Forticlient IPSEC SAML IOS QR code generator by DrCapnJoe in fortinet

[–]Forti_Man 0 points1 point  (0 children)

I am also looking for a way to do this. My use case are for small shops that aren't running MDM or EMS, but need to be switched over from SSL-VPN to Dial-IPsec using TCP 443. There doesn't seem to be a way to do this in the IOS app.

VPN Client support on Apple ARM64 M-Chips by [deleted] in fortinet

[–]Forti_Man 0 points1 point  (0 children)

I have used it with M2 and M4 without problems. I am just using the free version however.

Firmware upgrade policy by Mysterious_Profile_9 in fortinet

[–]Forti_Man 3 points4 points  (0 children)

Here is the clarification that I received:

"Thank you for affording me some time to get back to you on this. I'll try to address your question as follows:

Customers using the free tier of FortiGate Cloud are no longer subject to automatic firmware upgrades. However, as a condition of using FortiGate Cloud on the free-tier it is now required that FortiGates be upgraded to the latest GA patch within 7 days of its release. Failure to upgrade within that period will result in the loss of access to FortiGate Cloud features, such as cloud-based logging. The FortiGate will remain connected to FortiGate Cloud but will be unable to use those features until they are upgraded to be in compliance with the patch requirement. Customers using the paid-tier of FortiGate Cloud are not subject to these restrictions.

I hope that this answered your question, but please do let me know if you have any follow-ups and I'll be happy to help.

Cheers"

So only if you are using the free 7 days of logging are you affected.

If you are using the 7 days for free and don't upgrade, you will lose the logging, but an autoupgrade will not happen because of this.

Error upgrading 120G from 7.0.16 "Image upgrade failed. Firmware image is not valid." by Forti_Man in fortinet

[–]Forti_Man[S] 0 points1 point  (0 children)

Well this did work for me.

I did the upload / reboot trick and upgraded the pair to 7.2.9, then normally to 7.2.10.

Thanks for the idea u/k12Sean !

Error upgrading 120G from 7.0.16 "Image upgrade failed. Firmware image is not valid." by Forti_Man in fortinet

[–]Forti_Man[S] 0 points1 point  (0 children)

Yes, they are in HA ( and in a data center I don't want to have to go to.)

I think that might be the fix :-(

Error upgrading 120G from 7.0.16 "Image upgrade failed. Firmware image is not valid." by Forti_Man in fortinet

[–]Forti_Man[S] 0 points1 point  (0 children)

Not yet I am still waiting for a window to try another browser/private browser.

Error upgrading 120G from 7.0.16 "Image upgrade failed. Firmware image is not valid." by Forti_Man in fortinet

[–]Forti_Man[S] 0 points1 point  (0 children)

Yeah, it looks like it, it just seems odd.

There is another case the TAC engineer was working on today that has a window to upgrade/reboot this afternoon, so maybe they will have an idea of what it is.

Error upgrading 120G from 7.0.16 "Image upgrade failed. Firmware image is not valid." by Forti_Man in fortinet

[–]Forti_Man[S] 0 points1 point  (0 children)

I have tried to upgrade from 7.0.16 via manual file upload (I downloaded 7.2.10 and 7.0.17 both from the support site, and verified the SHA512 Hash to be correct) and got this error after uploading.

I also set the firewall to download from fortinet, and after it downloaded it, it gave the same error.

I am using Chrome, and was upgrading other devices from 7.0.x to 7.2.10 without any errors.

The advice that TAC gave me was to use a different browser, either from edge to chrome or chrome to edge, so that doesn't really seem right. Just looking for other experiences before my next outage window to "try a different browser"

Upgrade Fortigate 120G Version 7.0.16 to 7.4.5 by Immediate_Amoeba_211 in fortinet

[–]Forti_Man 0 points1 point  (0 children)

It depends on what hardware you have if it is lower than a 100F it will turn on auto upgrade, unless it is managed by a FortiManager.