FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
Rajashekar
Staff
Staff
Article Id 294401
Description This article describes how to restore a config file for FortiWeb-VM or Hardware Product lines on another VM or HW model.
Scope FortiWeb-VM and hardware models.
Solution
  1. Open Configuration backup files of both Units and Extract file fwb_system_conf file.
  2. Review the Model and Firmware Version details on both units. For example, VMWare uses FV-VMX, KVM uses FV-KVM.
  3. Replace all occurrences of references to the model details. For example, select the image below:

Replace Model Number Details.PNG

 

  1. Check which interfaces are in use and which interfaces are unused. Add or delete interfaces specific to VM or Hardware models.

Lookup for 'config system interface':

Replace Interface Addition or Deletion1.PNG

 

  1. Remove admin password details.

Lookup for 'config system admin' and removal of admin password details:

Remove admin password.PNG

 

  1. Remove occurrences of dependent interfaces like Aggregate interfaces.
  2. Add a default route as per the routing design of the network. Perform a lookup for 'config router static' and configure the default route with a default gateway.
  3. Save the modified config file, Open Archive, and drag the modified file.
  4. Navigate to System -> Maintenance -> Backup & Restore -> Restore Upload the modified config file.
  5. Refresh the page and notice the newly modified config is loaded.

 

Note:

After modifying the configuration file based on the above instructions, verify the modified setup carefully, as further adjustments (for example, port mappings or interface references) may be required. Thorough testing is strongly recommended to ensure the configuration functions as expected on the target model. This is not an official or supported procedure. While TAC can assist in reviewing and adjusting the configuration backup to make it compatible with the target model, successful import and operation cannot be guaranteed. If assistance is required for a full migration or end-to-end validation, this falls outside the scope of TAC. Such activities are offered through Fortinet Professional Services, including Software Upgrade and Platform Migration engagements. For further information, refer to this document: FortiCare Professional Services.