upgrade batch of FGT 6.4.6 to be used in FMGR7.4
Hi,
having issues with this scenario. I'm wondering what the best practice is...
FMGR release = 7.4.3 build 2487
ADOM is created for FGT release 7.2
In this ADOM we use a Device Blueprint to import a batch of Fortigates and push the config to them (using templates). On the Fortigates we run a CLI script to register them in FortiManager, so minimal touch is required (we plan to use DHCP option for the FortiManager settings)
However, we have a batch of Fortigates - 60F model - (unpacked - so "new") which come in release 6.4.6.
When we run the CLI to register them in FortiManager, the device does not link to FMGR. I assume this is due to the fact that the ADOM is in R7.2 and the FGT is in R6.4.6 (incompatible).
Are there any best practices to get these Fortigates in FMG with minimal touch config?
I tried:
- booting the Fortigates with an USB stick with 7.2 firmware, but this results in a crash of the Fortigate (fails to boot. A TFTP file transfer is needed). If it would boot, I could perform a factory reset because the upgrade path was not followed.
I could try with a lower version first (R 7.0) and then continue to R7.2, but these are a lot of extra steps.
Even if this works, if I unpack a FGT I'm not 100% sure which release is installed on it.
So, it could be I'm doing these steps which are not needed if I pick a box with a recent firmware installed on it.
I also raised a ticket at Fortinet support, but untill now the reaction was "FMGR 7.2 = not compatible with FortiOS 6.4.6)
Also checked with Fortigate Cloud / ZTP deployment. I can point to my own FMGR - but no option to do a firmware upgrade.
