---
title: "Configure WatchGuard Firebox T70"
slug: "configure-watchguard-firebox-t70"
updated: 2026-05-17T17:29:50Z
published: 2026-05-21T21:25:00Z
canonical: "help.8x8.com/configure-watchguard-firebox-t70"
stale: true
---

> ## Documentation Index
> Fetch the complete documentation index at: https://help.8x8.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Configure WatchGuard Firebox T70

## Objective

Configure Watchguard Firebox T70 for 8x8 service.

## Applies To

- Watchguard Firebox T70. Tested version 12.3.B581846

## Procedure

The purpose of this article is to provide a **sample configuration**. At the time of article creation, this device was in a known working state on the firmware used. **Keep in mind different firmware versions will interact with hosted VoIP services in different ways.** While this device may be fully functional on the tested and/or current firmware version, it is possible newer revisions will cause disruptions in service or make a device fully compliant with the required settings for hosted VoIP services where it was previously not.

#### Add 8x8 Servers

1. Go to **Firewall** and then to **Aliases** in the sub menu.
2. When creating new **Aliases** fill in Name as **8x8** and Description as **8x8 Servers.**
3. Click **Add** under Alias Members. ![clipboard_e981a95f0230c9fdf8892a1fce01a23cf.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14761)
4. As Member type select **Network IPv4**
5. Add all 8x8 subnets listed in the [X Series Technical Requirements](/support/docs/x-series-technical-requirements)
6. After all 8x8 servers have been added, click **Save**. ![clipboard_ead6b72855d7eba8712a7d0178717d746.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14759) ![clipboard_e038ac6d2b74f55795d127c81874e7f77.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14757)

#### Create Policy for 8x8

1. Go to **Firewall** then to **Firewall Policies** and click **Add**.
2. In the **Packet Filter** drop down choose **Any**, then click **Add Policy**. ![clipboard_e8b93bbc18e880b6127a7720a21b38db7.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14758)
3. In the **From** boxclick **Add** and select **Any Trusted**.
4. In the **To** box click **Add** and select **8x8**.
5. Check the box next to **Specify custom idle timeout** and set to the timeout to **300** seconds. This helps to prevent dropped calls. ![clipboard_eb31dc569db942609df07acb2fb51a786.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14763)
6. Go to the **Advanced** tab.
7. Select the options below to enable the following in the NAT section:
  - **1-to-1 NAT (Use Network NAT Settings)**
  - **Dynamic NAT**
  - Select **Use Network NAT Settings**
8. Click the checkbox next to **Override Per-Interface Settings**.
9. Set the following values for QoS:
  - Marking Type: **DSCP**
  - Marking Method: **Preserve**
  - Prioritize Traffic Based on: **Custom Value**
  - Value: **7 (Highest)**
10. Click **Save**. ![clipboard_ee443c0f66f2401bf4200d498e17e833e.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14760) ![clipboard_e2c169c527da387108a05afd5d5de8c21.png](https://cdn.us.document360.io/e3a59e39-abd3-4423-964c-0a4008dc5673/Images/Documentation/14762)
