Firmware upgrade report 7.6.1
FortiOS now includes a firmware upgrade report that compares statistics and configurations before and after a firewall upgrade. Automatic generation of the report is enabled by default, and the report enhances the upgrade process by providing detailed assurance of successful upgrades.
The config system global
command includes a new option:
config system global set upgrade-report {enable | disable} end
set upgrade-report {enable | disable} |
Enable/disable automatic generation of an upgrade report when upgrading firmware (default = enable). |
The diagnose
command includes new options:
# diagnose sys upgrade-report current Display the stats currently. on-disk Display the stats saved on disk. generate Generate upgrade report and replace the one on disk.
diagnose sys upgrade-report current |
Display the current statistics. |
diagnose sys upgrade-report on-disk |
Display the upgrade report saved on disk. |
diagnose sys upgrade-report generate |
Generate an upgrade report and replace the report saved on disk. |
For FortiGates without disks, the report is stored on flash memory. All FortiGate models are equipped with flash memory. |
Example
The firmware upgrade report is available after a successful FortiOS upgrade.
You can disable automatic generation of the firmware upgrade report in the CLI.
To view the firmware upgrade report in the GUI:
-
After a successful upgrade, log in to the GUI, and view the Firmware Upgrade monitor in the bottom-right corner. The following buttons are available:
-
View reports <number>
The <number> indicates how many FortiGates have an available firmware upgrade report.
-
View device list
-
-
Click the View reports <number> button or the document icon beside Done. A Firmware Upgrade Reports pane opens to show the list of FortiGates with an available firmware upgrade report:
-
Double-click a FortiGate to display its firmware upgrade report. The firmware upgrade report contains the following tabs: Statistics and Configuration diff.
-
The Statistics tab displays general information at the top about Upgrade path, Upgrade time, and Initiated by.
Below the general section are categories of information from before and after the upgrade. The categories of information depend on whether the FortiGate is part of a Security Fabric.
In this example, the FortiGate is not part of a Security Fabric, and the following categories of information are displayed: FortiAPs, FortiSwitches, FortiExtenders, Endpoint Devices, Routing, Traffic, Connectivity, and Resources.
-
Click Refresh to retrieve the latest current statistics.
-
Click the Configuration diff tab to display a comparison of the current (green) and previous (red) configurations.
-
-
In the Firmware Upgrade monitor, click View device list to display the Firmware & Registration pane.
To display the firmware upgrade report in the CLI:
-
After a successful firmware upgrade, display the firmware upgrade report:
# diagnose sys upgrade-report on-disk
To regenerate the firmware upgrade report in the CLI:
-
Regenerate the firmware upgrade report:
# diagnose sys upgrade-report generate This act will delete the upgrade report on disk and create a new one. Do you want to continue? (y/n)
-
Display the firmware upgrade report:
# diagnose sys upgrade-report on-disk
To view current statistics in the CLI:
# diagnose sys upgrade-report current IPv4 session count = 24 IPv6 session count = 0 SSLVPN tunnel count = 0 IPSEC tunnel count = 6 CPU usage = 0% Memory usage = 36% Total routes = 18 Total OSPF routes = 0 Total BGP routes = 5 Total FortiGates = 1 Online = 1 Unauthorized = 0 Total FortiAPs = 0 Online = 0 Offline = 0 Unauthorized = 0 Rejected = 0 Total FortiSwitches = 0 Online = 0 Offline = 0 Unauthorized = 0 Rejected = 0 Total FortiExtenders = 0 Online = 0 Offline = 0 Unauthorized = 0 Rejected = 0 Total Endpoints = 0 Online = 0 Offline = 0 Quarantined = 0