Created on 08-19-2020 12:34 AM Edited on 04-22-2024 09:14 AM By Stephen_G
Description
In the event that the firmware upgrade does not load properly and the FortiGate unit will not boot or continuously reboots, it is better to perform a fresh install of the firmware from a reboot using the CLI.
This article describes how to install firmware from system reboot.
Scope
FortiGate.
Solution
This procedure installs a firmware image and resets the FortiGate unit to factory default settings.
Use this procedure to upgrade to a new firmware version, revert to an older firmware version, or re-install the current firmware.
To use this procedure, connect to the CLI using the FortiGate console port and a RJ-45 to DB-9, or null modem cable.
Install a TFTP server to connect to from the FortiGate internal interface.
The TFTP server is on the same subnet as the internal interface.
Before beginning this procedure, ensure to have a FortiGate configuration backup. See Configuration backups for details.
If a previous FortiOS version is used, you will not be able to restore the previous configuration from the backup configuration file.
Installing firmware replaces the current antivirus and attack definitions, along with the definitions included with the firmware release in installation.
After new firmware installed, make sure that antivirus and attack definitions are up to date.
To install firmware from a system reboot:
execute reboot
This operation will reboot the system!
Do you want to continue? (y/n)
Press any key to display configuration menu..........
Immediately press any key to interrupt the system startup.
The FortiGate will reboot if no button is pressed. If this happens, logging in and repeating the execute reboot command will then be necessary.
If the startup process is interrupted, the following messages appear:
[G]: Get firmware image from TFTP server.
[F]: Format boot device.
[B]: Boot with backup firmware and set as default
[C]: Configuration and information
[Q]: Quit menu and continue to boot with default firmware.
[H]: Display this list of options.
Enter G, F, Q, or H:
Enter TFTP server address [192.168.1.168]:
Enter Local Address [192.168.1.188]:
Enter File Name [image.out]:
Save as Default firmware/Backup firmware/Run image without saving: [D/B/R]
The IP address has to be on the same network as the TFTP server.
Make sure not to enter the IP address of another unit on this network.
Related documents:
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.