Huawei USG6000 Upgrade Manual page 81

Hide thumbs Also See for USG6000:
Table of Contents

Advertisement

HUAWEI USG6000&USG9500
Upgrade Guide
1.Before rolling V500R001C50 and later versions back to earlier versions, run the set system-
software check-mode all command in the system view. Directly roll other versions back to
earlier ones.
2.Before rolling back the original version, make sure that the corresponding configuration file
(already backed up before the upgrade) is loaded to the CF card of the device and is specified
as the file for next startup by running the startup saved-configuration cfg-filename command.
Then restart the device, avoiding configuration loss due to CLI differences between versions.
3.Ensure that the user management database usermanager.db (hda1:/umdb/umsystem/
usermanage.db) corresponding to the source version is uploaded to the device.
4.Upload the sensitive feature component package *.mod corresponding to the source version
to the device.
5. When V500R001C30 is upgraded to V500R001C50 or later versions, the hda1:/svndb/
system/vgsysteminfo.db file is generated to record upgrade information because the SSL
VPN database type is changed. After rolling the current version back to V500R001C30, you
need to delete the vgsysteminfo.db file to upgrade the version to V500R001C50 or later
versions. Otherwise, SSL VPN data cannot be written in to the database after the upgrade, and
the SSL VPN data modified during version rollback is lost.
6. After V500R001C30 is upgraded to a version later than V500R001C50, PKI virtualization
is supported, and the storage directory of PKI certificate configuration file ca_config.ini is
changed from the root directory to the pki/public directory. When the current version is rolled
back to V500R001C30 and PKI service configurations are modified, the /pki/public/
ca_config.ini file needs to be deleted. Otherwise, the follow-up upgrade does not trigger the
upgrade of PKI services, and the PKI certificate configuration is lost after the upgrade.
7. In the hot standby scenario, during the version rollback from V500R001C80 and later
versions to V500R001C60 and earlier versions, SSL VPN users need to re-log in.
Application Scenario
The version rollback needs to be implemented if:
l
l
Issue 01 (2018-01-16)
NOTICE
The device cannot start normally after upgrade, and the current version needs to be rolled
back to the previous one.
In this case, you need to roll the version to the backup source version in BootROM
mode. The detailed procedure is the same as that of upgrading the version software in
BootROM mode. For details, see
BootROM.
The device can start normally after upgrade, but a certain function cannot run normally,
and therefore the current version needs to be rolled back to the previous one.
In this case, you can adopt either of the following modes to roll back the version:
– Roll back the version through command lines. The detailed procedure is the same as
that of upgrading the version software in CLI mode. For details, see
Through
CLI.
– Roll back the version through Web. The detailed procedure is the same as that of
upgrading the version software in Web mode. For details, see
Web.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Appendix A: Upgrading System Software Using
1 USG6000
Upgrade
Upgrade Through
72

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Usg9500

Table of Contents