You can access switch CLI from vSZ and than SSH to your Firewall from there. Also you should have remote access to that Firewall anyway -- remote Firewall without remote access isn't a good idea...