Created on
05-28-2025
10:06 PM
Edited on
01-05-2026
01:43 AM
By
Jean-Philippe_P
| Description | This article describes how to change the security level on a G series FortiGate. |
| Scope | FortiGate G series. |
| Solution |
The BIOS Security Level can be changed from the console on other FortiGate hardware models, including the FortiGate and FortiWiFi 30G and 31G: BIOS-level signature and file integrity.
On other FortiGate G-series models, a physical security-level switch is available to change the BIOS Security Level.
Refer to the following site and search for the model number. The information can be found within the Datasheet: FortiGate Hardware Guide.
This switch allows changing the security level between Low and High:
There is also a FortiGate G series model that only shows the security level light on the Front panel, but the control switch is set on the back panel as per 71G in the following example.
The next step to change the security level is to reboot the device and break the booting sequence. The picture below shows the set of actions that are supposed to be taken so the security level can be changed. These are the steps to be chosen from the boot menu:
The result should be as in the 'get system status' output below. The important outputs are on the lines 'Current Security Level' and 'Physical Switch Security Level'. Once these parameters are 'low', the parameters of the FortiGate are successfully changed and ready for the needed operations (for example, installing an interim build).
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.