36
01-28006-0002-20041105
Fortinet Inc.
Changing the FortiGate firmware
System status
To use the following procedure you must have a TFTP server that the FortiGate unit
can connect to.
To revert to a previous firmware version using the CLI
1
Make sure that the TFTP server is running.
2
Copy the firmware image file to the root directory of the TFTP server.
3
Log into the FortiGate CLI.
4
Make sure the FortiGate unit can connect to the TFTP server.
You can use the following command to ping the computer running the TFTP server.
For example, if the TFTP server's IP address is 192.168.1.168:
execute ping 192.168.1.168
5
Enter the following command to copy the firmware image from the TFTP server to the
FortiGate unit:
execute restore image <name_str> <tftp_ipv4>
Where
<name_str>
is the name of the firmware image file and
<tftp_ip>
is the IP
address of the TFTP server. For example, if the firmware image file name is
FGT_300-v280-build158-FORTINET.out
and the IP address of the TFTP server
is 192.168.1.168, enter:
execute restore image FGT_300-v280-build158-FORTINET.out
192.168.1.168
The FortiGate unit responds with the message:
This operation will replace the current firmware version!
Do you want to continue? (y/n)
6
Type
y
.
The FortiGate unit uploads the firmware image file. After the file uploads, a message
similar to the following is displayed:
Get image from tftp server OK.
Check image OK.
This operation will downgrade the current firmware version!
Do you want to continue? (y/n)
7
Type
y
.
The FortiGate unit reverts to the old firmware version, resets the configuration to
factory defaults, and restarts. This process takes a few minutes.
8
Reconnect to the CLI.
Note:
Installing firmware replaces the current antivirus and attack definitions with the definitions
included with the firmware release that you are installing. After you install new firmware, use the
procedure
“To update antivirus and attack definitions” on page 121
to make sure that antivirus
and attack definitions are up to date. You can also use the CLI command
execute
update_now
to update the antivirus and attack definitions.
Note:
To use this procedure you must login using the admin administrator account, or an
administrator account that has system configuration read and write privileges.
Summary of Contents for FortiGate-60 series
Page 42: ...42 01 28006 0002 20041105 Fortinet Inc Changing the FortiGate firmware System status ...
Page 80: ...80 01 28006 0002 20041105 Fortinet Inc Dynamic IP System DHCP ...
Page 114: ...114 01 28006 0002 20041105 Fortinet Inc Access profiles System administration ...
Page 232: ...232 01 28006 0002 20041105 Fortinet Inc Protection profile Firewall ...
Page 244: ...244 01 28006 0002 20041105 Fortinet Inc CLI configuration Users and authentication ...
Page 320: ...320 01 28006 0002 20041105 Fortinet Inc CLI configuration Antivirus ...
Page 380: ...380 01 28006 0002 20041105 Fortinet Inc Glossary ...
Page 388: ...388 01 28006 0002 20041105 Fortinet Inc Index ...