This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Problem with Upgrade to SFOS 18.0.3 MR-3

Hello Community, 

we now twice tried to apply the 18.0.3 MR-3 Upgrade. Both times with the same outcome: I start the upgrade via web client at Administration --> Backup & Firmware. The System tells me, that as we are running a HA-Cluster, both Firewalls need to be rebooted simultaniously. After that, the firewall that tried to apply the patch won't start up correctly, so the other one becomes Standalone. 

Last time I was able to "just" set the Firewall to factory default and it came back with the last known configuration. The fun part is, that when I connect directly to the firewall and work in the shell I can see both firmwares on the Firewall. But even with advanced shell --> rebootfw -f 2 the Firewall doesn't reboot. When I reboot the firewall I only can chose to boot either per SFLoader or 18.0.3 MR-3. 

Is this a known issue? And if yes, how do we manage to not run into this issue again? Or does it not work with HA in general? So if anyone has a solution I would be very happy. Thanks in advance. 

Daniel Erens



This thread was automatically locked due to age.
Parents
  • Hello Daniel,

    Thank you for contacting the Sophos Community!

    Please open a case with Support and provide me with the Case ID.

    To expedite and found what might be happening please do the following:

    1) Put csc in debug mode

    # csc custom debug 

    (no output would be generated)

    2) Upgrade to 18 MR3 or latest available.

    3) Provide the output of the following logs:

    csc.log, applog.log, postgres.log, syslog.log

    4) And the output of the following commands:

    nvram get '#'li.status
    nvram get "#li.master"
    nvram get '#'li.serial
    showfw
    cat /etc/fwtype
    cat /etc/fwgroup
    cat /etc/version
    system diagnostics show version-info

    Regards,

Reply
  • Hello Daniel,

    Thank you for contacting the Sophos Community!

    Please open a case with Support and provide me with the Case ID.

    To expedite and found what might be happening please do the following:

    1) Put csc in debug mode

    # csc custom debug 

    (no output would be generated)

    2) Upgrade to 18 MR3 or latest available.

    3) Provide the output of the following logs:

    csc.log, applog.log, postgres.log, syslog.log

    4) And the output of the following commands:

    nvram get '#'li.status
    nvram get "#li.master"
    nvram get '#'li.serial
    showfw
    cat /etc/fwtype
    cat /etc/fwgroup
    cat /etc/version
    system diagnostics show version-info

    Regards,

Children
No Data