background image

Downgrade Instructions

Release Notes

19

Downgrade Instructions

Downgrade from WSM v11.12.1 to WSM v11.x

If you want to revert from v11.12.1 to an earlier version of WSM, you must uninstall WSM v11.12.1. When you
uninstall, choose

Yes

when the uninstaller asks if you want to delete server configuration and data files. After

the server configuration and data files are deleted, you must restore the data and server configuration files you
backed up before you upgraded to WSM v11.12.1.

Next, install the same version of WSM that you used before you upgraded to WSM v11.12.1. The installer
should detect your existing server configuration and try to restart your servers from the

Finish

dialog box. If you

use a WatchGuard Management Server, use WatchGuard Server Center to restore the backup Management
Server configuration you created before you first upgraded to WSM v11.12.1. Verify that all WatchGuard
servers are running.

Downgrade from Fireware v11.12.1 to Fireware v11.x

If you use the Fireware Web UI or CLI to downgrade from Fireware v11.12.1 to an earlier
version, the downgrade process resets the network and security settings on your device to
their factory-default settings. The downgrade process does not change the device
passphrases and does not remove the feature keys and certificates.

If you want to downgrade from Fireware v11.12.1 to an earlier version of Fireware, the recommended method is
to use a backup image that you created before the upgrade to Fireware v11.12.1. With a backup image, you can
either:

l

Restore the full backup image you created when you upgraded to Fireware v11.12.1 to complete the
downgrade; or

l

Use the USB backup file you created before the upgrade as your auto-restore image, and then boot into
recovery mode with the USB drive plugged in to your device. This is not an option for XTMv users.

See the

Fireware Help

for more information about these downgrade procedures, and information about how to

downgrade if you do not have a backup image.

Summary of Contents for Firebox 1500

Page 1: ...oviding several minor feature enhancements For more information on the bug fixes and enhancements in this release see the Enhancements and Resolved Issues section With this release we re also proud to...

Page 2: ...icate If you use the CLI to regenerate these certificates after you upgrade you must redistribute the new Proxy Authority certificate to your clients or users will receive web browser warnings when th...

Page 3: ...can use your existing feature key If you do not have a feature key for your device you can log in to the WatchGuard website to download it Note that you can install and use WatchGuard System Manager...

Page 4: ...s provided by third party companies remain in English Fireware Web UI The Web UI will launch in the language you have set in your web browser by default WatchGuard System Manager When you install WSM...

Page 5: ...or information on WatchGuard Dimension see the Dimension Release Notes Single Sign On Agent Includes Event Log Monitor Single Sign On Client Single Sign On Exchange Monitor1 Terminal Services Agent2 M...

Page 6: ...lient for Mac powered by NCP Authentication Support This table gives you a quick view of the types of authentication servers supported by key features of Fireware Using an authentication server gives...

Page 7: ...N client Mobile VPN with IPSec for Android devices Mobile VPN with SSL for Windows 4 4 Mobile VPN with SSL for Mac Mobile VPN with SSL for iOS and Android devices Mobile VPN with L2TP 6 Mobile VPN wit...

Page 8: ...ave WatchGuard System Manager client software only installed If you install WatchGuard System Manager and WatchGuard Server software Minimum CPU Intel Core or Xeon 2GHz Intel Core or Xeon 2GHz Minimum...

Page 9: ...install WSM v11 12 1 or to upgrade WatchGuard System Manager from an earlier version to WSM v11 12 1 Fireware OS If your Firebox is running Fireware v11 10 or later you can upgrade the Fireware OS on...

Page 10: ...XTM 8 Series XTM_OS_XTM8_11_12_1 exe xtm_xtm8_11_12_1 zip Firebox M500 Firebox_OS_M400_M500_11_12_1 exe firebox_M400_M500_11_12_1 zip XTM 5 Series XTM_OS_XTM5_11_12_1 exe xtm_xtm5_11_12_1 zip Firebox...

Page 11: ...his release l WG Authentication Gateway_11_11_1 exe SSO Agent software required for Single Sign On and includes optional Event Log Monitor for clientless SSO l WG Authentication Client_11_11 msi SSO C...

Page 12: ...hat s New in Fireware v11 12 presentation or Fireware Help TCP port 4100 now used for firewall user authentication only Beginning with Fireware v11 12 TCP port 4100 is used only for firewall user auth...

Page 13: ...ault policies and services that the setup wizards configure depend on the version of Fireware installed on the Firebox and on whether the Firebox feature key includes a license for subscription servic...

Page 14: ...rocess l We recommend you use Fireware Web UI to upgrade to Fireware v11 12 1 You can also use Policy Manager if you prefer l We strongly recommend that you save a local copy of your Firebox configura...

Page 15: ...ng CA and the Windows CryptoAPI was unable to download it To resolve this error you can download and install the certificate from Symantec Back Up Your WatchGuard Servers It is not usually necessary t...

Page 16: ...ou have already installed Fireware v11 12 1 on your computer you must run the Fireware v11 12 1 installer twice once to remove v11 12 1 software and again to install v11 12 1 Upgrade to Fireware v11 1...

Page 17: ...the Gateway Wireless Controller Summary tab select Manage Firmware to download the latest AP firmware to the Firebox again You cannot install the AP firmware on a Firebox that uses Fireware v11 4 x o...

Page 18: ...orted version the upgrade is prevented If you try to schedule an OS update of managed devices through a Management Server the upgrade is also prevented If you use the Fireware Web UI to upgrade your d...

Page 19: ...atchGuard servers are running Downgrade from Fireware v11 12 1 to Fireware v11 x If you use the Fireware Web UI or CLI to downgrade from Fireware v11 12 1 to an earlier version the downgrade process r...

Page 20: ...e resolves kernel crashes on Firebox T70 M200 and M300 devices configured in drop in mode 92760 92677 l The Turkish timezone settings have been adjusted to eliminate timezone changes throughout the ye...

Page 21: ...when Gateway AV signatures are manually updated in Firebox System Manager 90792 Proxies and Services l The Firebox now includes the host IP address when it sends data to the WebBlocker Websense datab...

Page 22: ...sites list in Fireware Web UI 90621 l Failed authentication attempts from WatchGuard System Manager for the status user now produce a log message log in attempt was rejected invalid credentials 92445...

Page 23: ...upported for v11 x releases For information on how to start and use the CLI see the Command Line Reference Guide You can download the latest CLI guide from the documentation web site at http www watch...

Page 24: ...Technical Assistance Release Notes 24...

Reviews: