This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to roll back firmware?

Hi!


After upgrading to SFOS 17.0.6 MR-6 my ipsec site to site VPNs has not been working.

i get 

4 Mar 15 2018 00:12:17           Local:89.27.xx.xx:4500 Remote:62.236.xx.xx:4500 Username:62.236.xx.xx IKEv2 Negotiation aborted due to ERROR: Platform errors 

on the other end.

 

on the firmware page I have a yellow dot (warning for something, dunno what!) on the active mr6 image.

The other image is mr5, but when I click the "boot firmware image", I get an error 

"When HA is configured, booting cluster device(s) with the non-active firmware is not allowed"
 
How can I roll back to MR5?
 
 


This thread was automatically locked due to age.
Parents
  • Yellow dot doesn't mean error or warning but just active.

     

    There have been changes to IPsec in MR6. Especially look at remote gateway and VPN-IDs. Try changing VPN-IDs to IP-Address if currently set do DNS.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Reply
  • Yellow dot doesn't mean error or warning but just active.

     

    There have been changes to IPsec in MR6. Especially look at remote gateway and VPN-IDs. Try changing VPN-IDs to IP-Address if currently set do DNS.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Children
No Data