The document provides instructions for upgrading the OS version of multiple FortiGate firewalls in a high availability cluster. It involves:
1. Checking the current OS version and determining the required upgrade path by version.
2. Upgrading each firewall individually by restarting it, removing cables, upgrading through the GUI, then reconnecting cables and checking status.
3. Once both firewalls are upgraded, confirming the HA sync status and restarting individually to verify master-standby roles sync properly. Enabling graceful restart completes the upgrade process.
The document provides instructions for upgrading the OS version of multiple FortiGate firewalls in a high availability cluster. It involves:
1. Checking the current OS version and determining the required upgrade path by version.
2. Upgrading each firewall individually by restarting it, removing cables, upgrading through the GUI, then reconnecting cables and checking status.
3. Once both firewalls are upgraded, confirming the HA sync status and restarting individually to verify master-standby roles sync properly. Enabling graceful restart completes the upgrade process.
The document provides instructions for upgrading the OS version of multiple FortiGate firewalls in a high availability cluster. It involves:
1. Checking the current OS version and determining the required upgrade path by version.
2. Upgrading each firewall individually by restarting it, removing cables, upgrading through the GUI, then reconnecting cables and checking status.
3. Once both firewalls are upgraded, confirming the HA sync status and restarting individually to verify master-standby roles sync properly. Enabling graceful restart completes the upgrade process.
The document provides instructions for upgrading the OS version of multiple FortiGate firewalls in a high availability cluster. It involves:
1. Checking the current OS version and determining the required upgrade path by version.
2. Upgrading each firewall individually by restarting it, removing cables, upgrading through the GUI, then reconnecting cables and checking status.
3. Once both firewalls are upgraded, confirming the HA sync status and restarting individually to verify master-standby roles sync properly. Enabling graceful restart completes the upgrade process.
Download as DOCX, PDF, TXT or read online from Scribd
Download as docx, pdf, or txt
You are on page 1of 1
First check the OS version and build of Firewalls
Download required OS upgrades through different versions as per Fortinet website
For eg:. If the OS version is v5.0, then upgrade path is 5.1-> 5.2 -> 5.3-> 5.4.1. Download each upgrade file and perform one by one upgrade in each boxes individually
1. Check HA status of firewall cluster (get sys ha status)
2. Restart Standby Firewall 3. Remove cables from Standby Firewall along with HA cable 4. Enter Mgmt IP address 172.31.64.1 and connect it to Data LAN port 5. Connect console cable and check status 6. Through GUI, apply the upgrade one by one through browsing 7. BOX-1 upgraded successfully 8. Remove the cables in Second Firewall and connect the cables in BOX-1 9. Follow same process from 4-6 10. BOX-2 upgraded successfully 11. Connect all cables in BOX-2 including HA cable 12. Check the master-standby mode and HA sync status 13. Wait for 15-20 mins, the boxes should sync automatically 14. Restart the boxes one by one to make them master each time for sync to happen 15. If the sync does not happen, run the command “execute ha synchronize stop followed with execute ha synchronize start ” 16. Enable graceful restart in the boxes