Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to upgrade a Active / Passive Cluster SFOS V18.5.2 to V19.5 in a Production Environment?

Hi Community and Sophos Guys.

As the title describes, I have to upgrade a Active / Passive Cluster SFOS V18.5.2 to V19.5 in a Production Environment.

This Production Environment uses XGS2100 as hardware, and have a maximum of 24h hours for a downtime.

After that the Firewall must up and running. This is a just in time Production which receives orders via a EDI System.

For this case what is the correct upgradepath?



This thread was automatically locked due to age.
Parents Reply
  • Hi,

    thank's for your answer.

    For my understanding, does this include the correct conversion of the running configuration?

    In this case, can you confim that the current configuration (L3 and IPSEC VPN) will correctly work on Version V19 (A/P Cluster)?

    On my experience (TWICE) with A/P Clusters, the firmware are upgraded to V19, but the Configuration are NOT converted. At least once, the configuration are lost. This means there was only the default configuration. In the other case, after a couple of houres NO rule never matches.

    This cases are reported to Sophos (Summer/Autumn 2022) but no technical guy from them was interrested on this circumstance.

    I mean - to reproduce this in a LAB, and so on ...

    I my case - I need a working "how to" how I do the upgrade to V19 and can be sure that the upgrade works with the current configuration. 

    We have no to time for experiments.

    My maximum maintainance window is 24h hours.

Children