FortiGate Firmware
FortiGate-5000 series Installation Guide
01-28011-0259-20060210
51
The FortiGate-5000 module installs the new firmware image and restarts. The
installation might take a few minutes to complete.
Restoring the previous configuration
Change the internal interface address if required. You can do this from the CLI using
the command:
config system interface
edit internal
set ip <address_ipv4mask>
set allowaccess {ping https ssh telnet http}
end
After changing the interface address, you can access the FortiGate-5000 module from
the web-based manager and restore the configuration.
•
To restore the FortiGate-5000 module configuration, see
the
FortiGate Administration
Guide
.
•
To restore IPS custom signatures, see
the
FortiGate Administration Guide
.
•
To restore web content filtering lists, see
the
FortiGate Administration Guide
.
•
To restore email filtering lists, see
the
FortiGate Administration Guide
.
•
To update the virus and attack definitions to the most recent version, see
the
FortiGate Administration Guide
.
If you are reverting to a previous firmware version (for example, reverting from
FortiOS v2.80 to FortiOS v2.50), you might not be able to restore your previous
configuration from the backup up configuration file.
Testing a new firmware image before installing it
You can test a new firmware image by installing the firmware image from a system
reboot and saving it to system memory. After completing this procedure the FortiGate-
5000 module operates using the new firmware image with the current configuration.
This new firmware image is not permanently installed. The next time the FortiGate-
5000 module restarts, it operates with the originally installed firmware image using the
current configuration. If the new firmware image operates successfully, you can install
it permanently using the procedure
“Upgrading to a new firmware version” on
page 44
.
For this procedure you:
•
access the CLI by connecting to the FortiGate console port using a null-modem
cable,
•
install a TFTP server that you can connect to from port8. The TFTP server should
be on the same subnet as port8.
Note:
The default interface for TFTP server firmware downloads is port8. You can specify a
different interface after you restart the FortiGate-5000 module as described in the following
procedure.