For both NP1 and NP2 network processors, ports attached to a network processor cannot be used for firmware installation by TFTP.You can find the description here: http://kb.fortinet.com/kb/microsites/search.do?cmd=displayKC&docType=kc&externalId=fromTD-FortinetAccelTech01-30005-0424-20070422pdf&sliceId=&docTypeID=DT_PRODUCTDOCUMENTATION_1_1&dialogID=26066697&stateId=0%200%2026068632 best regards, Roman
fw01 # diagnose npu np2 list ID PORTS -- ----- 0 port6 0 port5 0 port8 0 port7 ID PORTS -- ----- 1 port2 1 port1 1 port4 1 port3This is from a FGT-310B which has two NP2s built-in. Newer FGTs like the 1240, 3040, 3140, 3950 use the next generation NP4. You would use the
fw01 # diagnose npu NP4 listcommand for these. For a 310B you can clearly see that for a TFTP download you' d use port 9. edit: if the diag command returns with an error then there are no NPs built in.
ORIGINAL: ede_pfau You can list which ports are on which NPU (network processing unit - a specific ASIC for fast processing of session data) via this CLI command:Interesting. My 620b' s have the following output but if memory serves me, I' ve loaded the firmware via TFTP numerous times on port1. I guess I' ll just have to try again and report back. ID PORTS -- ----- 0 port1 0 port2 0 port3 0 port4 ID PORTS -- ----- 1 port5 1 port6 1 port7 1 port8 ID PORTS -- ----- 2 port9 2 port10 2 port11 2 port12 ID PORTS -- ----- 3 port13 3 port14 3 port15 3 port16fw01 # diagnose npu np2 list ID PORTS -- ----- 0 port6 0 port5 0 port8 0 port7 ID PORTS -- ----- 1 port2 1 port1 1 port4 1 port3This is from a FGT-310B which has two NP2s built-in. Newer FGTs like the 1240, 3040, 3140, 3950 use the next generation NP4. You would use thefw01 # diagnose npu NP4 listcommand for these. For a 310B you can clearly see that for a TFTP download you' d use port 9. edit: if the diag command returns with an error then there are no NPs built in.
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2678 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.