Getting started with FortiGate-7000
Replacing a failed FPM or FIM module
4. The module's configuration is synchronized and its firmware is upgraded to match the firmware version on the
primary module. The new module reboots.
5. If the module will be running FortiOS Carrier, apply the FortiOS Carrier license to the module. The module
reboots.
6. Confirm that the new module is running the correct firmware version either from the GUI or by using the
config
system status
command.
Manually update the module to the correct version if required. You can do this by logging into the module and
performing a firmware upgrade.
7. Verify that the configuration has been synchronized.
The following command output shows the sync status of the FIM modules in a FortiGate-7000 chassis. The field
in_sync=1
indicates that the configurations of the modules are synchronized.
diagnose sys confsync
status | grep in_sy
FIM04E3E16000080, Slave, uptime=177426.45, priority=2,
slot_id=1:2, idx=0, flag=0x0, in_sync=1
FIM10E3E16000063, Master, uptime=177415.38, priority=1,
slot_id=1:1, idx=1, flag=0x0, in_sync=1
If
in_sync
is not equal to 1 or if a module is missing in the command output you can try restarting the
modules in the chassis by entering execute reboot from any module CLI. If this does not solve the problem,
contact Fortinet support.
Replacing a failed module in a FortiGate-7000 chassis in an HA cluster
1. Power down the failed module by pressing the front panel power button.
2. Remove the module from the chassis.
3. Insert the replacement module. It should power up when inserted into the chassis if the chassis has power.
4. The module's configuration is synchronized and its firmware is upgraded to match the configuration and firmware
version on the primary module. The new module reboots.
5. If the module will be running FortiOS Carrier, apply the FortiOS Carrier license to the module. The module
reboots.
6. Confirm that the module is running the correct firmware version.
Manually update the module to the correct version if required. You can do this by logging into the module and
performing a firmware upgrade.
7. Configure the new module for HA operation. For example:
config system ha
set mode a-p
set chassis-id 1
set hbdev m1 m2
set hbdev-vlan-id 999
set hbdev-second-vlan-id 990
end
8. Optionally configure the hostname:
config system global
set hostname <name>
end
The HA configuration and the hostname must be set manually because HA settings and the hostname is not
synchronized.
9. Verify that the configuration has been synchronized.
The following command output shows the sync status of the FIM modules in a FortiGate-7000 chassis. The field
FortiGate-7000
Fortinet Technologies Inc.
40