Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG450 backup to SF01V

Hey guys

Still seem to be having many issues getting my backup from the Physical XG450 into the Virtual XG

Both running 18.5.1 Build 326

The Virtual Version is SF01V (SFOS 18.5.1 MR-1-Build326)

The XG450 is: XG450 (SFOS 18.5.1 MR-1-Build326)

The XG450 has 10 NICS standard - my VM also has 10 NICs

No matter what I try the Virtual XG will not take the Backup from the XG450 with a really non descript error of This backup cannot be restored to this device.

Sophos seem to think restoring a Physical to Virtual wont work.

Have any of you gotten a recent version to upload and restore?

I cant locate any logs as to why it fails.

The work around is that Sophos decided to use Selective Export and Import things I need. That's a pretty bad way to do it and I may as well rebuild it from scratch.

Any ideas?



This thread was automatically locked due to age.
Parents
  • Details of backup compatibility can be found here: https://support.sophos.com/support/s/article/KB-000036245?language=en_US

    As you can see, it is not possible to restore a backup from a hardware appliance to a virtual appliance. It is disappointing and we have been in a similar position to yourselves. It's been a while since I tried it and the results weren't too bad using export/import but it means you have to have a working appliance as the source. We want to be able to use a virtual appliance as a backup to any hardware failure but in that event, we would only have backups not an export.

    As it is only a configuration, I don't understand what the problem is being able to restore backups to devices that match or exceed the resources required.

  • Wow how Crap is that!

    No wonder it fails. 

    I have done the Export / Import but it misses a bunch of things like:

    - Users (Many have VPN Configs)

    - All VPN Config (IPSEC, Site to Site, L2TP, SSL-VPN)

    - Web policies come over - but set to all not to the groups

    - Firewall rules come but get scrambled so need to re-organise.

    - Network Config not present

    - Routes dont come as well.

    Now its a journey of discovery as to what else is missing.

    EDIT: I think part of it is that on the XG450 the ports are #Port 1-10 

    On the vXG its #Port A-J

    Doing any import on Rules, Routes etc that use PORT# fails as its #Port (Letter) So having to rebuild all the FW / NAT rules manually.

    No clue why 250 users didnt import when 3 did though :-(

    Do I give up and go Fortinet now....

Reply
  • Wow how Crap is that!

    No wonder it fails. 

    I have done the Export / Import but it misses a bunch of things like:

    - Users (Many have VPN Configs)

    - All VPN Config (IPSEC, Site to Site, L2TP, SSL-VPN)

    - Web policies come over - but set to all not to the groups

    - Firewall rules come but get scrambled so need to re-organise.

    - Network Config not present

    - Routes dont come as well.

    Now its a journey of discovery as to what else is missing.

    EDIT: I think part of it is that on the XG450 the ports are #Port 1-10 

    On the vXG its #Port A-J

    Doing any import on Rules, Routes etc that use PORT# fails as its #Port (Letter) So having to rebuild all the FW / NAT rules manually.

    No clue why 250 users didnt import when 3 did though :-(

    Do I give up and go Fortinet now....

Children