Skip to main content
Connect your WatchGuard Firebox (Fireware OS) so Myrmex can read its configuration, audit its hardening, help you review policies, and — with approval — apply changes. Myrmex reaches the device’s command-line interface over SSH through a Collector on your network, in real time.

What Myrmex Can Do

Read & troubleshoot

Query interfaces, routing, policies, and system status on demand — read-only diagnostics.

Hardening audit

Run a Security Posture audit across Firebox controls.

Policy review

Review firewall policies and propose cleanups.

Config management

Review the device configuration; apply policy changes on approval.

Before You Start

  • A Collector deployed on a network that can reach the Firebox management IP over SSH. See Deploying the agent.
  • SSH management access enabled on the Firebox (the CLI listens on port 4118).
  • A device management account Myrmex can use to log in.

Step 1 — Create the Access Account in WatchGuard

WatchGuard Firebox devices expose a command-line interface over SSH on port 4118. The credential Myrmex needs is a device management username and passphrase.
1

Enable SSH management access

In Fireware Web UI (or Policy Manager), allow SSH management access to the Firebox.
2

Choose the account

Use the read-only Device Monitor account for analysis, or a Device Administrator account to apply changes.
3

Record the credentials

Note the username and passphrase — you’ll enter them in Myrmex.
Prefer least privilege: use the Device Monitor (read-only) account unless you want the agents to apply changes.

Step 2 — Add the Integration in Myrmex

From the Directory, choose Add Integration → WatchGuard Firewall, then fill in:

Connect

Click Connect to validate the SSH connection and finish. The Firebox then appears under Environment → Integrations, and you can start asking Hydra about it in the Workspace.
Your credentials are stored securely and resolved server-side — they never pass through the AI, and Myrmex reads the device on demand rather than storing its data.