FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Renante_Era
Staff
Staff
Article Id 247403
Description

This article describes the path to downgrade FortiGate 1200D with FortiOS 7.2 firmware.

Several customers were able to upgrade FortiGate 1200D to FortiOS 7.2.x firmware even though FortiGate 1200D is not in the list of FortiOS 7.2.x supported models. See the below release notes for more information:

 

https://docs.fortinet.com/document/fortigate/7.2.0/fortios-release-notes/760203/introduction-and-sup...

https://docs.fortinet.com/document/fortigate/7.2.4/fortios-release-notes/760203/introduction-and-sup...

Scope FortiGate 1200D with firmware 7.2.x.
Solution

FortiGate 1200D with FortiOS 7.2 is unable to download and upgrade to FortiOS 7.2.4+ firmware. 

The following steps are recommended:

 

Case 1: With an existing 6.4 or 7.0 backup config and no major configuration changes

 

1) Backup the current 7.2.x config in the GUI through Admin->Configuration->Backup.

 

Renante_Era_1-1677512929198.png

 

2) Open the existing FortiGate 1200D 6.4.x or 7.0.x backup config and confirm the firmware and build.

3) Reload the FortiGate1200D firmware and restore the backup config. For example, if the original backup config before upgrading to 7.2.x is 7.0.7, reload FortiOS 7.0.7 firmware in the FortiGate 1200D before restoring the backup config.

4) If there are some changes in the config after upgrading the firmware to 7.2.x (e.g. new firewall policy, VIP entry, and so on), update the config as appropriate through either the GUI or CLI.

 

Case 2: Extensive configuration changes since upgrading to FortiOS 7.2.x or backup config (6.4 or 7.0) prior to upgrading the firmware is not available

 

1) Backup the current config and downgrade the 7.2.x firmware to FortiOS 7.0.10. This is a supported downgrade.

2) The device should reboot and operate normally. If an issue occurs due to the downgrade, boot to the 7.2.x partition if no downtime window is available, or call the support line.

 

# di sys flash list

execute set-next-reboot {primary | secondary}

execute reboot