mapped to eth1, and so forth.
Note: The imported configuration does not contain a password for the root account. You must set the password after the configuration has been successfully completed.

Steps

  1. Make sure that you have a physical connection to the NGFW appliance using a monitor and keyboard or a serial cable.
    If you use a serial cable, use a terminal console program to connect to the NGFW appliance with these settings:
    • Bits per second — 115,200
    • Data bits — 8
    • Parity — None
    • Stop bits — 1.
    Note: The serial console port speed is 115,200 bps in most NGFW appliances. The speed is 9600 bps in older NGFW appliance models. See the hardware guide for your NGFW appliance model for more information.
  2. Insert the USB drive, then turn on the NGFW appliance.
    The NGFW appliance starts, applies the initial configuration file that is saved on the USB drive, then makes initial contact to the Management Server.
    • If the automatic configuration fails, and you do not have a monitor connected, check sg_autoconfig.log on the USB drive.
    • If you see a connection refused error message, make sure that the Management Server IP address is reachable from the node.
  3. When you see the prompt that indicates that the installation is finished, remove the USB drive, then press Enter.
    The console opens and you are prompted to set the password for the root account.
  4. Enter and confirm the password.

Result

When the appliance successfully contacts the Management Server, the configuration is complete.