What Myrmex Can Do
Read & troubleshoot
Query interfaces, routing, policies, and system status on demand — read-only diagnostics.
Hardening audit
Run a Security Posture audit across Firebox controls.
Policy review
Review firewall policies and propose cleanups.
Config management
Review the device configuration; apply policy changes on approval.
Before You Start
- A Collector deployed on a network that can reach the Firebox management IP over SSH. See Deploying the agent.
- SSH management access enabled on the Firebox (the CLI listens on port
4118). - A device management account Myrmex can use to log in.
Step 1 — Create the Access Account in WatchGuard
WatchGuard Firebox devices expose a command-line interface over SSH on port4118. The credential Myrmex needs is a device management username and passphrase.
1
Enable SSH management access
In Fireware Web UI (or Policy Manager), allow SSH management access to the Firebox.
2
Choose the account
Use the read-only Device Monitor account for analysis, or a Device Administrator account to apply changes.
3
Record the credentials
Note the username and passphrase — you’ll enter them in Myrmex.
Step 2 — Add the Integration in Myrmex
From the Directory, choose Add Integration → WatchGuard Firewall, then fill in:Connect
Click Connect to validate the SSH connection and finish. The Firebox then appears under Environment → Integrations, and you can start asking Hydra about it in the Workspace.Your credentials are stored securely and resolved server-side — they never pass through the AI, and Myrmex reads the device on demand rather than storing its data.