Preparing for a FIPS Software Upgrade

Before upgrading the software on the device, consider the following important information and notes.

FastIron devices can store two Full Layer 3 images or two Layer 2 images.

Note: Signature file auto-copy is not supported. Only image files will be updated and the FIPS check will fail if the corresponding signature file is not present in the same partition.
Note: Manual update of firmware is not supported. If you attempt to update firmware manually, a message similar to the one shown in the following example is displayed.
device# copy tftp service-module 10.1.1.1 1/3 abc.bin      <-- Invalid attempt
IPSEC firmware update is not supported in FIPS mode        <-- System response
In addition, the error message is recorded in the system log as shown in the following example.
SYSLOG: <12> Dec 19 09:59:17 device IPsec: IPSEC firmware update is not supported in FIPS mode