Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Switching out same model with copied configuration

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    12 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      drosos
      last edited by

      Hi, I have hopefully an easy question. Can I take a working firewall, copy the configuration from it onto the same model with the same OS and switch them out and have it work? I haven't been able to successfully do this and am wondering if I'm doing something wrong-configuration change I need to manually make before it will work? When I did it, it took my whole network down. I put the original firewall back in and it took a reboot of everything to get it working again and a 15 minute wait. I did try rebooting everything first with the spare firewall in, but alas, no luck. I would appreciate any insight. Thank you.

      R 1 Reply Last reply Reply Quote 0
      • R
        rcoleman-netgate Netgate @drosos
        last edited by

        @drosos Your NIC drivers are the only real concern in this case.

        Ryan
        Repeat, after me: MESH IS THE DEVIL! MESH IS THE DEVIL!
        Requesting firmware for your Netgate device? https://go.netgate.com
        Switching: Mikrotik, Netgear, Extreme
        Wireless: Aruba, Ubiquiti

        D 1 Reply Last reply Reply Quote 0
        • D
          drosos @rcoleman-netgate
          last edited by

          @rcoleman-netgate It's a netgate device so would that still be the case?

          R 1 Reply Last reply Reply Quote 0
          • R
            rcoleman-netgate Netgate @drosos
            last edited by

            @drosos If it's is a 2100 to a 2100 then there shouldn't be an issue.

            If it's an 1100/2100/3100/7100 to one that is not one of those models then you need a conversion done -- the switch in the hardware will need to be adapted and converted. Open a ticket for that at https://go.netgate.com

            Also two 7100s could be different if there's an add-on NIC on one and not the other, for example.

            Ryan
            Repeat, after me: MESH IS THE DEVIL! MESH IS THE DEVIL!
            Requesting firmware for your Netgate device? https://go.netgate.com
            Switching: Mikrotik, Netgear, Extreme
            Wireless: Aruba, Ubiquiti

            D 1 Reply Last reply Reply Quote 0
            • R rcoleman-netgate moved this topic from Off-Topic & Non-Support Discussion on
            • D
              drosos @rcoleman-netgate
              last edited by

              @rcoleman-netgate Thank you! It is a Netgate XG-71001U. I didn't order with an extra NIC so I just have to open a ticket for the conversion?

              R 1 Reply Last reply Reply Quote 0
              • R
                rcoleman-netgate Netgate @drosos
                last edited by

                @drosos Yes, go ahead and open a ticket with the specifics of your request, including the two system SNs and any add-on details you have.

                Ryan
                Repeat, after me: MESH IS THE DEVIL! MESH IS THE DEVIL!
                Requesting firmware for your Netgate device? https://go.netgate.com
                Switching: Mikrotik, Netgear, Extreme
                Wireless: Aruba, Ubiquiti

                D 1 Reply Last reply Reply Quote 0
                • D
                  drosos @rcoleman-netgate
                  last edited by

                  @rcoleman-netgate Thanks so much! It will feel so good to finally get this working!

                  1 Reply Last reply Reply Quote 0
                  • D
                    drosos
                    last edited by

                    It's me again. I opened a TAC with netgate and apparently the firewalls are exactly the same and needed no conversion. The last time I tried to switch out the two firewalls, a laptop that had been on still worked, but our wifi, which gets DHCP stopped working. I then tested with another laptop and DHCP didn't work, but if I manually put an IP in then it worked. Any idea what the issue is??

                    I appreciate any ideas!
                    Thanks

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      I would guess the MAC address of the DHCP server changed because of the new hardware and Windows is now seeing it as a new network that needs to be allowed.

                      Everything else would remain the same if the hardware is identical. Everything is in the config file unless you made any custom config directly somehow.

                      Steve

                      D 1 Reply Last reply Reply Quote 0
                      • D
                        drosos @stephenw10
                        last edited by

                        Hi @stephenw10,
                        Thank you for replying. We have a MS DHCP Server, so the firewall isn't handing out DHCP addresses so the MAC stays the same. We do have the servers on a different VLAN than the network where I am testing...don't know if this matters? I honestly can't think of why it wouldn't just work.

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          Yeah, I would expect it to 'just work' but you'd have to do some trouble shooting to find out why it isn't. Check for blocked traffic. Check for passed traffic in the counters.

                          Do you have an expansion card in these 7100s?

                          D 1 Reply Last reply Reply Quote 0
                          • D
                            drosos @stephenw10
                            last edited by

                            @stephenw10 Thank you. I will do this early in the morning or over the weekend.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.