Centralized Firewall Management Administration Guide

Table of Contents

Migration of the Firewall Configuration

The Config Migration feature helps transition from legacy line of firewalls to the new firewalls without the hassle of reconfiguring the settings from scratch. This save the admin's time and reduce the chances of human error while setting up a new firewall device.

The SonicWall firewalls running SonicOS 5.9, 6.5, or 7.0 whose configuration settings can be imported to SonicWall platforms running SonicOS 8.0. The following table shows the source firewalls whose configurations can be migrated to the targeted firewalls.

Supported migration:

NSa 2600/NSa 2650/NSa 2700 NSa 2800
NSa 3600/NSa 3650/NSa 3700 NSa 3800
NSa 4600/NSa 4650/NSa 4700 NSa 4800
NSa 5600/NSa 5650/NSa 5700 NSa 5800
NSa 6600/NSa 6650/NSa 6700 NSa 6800
SOHO serial (SOHO/SOHO-W/SOHO-250/SOHO250-W) TZ 80
SOHO serial (SOHO/SOHO-W/SOHO-250/SOHO250-W), TZ 300, TZ 300W, TZ 300P, TZ 270, TZ 270W TZ 280/TZ280P/TZ280W
TZ 300/TZ 300W/TZ 300P/TZ 350/TZ 350W/TZ 370/TZ 370W TZ 380
TZ 300/TZ 300W/TZ 300P/TZ 350/TZ 350W/TZ 370/TZ 370W/TZ 400W/TZ 470W/TZ 500W/TZ 570W TZ 380W
TZ 400/TZ 400W/TZ 470/TZ 470W TZ 480
TZ 500/TZ 500W/TZ 570/TZ 570W/TZ 570P TZ 580
TZ 600/TZ 600P/TZ 670 TZ 680

Migration supports below SonicOS versions:

Gen 5 5.9.1.7-2o and later
Gen 6 6.5.4.13 and later
Gen 7 7.0.1-5145-R5175 and later

Supported target version and model:

8.0.0 TZ 80
8.0.1 TZ 80, NSa 2800
8.0.2 TZ80, NSa 2800, NSa 3800, TZ 380, TZ 480, TZ 680
8.0.3 NSa 2800, NSa 3800, NSa 4800, NSa 5800, TZ 80, TZ 280, TZ 380, TZ 380W, TZ 480, TZ 580, TZ 680
8.0.4 TZ 80, TZ 280, TZ 280P, TZ 280W, TZ 380, TZ 380W, TZ 480, TZ 580, TZ 680, NSa 2800, NSa 3800, NSa 4800, NSa 5800, NSa 6800
8.1.0 TZ 80, TZ 280, TZ 380, TZ 380W, TZ 480, TZ 580, TZ 680, NSa 2800, NSa 3800, NSa 4800, NSa 5800

To migrate the configuration

  1. Navigate to Manager View | Home > Firewalls > Config Migration page.
  2. Select the Source device.
  3. Select the Target device and SonicOS version.
  4. Upload Configuration File in one of the following ways:

    • Click Browse Computer to upload the locally saved configuration file.
    • Click Browse Firewall Management Backup to select from the saved EXP configurations. For more information, refer to Archived EXP.
  5. Click Next.

    Some configurations are not supported between the selected source and target firewalls. Click here to see more details.

  6. Click OK.

  7. Map the interfaces manually or click Auto Map to map interface to interface.
  8. Click Next.

    The target configuration file is generated if the uploaded or selected configuration is a valid one.

  9. Click View Migration Results to see the skipped configurations (default value changes or unsupported configurations) from the source configuration file.

    You can also Export Log to a .txt file.

  10. Do one of the following:

    1. Migrate instantly or schedule to apply configurations if the targeted device is acquired under the same tenant.

      Migrate Now Click Migrate Now to apply configurations to the target device.
      Migrate Later Click Migrate Later to schedule a time to apply configurations to the target device.
    2. Download File and Import Settings on the Firewall View | Device > Settings > Firmware and Settings > Firmware & Local Backups tab.

    The active configuration will be overwritten upon import of a new configuration file. The target device will reboot automatically once the import has completed.