Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Holy
Contributor

FG100D Upgrade from 4.0MR3 Patch 15 to 5.2.2

Hello,

 

i have to upgrade an 100D cluster from 4.0MR3 patch 15 to 5.2.2 

 

anyone has experience with updating it step by step? should oit go smooth or should i plan a lot of downtime?

 

another question. I thought to do it this way (think it will be safer)

 

- take 1 of the 100D from cluster

- update that appliance step by step to 5.2.2 

- change it with the active master that still have 4.0MR3

- test if everything works

- Update the another 100G with 4.0MR3 by putin in an USB with 5.2.2 image and a new 5.2.2 Config

- Reebot the 100G 4.0MR3 - it will now boot with new image and new config (will it work that way? )

- Connect the Cluster Members again als Active - Passive.

 

what do you think about it guys?

NSE 8 

NSE 1 - 7

 

NSE 8 NSE 1 - 7
12 REPLIES 12
emnoc
Esteemed Contributor III

Just make sure if you go that route that you check for the auto-install to be enabled.

 

 

FGT80C # get system auto-install auto-install-config : enable auto-install-image  : enable default-config-file : fgt_system.conf default-image-file  : image.out

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
gschmitt
Valued Contributor

Plan downtime (1-2 h)

 

In my experience the 5.2 update requires you to redo your SSL VPN completely

Christopher_McMullan

Well, it gives you a known good copy of the firmware or the configuration file, and avoids issues with file transfers. Both can also be done without rebooting:

 

execute restore {config | image | secondary-image} usb <filename_str>

Regards, Chris McMullan Fortinet Ottawa

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors