FortiManager
FortiManager supports network operations use cases for centralized management, best practices compliance, and workflow automation to provide better protection against breaches.
FortiKoala
Staff
Staff

Description

 

This document describes how to upgrade FortiManager firmware.


Solution

 

Before Upgrading:

 

It is important to read the release notes which are as well available from the Fortinet Customer Service & Support site (https://support.fortinet.com/) at the same location from where it is possible to download the firmware image.

 

Once downloaded, review the special notices, upgrade information, product integration and support, resolved issue, known issues and limitations.

 

Release notes can be also found at the below location:
https://docs.fortinet.com/product/fortimanager/

 

Note: Although this activity itself does not delete any logs from the device, it is recommended to keep a regular backup of the logs/configuration before proceeding with any such activities. 

 

For other upgrade paths, see FortiManager Firmware Upgrade Paths and Supported Models.

 

To upgrade the firmware:

 

In System Settings -> Advanced -> Advanced Settings, enable Offline Mode.

Offline mode stops automatic firmware updates during the upgrade.

 

     - Go to System Settings -> Dashboard.

 

2   - In the System Information widget, go to the Firmware Version field, and select the Upgrade  Firmware icon.

 

3   - In the Firmware Upload dialog box, select Browse to locate the firmware package (.out file) downloaded from the Customer Service & Support portal, and select Open.

 

4   - Select OK.

 

The firmware image is uploaded. When the upgrade completes, a message confirms a successful upgrade.

 

It is recommended to view the console log output during the upgrade. See Checking FortiManager log output.

 

When the login window displays, log into FortiManager.

 

When the upgrade completes, it can be necessary to refresh the web browser to see the login window.

 

In System Settings -> Advanced -> Advanced Settings, disable Offline Mode.

Review the System Settings -> Event Log for any additional errors. See Checking FortiManager events.

 

Optionally, it is possible to upgrade firmware stored on an FTP or TFTP server using the following CLI command:

 

# execute restore image {ftp | tftp} <file path to server> <IP of server> <username on server> <password>

 

Note : When upgrading firmware, all ADOMs (and Policy Package Versions, if ADOMs are disabled) remain at the same version after the upgrade. For information about upgrading ADOMs, see the FortiManager Administration Guide.       

 

Upgrading the device firmware can trigger an SQL database rebuild. New logs are not available until the rebuild is complete. The time required to rebuild the database depends on the size of the database. It is possible to use the below command to display the SQL log database rebuild status.

 

# diagnose sql status rebuild-db

 

The following features are available until the SQL database rebuild is complete: FortiView, Log View, Event Management, and Reports.

 

Related articles:

https://community.fortinet.com/t5/FortiManager/Technical-Tip-How-to-upgrade-an-ADOM-on-FortiManager/...

https://community.fortinet.com/t5/FortiManager/Technical-Tip-How-to-check-FortiManager-database-prio...