Fortinet black logo

FortiGate-7000F Handbook

Verifying that a firmware upgrade is successful

Copy Link
Copy Doc ID fd130345-bc33-11ec-9fd1-fa163e15d75b:781938
Download PDF

Verifying that a firmware upgrade is successful

After a FortiGate-7000F firmware upgrade, you should verify that all of the FIMs and FPMs have been successfully upgraded to the new firmware version.

After the firmware upgrade appears to be complete:

  1. Log into the primary FIM and verify that it is running the expected firmware version.
    You can verify the firmware version running on the primary FIM from the System Information dashboard widget or by using the get system status command.

  2. Confirm that the FortiGate-7000F is synchronized.

    Go to Monitor > Configuration Sync Monitor to verify the configuration status of the FIMs and FPMs. You can also use the diagnose sys confsync status | grep in_sy command to see if the FIMs and FPMs are all synchronized. In the command output, in_sync=1 means the FIM or FPM is synchronized. In_sync=0 means the FIM or FPM is not synchronized, which could indicated the FIM or FPM is running a different firmware build than the primary FIM.

  3. Optionally, you can also log into the other FIM and FPMs, and in the same way confirm that they are also running the expected firmware version and are synchronized.

Verifying that a firmware upgrade is successful

After a FortiGate-7000F firmware upgrade, you should verify that all of the FIMs and FPMs have been successfully upgraded to the new firmware version.

After the firmware upgrade appears to be complete:

  1. Log into the primary FIM and verify that it is running the expected firmware version.
    You can verify the firmware version running on the primary FIM from the System Information dashboard widget or by using the get system status command.

  2. Confirm that the FortiGate-7000F is synchronized.

    Go to Monitor > Configuration Sync Monitor to verify the configuration status of the FIMs and FPMs. You can also use the diagnose sys confsync status | grep in_sy command to see if the FIMs and FPMs are all synchronized. In the command output, in_sync=1 means the FIM or FPM is synchronized. In_sync=0 means the FIM or FPM is not synchronized, which could indicated the FIM or FPM is running a different firmware build than the primary FIM.

  3. Optionally, you can also log into the other FIM and FPMs, and in the same way confirm that they are also running the expected firmware version and are synchronized.