FortiGate Conversion: How to Migrate a Configuration from an older FortiGate to a new FortiGate

Summary
At start, went to register the device under our account on Fortinet.

It couldn't, however, because it was registered with other company (Register), who was the previous service provider.



Checking the registration on the Firewall.



It required us to request support.fortinet.com for the support.

With the requirement from Fortinet, we needed personally contact the Register to approve the transfer, back it to our account.

Even though, Fortinet noticed the Register about this issue.

Finally, with the approval from the register, Fortinet transferred the FortiGate into our account.


When we were the owner, then went to migrate the configuration.


Requirement
Migrating a configuration with FortiConverter [2]

A configuration can be migrated from an older FortiGate device to a new FortiGate device directly from the FortiGate GUI, without having to access the FortiConverter portal.

Both the source and target FortiGates must be registered under the same FortiCare account and have internet connectivity to reach the FortiConverter server. The target FortiGate must also have a valid FortiConverter license.
 

Prerequisite
1. Register the NEW device to your FortiCare account on https://support.fortinet.com/asset/#/regs/entry

2. Verify the NEW device's FortiOS version with the Initialization finished

3. Creating Conversion Ticket on https://service.forticonverter.com/
 

How-to
1. Upgrading the old Firewall (Old-FW) the same FortiOS version (7.4.8) with the new Firewall (New-FW), following the recommended migration path from https://docs.fortinet.com/upgrade-tool/fortigate.

NOTE: It is why you need to verify the NEW device's FortiOS version after the Initialization finished.


2. Enable "Allow FortiConverter to obtain config file once" on Old-FW.


3. Creating Conversion Ticket on https://service.forticonverter.com/ with the new Firewall Serial Number.

NOTE: It needs you to register the NEW device on your FortiCare account firstly.



4. Select "From" to be Fortinet & upload the source configuration.



NOTE: Ensure the Configuration of the Old-FW ready.



5. Step-by-Step following the Procedures. There are tabs - Physical Interface, VDOM Link, 802.3ad Aggregate, EMAC VLAN, PPPoE, Redundant, Software Switch, Tunnel, VLAN, Hardware Switch & WiFi SSID.




NOTE: About Interface Mapping.




Example of the tab - Tunnel.



Example of the tab - VLAN.




6. Review Interface Migration.




7. Select a Target Interface as the Management Interface (optional) if needs.




8. Provide your comment (optional) if needs.




9. Create & submit a ticket.

NOTE: Experienced that they could provide the configuration on https://service.forticonverter.com/ in 1 hour after the ticket submitted with their notice - "… it will take 1-2 business days for the FortiGate to FortiGate conversion …".








Update