Firmware upgrades
1. Connect to the FPM GUI using the SLBC management IP address and the special management port number for
that FPM. For example, for the FPM in slot 3, browse to https://<SLBC-management-ip>:44303.
2. Start a normal firmware upgrade. For example,
a. Go to System > Firmware and select Browse to select the firmware file to install.
b. Follow the prompts to select the firmware file, save the configuration, and upload the firmware file to the FPM.
3. After the FPM restarts, verify that the new firmware has been installed.
You can do this from the FPM GUI dashboard or from the FPM CLI using the get system status command.
4. Use the diagnose sys confsync status | grep in_sy command to verify that the configuration has been
synchronized. The field in_sync=1 indicates that the configurations of that FIM or FPM is synchronized.
FIMs and FPMs that are missing or that show in_sync=0 are not synchronized. To synchronize an FIM or FPM
that is not synchronized, log into the CLI of the FIM or FPM and restart it using the execute reboot command. If
this does not solve the problem, contact Fortinet Support at https://support.fortinet.com.
If you enter the diagnose sys confsync status | grep in_sy command before the FPM has completely
restarted, it will not appear in the command output. As well, the Configuration Sync Monitor will temporarily show
that it is not synchronized.
Installing FIM firmware from the BIOS after a reboot
Use the following procedure to upload firmware from a TFTP server to an FIM. The procedure involves creating a
connection between the TFTP server and one of the FIM MGMT interfaces. You don't have to use a MGMT interface on
the FIM that you are upgrading.
This procedure also involves connecting to the FIM CLI using a FortiGate-7081F front panel System Management
Module console port. From the console session, the procedure describes how to restart the FIM, interrupt the boot
process, and follow FIM BIOS prompts to install the firmware.
During this procedure, the FIM will not be able to process traffic. However, the other FIM and the FPMs should continue
to operate normally.
1. Set up a TFTP server and copy the firmware file to the TFTP server default folder.
2. Set up your network to allow traffic between the TFTP server and one of the FIM MGMT interfaces.
3. Using the console cable supplied with your FortiGate-7081F, connect the SMM Console 1 port on the FortiGate-
7081F to the USB port on your management computer.
4. Start a terminal emulation program on the management computer. Use these settings:
Baud Rate (bps) 9600, Data bits 8, Parity None, Stop bits 1, and Flow Control None.
5. Press Ctrl-T to enter console switch mode.
6. Repeat pressing Ctrl-T until you have connected to the FIM to be updated. Example prompt for the FIM in slot 2:
<Switching to Console: FIM02 (9600)>
7. Optionally log in to the FIM's CLI.
8. Reboot the FIM.
FortiGate-7081F 7.0.5 System Guide
To upgrade the firmware running on a single FPM from the CLI, see
from the BIOS after a reboot on page
44.
Fortinet Technologies Inc.
Installing FPM firmware
43
Need help?
Do you have a question about the FortiGate-7000F Series and is the answer not in the manual?
Questions and answers