FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Quint021
Staff
Staff
Article Id 366637
Description This article describes how to troubleshoot Fabric Upgrade failures due to Unavailable Firmware Version.
Scope FortiGate v7.4, v7.6.

Solution

 

When navigating to System -> Firmware & Registration and selecting Fabric Upgrade as highlighted:


Upgraded.PNG

 

The following error may be observed in the logs: A federated upgrade could not be completed by the root FortiGate

  • because: version unavailable.
  • message: Federated upgrade failed after reaching state downloading.


upgrade failed edit.PNG

 

To diagnose this issue, collect the following logs:


diagnose debug disable
diagnose debug reset
diagnose debug app update -1
diagnose debug console timestamp en 
diagnose debug en

Errors may include:

  1. Image Verification Failures.
  2. FortiGuard Connection Issues i.e.


Tcp connect.PNG
To troubleshoot FortiGuard issues, refer to the following: FortiGuard Troubleshooting 

The following screenshot highlights the expected output before the firewall executes the Federated Upgrade:

 

edit up.PNG

 

Workaround: 
Cancel Fabric Upgrade as highlighted in the following article and utilize the standard upgrade option (file upload)
Reference: Standard File Upgrade Guide 

alternatv.PNG

 

To cancel the federated upgrade using CLI:

 

execute federated-upgrade cancel