Each FortiManager version can support multiple firmware versions for managed FortiGates. However, FortiGates running the same major version need to be managed (grouped) together in order to effectively leverage central templates or policy packages. To ease administrative burdens, it's recommended to standardize on a single version and then migrate between versions when needed. But this creates a challenge - large-scale upgrades of many devices from one version to another. The purpose of this document is to clarify how groups of FortiGates can be migrated from one version to another over a period of time, and the process that should be used during times when multiple versions are present.
This document explains:
- how to upgrade managed firewalls from FortiManager.
- limitations that exist in mixed mode (multiple versions of FortiGates are present).
- backend installation procedures happening when in mixed mode.
It is assumed that you are running the version of FortiManager that supports the FortiGate devices you are managing. Upgrading FortiGate devices from version 5.4 to 5.6 is used as an example.