This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Can't Manually Up2Date

Hello

I have an SG210 REV3 running UTM 9.700-5.  I have purchased a second SG210 REV3 that we would like to use as a slave in Hot Standby mode.

The second UTM is running 9.509.  My understanding is that the slave will need to be upgraded to the same FW as the master.

The second UTM has only the "base" license which means I can't use automatic Up2Date to install the latest firmware.

I have attempted to update the UTM manually, which I understand must be done one FW update at a time and sequentially.  In my case this means updating to 9.51 (this is the next FW on the FTP site).

I have uploaded the FW to the UTM which then recognises there is an update to install, and I then start the installation process.  The UTM restarts, but when I log in it is still 9.509.  In the Up2Date Log are the following messages:

 

auisys[7895]: You are currently running Version 9.509003, but Version 9.510004 is required for this up2date package

auisys[7895]: id="371J" severity="error" sys="system" sub="up2date" name="Fatal: Version conflict: required version: 9.510004 <=> current version: 9.509003" status="failed" action="install" package="sys"

 

The log for the whole update is attached to this post.  It does mention it is loading other Up2Date packages, but I haven't uploaded them.

 

Where am I going wrong?

Many thanks



This thread was automatically locked due to age.
Parents
  • Dirk put you on the right track.  Here's what I give to my clients in a similar situation.

    1. If needed, do a quick, temporary install so that the new device can download Up2Dates.
    2. Apply the Up2Dates to the same version as the current unit, do a factory reset and shutdown.
    3. On the current UTM in use, on the 'Configuration' tab of 'High Availability':
       a. Enable Hot-Standby
       b. Select eth3 as the Sync NIC
       c. Configure it as Node_1
       d. Enter an encryption key (I've never found a need to remember it)
       e. Select 'Enable automatic configuration of new devices'
       f. I prefer to use 'Preferred Master: None' and 'Backup interface: Internal'
    4. Cable eth3 to eth3 on the new device.
    5. Cable all of the other NICs exactly as they are on the original UTM.
    6. Power up the new device and wait for the good news. [;)]

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Dirk put you on the right track.  Here's what I give to my clients in a similar situation.

    1. If needed, do a quick, temporary install so that the new device can download Up2Dates.
    2. Apply the Up2Dates to the same version as the current unit, do a factory reset and shutdown.
    3. On the current UTM in use, on the 'Configuration' tab of 'High Availability':
       a. Enable Hot-Standby
       b. Select eth3 as the Sync NIC
       c. Configure it as Node_1
       d. Enter an encryption key (I've never found a need to remember it)
       e. Select 'Enable automatic configuration of new devices'
       f. I prefer to use 'Preferred Master: None' and 'Backup interface: Internal'
    4. Cable eth3 to eth3 on the new device.
    5. Cable all of the other NICs exactly as they are on the original UTM.
    6. Power up the new device and wait for the good news. [;)]

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data