This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Info: Upgrading PostgreSQL to 64-bit on UTM 9.5

Hello,

For high availability (HA) deployments, it is not recommended to upgrade the database while HA is enabled. The cluster should be dissolved and reestablished after the node databases were upgraded separately.

Please see our KBA on the topic: https://community.sophos.com/kb/en-us/126593

Regards,

Bob



This thread was automatically locked due to age.
  • Maybe a bit of instruction on how to dissolve a cluster?

  • Just set 'Operation mode: Off', Louis.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hello, why is the smtp Log after Upgrade empty? What is with Vouchers etc.?

    Br McWolle

    Sophos Certified Engineer (SCE)
    Sophos Certified Architect (SCA)

  • Do you mean the content of the 'SMTP Log' tab in Mail Manager?

    I haven't tried this yet and am telling all of my clients to remain on V9.414 for the time being.  I suspect that upgrading the databases to 64-bit may involve re-initializing the databases, and that would delete Vouchers and the content of the 'SMTP Log' tab in Mail Manager.  I haven't read the document, so I don't know that such is the case.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi Bob,

    yes but what happens after it is set to off? Obviously one of the UTM's will remain active with the current ip address etc and can be updated.

    But what happens to the other UTM? It can't have the same ip otherwise there will be a conflict. Turning the active UTM off will cause an outage.

    So I'm wondering how to go about it?

  • Setting HA "Off" causes the other unit to do a Factory Reset and shut down, Louis.  You have to disconnect it, do a rudimentary setup, upgrade databases to 64-bit, Factory Reset and shut down.  After that, reconnect and power it up - the Master will configure it and sync to it.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Wow...... not exactly the easiest way to upgrade

  • It's the first time I've see this since we stated doing V3 14 years ago.  High Availability has been with us for almost 10 years and has never before required a separate maneuver like this.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • ummmm.... so in a live environment where each UTM goes to a Cisco stacked switch with an etherchannel  and each physical port on a different switch:

    1. Determine which UTM is in standby
    2. Disconnect all cables at standby UTM (bar HA cable)
    3. Turn HA off. This will factory reset standby UTM. Active UTM will function as normal.
    4. Disconnect HA cable
    5. Connect pc/laptop to lan port of disconnected UTM and connect to admin interface
    6. Perform db upgrade.
    7. Factory reset

    8. Go to active UTM
    9. Perform db upgrade

    10. Connect HA cable and bring HA back up on active UTM
    11. Connect disconnect cables to standby UTM
    12. Check sync and perform failover

  • Suggested improvements, Louis:

      7. Factory Reset and power the unit down

    10. Bring HA back up on active UTM
    11. Connect disconnect cables to standby UTM and then power it up.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA