Download as pdf or txt
Download as pdf or txt
You are on page 1of 7

Backup and Restore:

Once you successfully configure the FortiGate, it is extremely important that you backup the
configuration. In some cases, you may need to reset the FortiGate to factory defaults which will
erase the existing configuration. We also recommend that you backup the configuration after
any changes are made, to ensure you have the most current configuration available. Also,
backup the configuration before any upgrades of the FortiGate’s firmware. Should anything
happen to the configuration during the upgrade, you can easily restore the saved configuration.
Always backup the configuration and store it on the management computer or off-site. You
have the option to save the configuration file to various locations including the local PC, USB
key, FTP, and TFTP server. The last two are configurable through the CLI only.

Backup Configuration GUI:

Click on the username in the upper right-hand corner of the screen and select Configuration >

1 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Direct the backup to your Local PC or to a USB Disk. The USB Disk option will not be available if
no USB drive is inserted in the USB port. Enable Encryption. Encryption must be enabled on the
backup file to back up VPN certificates. Enter a password and enter it again to confirm it. This
password will be required to restore the configuration. Click OK.

When prompted, select a location on the PC to save the configuration file. The configuration file
will have a .conf extension.

2 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Backup Configuration CLI:
FG-FW # execute backup config tftp bak-tftp 1233456

Restore FortiGate Configuration Using GUI:

Click on the username in the upper right-hand corner of the screen and select Configuration >

3 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Identify the source of the configuration file to be restored: your Local PC or a USB Disk. Click
Upload, locate the configuration file, and click Open. Enter the password if required. Click OK.

Restore Configuration CLI:

FG-FW # execute restore config tftp back-tftp 123456

4 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Configuration Revision:
The FortiGate configuration revision option enables the user to maintain multiple versions of
the configuration file on the device, the device flash memory should be 512 or higher.
Configuration revisions are viewed by clicking on the username in the upper right-hand corner
of the screen and selecting Configuration > Revisions.

When revision control is enabled on your FortiGate unit, and configuration backups have been
made, a list of saved revisions of those backed-up configurations appears.

Restore Factory Defaults:

There may be a need to reset the FortiGate to its original defaults; for example, to begin with a
fresh configuration. There are two options when restoring factory defaults. The first resets the
entire device to the original out-of-the-box configuration. You can reset the device with the
following CLI command: When prompted, type y to confirm the reset.
FG-FW # execute factoryreset
Alternatively, in the CLI you can reset the factory defaults but retain the interface and VDOM
configuration with the following command:
FG-FW # execute factoryreset2

5 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Fortinet periodically updates the FortiGate firmware to include new features and resolve
important issues. After you have registered your FortiGate unit, you can download firmware
updates from the Fortinet Support web site. Installing new firmware without reviewing release
notes or testing the firmware may result in changes to settings or unexpected issues. You
should always back up the configuration before installing new firmware, in case you need to
restore your FortiGate configuration.

To download firmware, Log into the site using your username and password. Go to Download >
Firmware Images.

Navigate to the folder for the firmware version you wish to use. Save the firmware image to
your computer.

6 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

Log into the GUI as the admin administrative user. Go to System > Firmware. Under Upload
Firmware, select Browse and locate the firmware image file. Select OK.
The FortiGate unit uploads the firmware image file, upgrades to the new firmware version,
restarts, and displays the FortiGate login. This process takes a few minutes.

7 | P a g e Created by Ahmad Ali E-Mail: , Mobile: 056 430 3717

You might also like