FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
rpmadathil_FTNT
Article Id 194181
Description
This article explains the process to upload firmware for the FortiGate 60D.

The firmware upload via TFTP on FortiGate 60D models has some setting changes compared to other models. Need to configure all the TFTP parameters initially.

Solution
Configuration:

FortiGate-60D (15:09-08.12.2013)
Ver:04000022
Serial number: FGT60D461400XXXX
CPU(00): 800MHz
Total RAM:  2GB
Initializing boot device...
Initializing MAC... nplite#0
MBRecord is empty.
Please wait for OS to boot, or press any key to display configuration menu

[C]: Configure TFTP parameters.
[R]: Review TFTP parameters.
[T]: Initiate TFTP firmware transfer.
[F]: Format boot device.
[I]: System information.
[B]: Boot with backup firmware and set as default.
[Q]: Quit menu and continue to boot.
[H]: Display this list of options.

Steps:

1. Configure TFTP parameters. PRESS C. And will give you the below list of option to configure TFTP parameters.

Enter C,R,T,F,I,B,Q,or H:

[P]: Set firmware download port.
[D]: Set DHCP mode.
[I]: Set local IP address.
[S]: Set local subnet mask.
[G]: Set local gateway.
[V]: Set local VLAN ID.
[T]: Set remote TFTP server IP address.
[F]: Set firmware file name.
[E]: Reset TFTP parameters to factory defaults.
[R]: Review TFTP parameters.
[N]: Diagnose networking(ping).
[Q]: Quit this menu.
[H]: Display this list of options.

3. Configure firmware download port: PRESS "P"

The console displays:

Enter firmware download port : WAN1

4. Enter the local address for fortigate unit. Press "I"

Type an unused IP address that is on the same subnet as the TFTP server and press Enter.

The console displays:

Enter local IP address [192.168.1.100.100]: 192.168.1.100
...done

5. Set local subnet mask. Press "S"

The console displays:

Enter Local subnet mask: 255.255.255.0

6. Set TFTP server IP address, Press T

The console displays:

TFTP server IP address: 192.168.1.1

7. Specify the Firmware file name which is placed in the TFTP folder. Press "F"

The console displays:

Set firmware file name: image.out

8. Set local gateway. Press "G".

Set an IP address which is on the same subnet as the TFTP server and Local address

The console displays:

Enter local gateway : 192.168.1.254

9. To review the TFTP setting, press "R"

Image download port:    WAN1
DHCP status:            Disabled
Local VLAN ID:         
Local IP address:       192.168.1.100
Local subnet mask:      255.255.255.0
Local gateway:          192.168.1.254
TFTP server IP address: 192.168.1.1
Firmware file name:     image.out

10. Once the TFTP parameters are configured, please press "Q" to quit and navigate to the main configuration menu.

[C]: Configure TFTP parameters.
[R]: Review TFTP parameters.
[T]: Initiate TFTP firmware transfer.
[F]: Format boot device.
[I]: System information.
[B]: Boot with backup firmware and set as default.
[Q]: Quit menu and continue to boot.
[H]: Display this list of options.

 11. Press "T" to Initiate TFTP Firmware Transfer.

Please connect TFTP server to Ethernet port 'WAN1'.
MAC: 07:5b:0:52:11:b1
Connect to tftp server 192.168.1.1 ...
##########################################################
Image Received.
Checking image... OK
Save as Default firmware/Backup firmware/Run image without saving:[D/B/R]?d

Programming the boot device now.


Related Articles

Technical Tip: Formatting and loading FortiGate firmware image using TFTP

Contributors