SonicOS 7 Device Settings

Enabling GMS Management

For more information on SonicWall Global Management System, see the SonicWall GMS and SonicWall Management Services administration documentation, available at https://www.sonicwall.com/support/technical-documentation.

To configure the Security Appliance for GMS management

  1. Navigate to Device | Settings > Administration.
  2. Click Audit / SonicOS API.
  3. Scroll to the ADVANCED MANAGEMENT section.
  4. Enable Management using GMS. The Configure button becomes available.
  5. Click Configure. The GMS Settings screen in displayed.
  6. Enter the host name or IP address of the GMS Console in the GMS Host Name or IP Address field.
  7. Enter the port in the GMS Syslog Server Port field. The default value is 514.
  8. To send only heartbeat status instead of log messages, select Send Heartbeat Status Messages Only.
  9. If the GMS Console is placed behind a device using NAT on the network, select GMS behind NAT Device. When you select GMS behind NAT Device, the NAT Device IP Address field becomes active.
  10. Enter the IP address of the NAT device in the NAT Device IP Address field.
  11. Select one of the following GMS modes from the Management Mode drop-down menu:
    • IPSEC Management Tunnel—Allows the firewall to be managed over an IPsec VPN tunnel to the GMS management console. If you selected this option, go to step 11.
    • Existing Tunnel—Uses an existing VPN tunnel over the connection between the GMS server and the firewall. If you selected this option, go to step 13.
    • HTTPS—Allows HTTPS management from two IP addresses: the GMS Primary Agent and the Standby Agent IP address. The SonicWall firewall also sends encrypted syslog packets and SNMP traps using 3DES and the firewall administrator’s password. Options for configuring the GMS reporting server display. If you selected this option, go to step 12.
  12. The default IPsec VPN settings are displayed with values populated by SonicOS. Verify the settings.

    1. From Encryption Algorithms, select the appropriate algorithm.
    2. Optionally, enter a new encryption key in the Encryption Key field:

      For The key must be
      DES 16 hexadecimal characters
      3DES 48 hexadecimal characters
    3. Optionally, enter a new authentication key in the Authentication Key field:

      For The key must be
      MD5 32 hexadecimal characters
      SHA1 40 hexadecimal characters
    4. Go to Step 13.
  13. SonicOS needs to know the GMS reporting server.

    1. Select Send Syslog Messages to a Distributed GMS Reporting Server. The GMS Reporting Server IP Address and GMS Reporting Server Port options become available.
    2. In the GMS Reporting Server IP Address field, enter the IP address of the GMS server.
    3. In the GMS Reporting Server Port field, enter the port of the GMS server. The default port is 514.
  14. Click OK.
  15. Click Accept.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden