Skip to main content
sriinuvas
Explorer II
August 8, 2026
Question

Migrate SSL-VPN to IPSec_FortiOS upgrade from 7.4 to 7.6 or 8.0

  • August 8, 2026
  • 2 replies
  • 145 views

Hi Everyone,

We have a fortigate firewall with HA and FortiOS is 7.4. also laid few client based FortiGate SSL-VPNs accounts.

Now we have to upgrade either 7.6 or 8.0, where as not support the client based FortiGate SSL-VPNs accounts.

 

So, what is the best practice for moving to 7.6 or 8.0 version?.

Before upgradation can we use any migration tool only for SSL-VPN accounts to IPsec or any other?.

MY SSL-VPN purpose is providing the RDP access & Web based internal urls. 

 

Anyone guide me for best practice for without any production impact?.

Thanks in advance. 

 

    2 replies

    abelio
    SuperUser
    SuperUser
    August 8, 2026

    Hello,

    Sadly, there's no migration tool.
    Plan ahead your new remote access for your users IPSec (or ZTNA if you prefer), and test it, before upgrade to 7.6 / 8.0.
    After upgrade there will be no trace of your ssl vpn config.

     

    hope it helps

    johnlloyd_13
    Explorer III
    August 9, 2026

    hi,

    you can consult the upgrade path tool.

    https://docs.fortinet.com/upgrade-tool

    in your case, you can go 7.4. > 7.6.7M.

    you’ll need to be in 7.6 to jump to 8.0 F (no “mature” image yet). always go with M/mature firmware for stability.

    i’d also recommend upgrade a lab box first or a device with “minimal” impact in production to see its behavior in your network environment.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!