Skip to main content
jsr
New Member
February 10, 2022
Question

Firmware Upgradation Fortigate Firewall

  • February 10, 2022
  • 3 replies
  • 6405 views

Hello All, 

 

We have a fortigate firewall 601 hardware (Master-Slave) with version : "v6.0.6 build6325 (GA)" , this firewall is integrated with Forti-Manager  (VM64) which is on version : "v6.2.3 GA build1235".

 

As firewall firmware version is quite Old , we are planning to upgrade the same to some LATEST and STABLE version. 

 

FortiGate Firewall is with License :  Firmware & General Updates, IPS and Antivirus.

 

Requesting if anyone can advise stable latest release for firewall (we also have to consider the compatibility of new firewall version with Forti-Mgr version). 

3 replies

jsr
jsrAuthor
New Member
February 14, 2022

Hi Friends, 

 

Can anyone suggest here....

akristof
Staff
Staff
February 14, 2022

Hello,

 

First of all, you can verify here the compatibility between FortiGate and FortiManager versions:

https://docs.fortinet.com/document/fortimanager/7.0.0/compatibility-with-fortios

Now, to the FortiGate version. I think you have 601E device, so you have option to upgrade up to 7.0 version. Now, when someone is asking which version is the best to upgrade, it always depends on which features you are using. If you want to use ADVPN with SDWAN or SDWAN in general, I would recommend to upgrade 6.2.10 (latest firmware at the moment). But if you are using different features, you want to check release notes and new features doc to see what was implemented, if any bugs were fixed and if any bugs are waiting for fix. Another thing to consider is firmware life cycle. End of support for 6.0 is September 2022.

But, if you are satisfied with 6.0, you can stay on 6.0.14 as it has some vulnerabilities fixed.

jsr
jsrAuthor
New Member
February 16, 2022

Hi akristof, 

 

You mentioned that version 6.0 will going End of Support during Sep-22. Additionally, You also suggesting to stay with 6.0.14 ....Bit confusing...

 

Anyway, If we decide to go for upgrade on 6.0.14 then can we directly jump from 6.0.6(current version) to 6.0.14 ?

 

And if we plan to go with 6.2.10 version , What would be the upgrade path. 

 

please help.

Debbie_FTNT
Staff & Editor
Staff & Editor
February 16, 2022

Hey jsr,

in a setup with FortiManager and FortiGate, please also be aware that you first need to upgrade FortiManager to a newer version, and then the FortiGate, to retain compatibility between the units during upgrade.

In addition, once you have upgraded the FortiGate, you will need to upgrade the FortiManager ADOM to the new FortiGate version, or move the FortiGate to a different FortiManager ADOM with the correct FortiOS version.

akristof
Staff
Staff
February 16, 2022

Hello,

For upgrade path, you can check it here:

https://docs.fortinet.com/upgrade-tool

 

Regarding out-of-support, it will be out-of-support with TAC, device will still receive AV,IPS,APP updated.

jsr
jsrAuthor
New Member
February 17, 2022

Hello akristof, 

 

Thanks !  Please suggest the same (path upgrade process) for Forti-Manager version updation as well.