-
Knowledge Base Digest - December 2025
Articles
- WatchGuard access point might lose connection to WatchGuard Cloud after certificate upgrade
- AuthPoint Audit Logs Show Successful Authentication for Failed Logins with the Agent for Windows
- Local AuthPoint Users Show as WatchGuard Cloud Directory Users
- AP shows inactive status and cannot connect to Wi-Fi Cloud
- What to do if you lose the Dimension administrator password
- ThreatSync incidents and blocked and trusted access points not available in WatchGuard Cloud after account merge
- Wireless clients cannot access domains in the Walled Garden before they authenticate to a Captive Portal
- Download and Run PSInfo
- AP125, AP225W, AP325, AP327X, or AP420 managed by Gateway Wireless Controller with Discovered status cannot be paired
- Use a PowerShell script to prepare Microsoft Azure CSPM for integration with WatchGuard MDR
- Use an AWS CloudFormation template to integrate AWS CSPM with WatchGuard MDR
- Legacy installer for WatchGuard Connection Manager for FireCloud no longer supported
- AuthPoint Logon app compatibility with macOS 26.2
- Recommended number of VLANs for Firebox hardware models
- WSM Installer - There is insufficient disk space to complete the operation
Known Issues
- Valid search query for specific groups might not save in Directory Sync Advanced Filter settings
- Traffic fails through an established BOVPN tunnel when you enable IPS
- Large UDP packets do not pass over BOVPN VIF tunnel
- Manage endpoints in WatchGuard Cloud requires Endpoint Security permissions
- Scheduled report files are not available for download from the report history in WatchGuard Cloud
- Mobile VPN with SSL requires admin installations - SAML login fails with white screen and error
- Live Status > Blocked Sites page might not load the list of blocked sites if it contains many blocked sites
- Users get an error when they use the Forgot Token feature in the AuthPoint application portal
- Firebox BOVPNs in error state after upgrade to Fireware v12.11.5 or v12.11.6
- Existing Management Server template missing new Firebox models and cannot be applied
- Firebox crashes when traffic hits a proxy policy through a BOVPN tunnel
- Firebox T125, T145, and T185 drop GRE traffic across a BOVPN tunnel or BOVPN Virtual Interface
-
Knowledge Base Digest - November 2025
Articles
- How do I configure an RMA replacement access point?
- Submit feedback and feature requests through the WatchGuard Idea Portal
Known Issues
- When updates to an AD or LDAP authentication domain are made, advanced filters are removed
- Firebox crashes when HTTP traffic hits an HTTP-proxy policy over a Mobile VPN with IKEv2 tunnel
- WatchGuard Mobile Security app - Disable App Hibernation or Ignore Battery Optimizations permission issues on Android 12 or higher
- Arm LED indicator light flashing red on Firebox
- Operators with custom roles cannot access the UI for AuthPoint, FireCloud, or some cloud-managed Firebox configurations
- Mobile VPN with SSL routing issue on LA or VLAN interfaces with secondary IP
- AuthPoint authentication server is not available for cloud-managed Firebox
- Unable to apply deployment when DHCP option 150 contains multiple IP addresses
- Cannot update feature key in Policy Manager when you move FireCluster configuration to new Firebox hardware model
- Endpoint details for an endpoint with FireCloud shows Error #1
- Untagged VLAN fails when VLAN 1 is tagged on the same interface
- Firebox appears unresponsive and one or more network interfaces do not process traffic
- Only one tagged VLAN works when there are multiple tagged VLANs on an interface
- Conditional DNS forwarding refuses queries on internal interfaces with DNSWatch enabled
- VIF traffic denied as unhandled when you use default BOVPN allow policies
Updated Video Tutorials
- Get Started with WatchGuard Licensing video:
https://youtu.be/1gQIYmwFVr0 - Get Started with ThreatSync video:
https://youtu.be/xL8GtQyqpb0
-
GenAI Answers Now Available
WatchGuard has a substantial library of product documentation, which continues to grow as we release new products and add new features. Our documentation and other resources provide answers to many technical questions, but it can sometimes be time-consuming to find the exact information you need.
The WatchGuard Support and Product Training & Publications teams are pleased to announce a new AI-powered experience that makes it easier to get detailed answers when you search technical documentation or submit support cases.
This solution uses AI and machine learning technologies to embed generated answers in the Technical Search and Support Case creation interfaces. Now, when you create a support case or ask a question in Technical Search, you could see an AI response generated from our technical documentation and other content. With GenAI, we take your query and quickly generate an answer with citation links to official sources of truth. If you still want to create a case with our Support team, this solution also gives our expert Support technicians a head start on troubleshooting.
We encourage you to share feedback with us using the feedback methods available in the UI. Your feedback will help us to create new content to address specific questions, identify errors and omissions, and over time will improve AI-generated responses for all users.
We are committed to improving the customer experience and look forward to hearing your feedback and suggestions!
-
Knowledge Base Digest - October 2025
Articles
- Error "import failed 400 invalid platfom" occurs when you move a configuration to a new Firebox model
- How does the Endpoint Security layered detection model provide protection against malware?
- Mobile VPN with SSL Client v12.11.4 mini browser page remains open, even after a successful SAML authentication to Microsoft Entra ID.
- Operators with custom roles cannot access the UI for AuthPoint, FireCloud, or cloud-managed Firebox policies
- ThreatSync+ Limitation Phase FAQ
Known Issues
- Endpoint Security issue when AutoPlay on removable storage devices is manually disabled from the Windows Registry
- BOVPN tunnel cannot be established when authentication method set to None in Phase 2 proposal
- Fault reports are not generated after a system crash
- When split tunnel VPN is configured, Mobile VPN with SSL Client v12.11.4 users cannot get access to Internet
- AuthPoint gives error code 201.015.010 for the logon app when users authenticate offline or with Forgot Token mode
- Dark mode in WatchGuard Cloud does not show correctly
- Cannot navigate past first page of Firebox Detail reports in WatchGuard Cloud
- Web Access Control in Endpoint Security prevents connection to the Firebox SSL VPN client
New Video Tutorials
- How to Fix License Overallocation video:
https://youtu.be/1HfgyeoGBeU
-
Knowledge Base Digest - August 2025
Articles
- Evil Twin access points not correctly detected by Airspace Monitoring
- How to use device folders in WatchGuard Cloud
- Wireless Fireboxes or WatchGuard access points managed by WatchGuard Cloud classified as Rogue AP in Wi-Fi Cloud WIPS
- Configuration verification failed error message when you attempt to deploy a Firebox configuration in WatchGuard Cloud
- Move a cloud-managed Firebox between Service Provider accounts
- Which Fireboxes have a TPM chip for secure registration with WatchGuard Cloud
- Mobile VPN with IPSec Client connection issues via Wi-Fi on Windows 11 24H2
- Bandwidth limitation when both PoE ports 6 and 7 are used at the same time on the Firebox T185
- Power cord specifications for the Firebox T185
- Firebox T185 does not power on immediately after you power the device off
Known Issues
- Increased Firebox disconnects from WatchGuard Cloud
- Unable to send Firebox fault reports to WatchGuard
- Interface Overflow Multi-WAN failover mode ignores thresholds and passes traffic on another interface on the Firebox T185
- Policy Manager v12.11.3 disables Security Services Statistics logging
- Unable to configure an Authentication Server within the Mobile VPN with IKEv2 configuration in Policy Manager
- Dark Web Credential Monitoring service shows all reported breaches for your email
- Email alerts not sent for credential breaches on dark web reported by WatchGuard
- Access point connects to speedtest.net on boot up
- Mobile VPN with SSL Client v12.11.3 SAML connections fail after WebView2 v139 update
- Fireboxes that run Fireware v12.5.12 disconnect from WatchGuard Cloud after feature key synchronization
- Traffic fails to pass though a BOVPN IKEv1 or IKEv2 tunnel if the tunnel route type is set for a host range of IP addresses
WatchGuard Product Update Blog
