Fortinet black logo

Admin Guide

Replace an old FortiGate with a new one

Replace an old FortiGate with a new one

When replacing a FortiGate device, the most important thing to remember is to back up the FortiGate configuration and restore it to the new FortiGate. For backup issue, refer to Administration Guide | FortiGate / FortiOS 7.2.2 | Fortinet Documentation Library.

In the FortiToken Cloud:
  1. Select Applications > FortiProducts.

  2. Find the old FGT by searching its serial number in search bar.

  3. Select the device from the application list, and click Delete.

After the old FortiGate is removed, you can register the new FortiGate to your FC account by entering the registration code from the device or the license number if it is a VM. After the device is registered under the FC account, you can enable FortiToken Cloud on the FortiGate. This is important because you are going to restore the users who are using FortiToken Cloud as the MFA method in the next step.

Now, it’s time to restore the configuration from the old FortiGate. After the basic configuration is restored, the end-users will also be restored. (Note: If the users exist in VDOMs, you need to back up/restore the VDOMs configuration.)

Finally, the users and applications will be updated if Auto-create application is enabled in the Settings > Global page. Otherwise, you need to run the exec fortitioken-cloud update command to manually update the VDOMs information from the FortiGate to FortiToken Cloud and update the users' information.

After you finish all these steps, the new FortiGate should be set up and ready to use.

Replace an old FortiGate with a new one

When replacing a FortiGate device, the most important thing to remember is to back up the FortiGate configuration and restore it to the new FortiGate. For backup issue, refer to Administration Guide | FortiGate / FortiOS 7.2.2 | Fortinet Documentation Library.

In the FortiToken Cloud:
  1. Select Applications > FortiProducts.

  2. Find the old FGT by searching its serial number in search bar.

  3. Select the device from the application list, and click Delete.

After the old FortiGate is removed, you can register the new FortiGate to your FC account by entering the registration code from the device or the license number if it is a VM. After the device is registered under the FC account, you can enable FortiToken Cloud on the FortiGate. This is important because you are going to restore the users who are using FortiToken Cloud as the MFA method in the next step.

Now, it’s time to restore the configuration from the old FortiGate. After the basic configuration is restored, the end-users will also be restored. (Note: If the users exist in VDOMs, you need to back up/restore the VDOMs configuration.)

Finally, the users and applications will be updated if Auto-create application is enabled in the Settings > Global page. Otherwise, you need to run the exec fortitioken-cloud update command to manually update the VDOMs information from the FortiGate to FortiToken Cloud and update the users' information.

After you finish all these steps, the new FortiGate should be set up and ready to use.