
Completed project Large enterprise
Migrating a critical firewall to a high-availability FortiGate cluster
The challenge
All company traffic relied on a single virtualised firewall that handled both perimeter security and routing between internal networks. Ageing and without redundancy, it was a single point of failure for critical services. The migration had to happen without disrupting operations.
What we did
- Full audit of the existing configuration and a migration plan approved by the client
- Both firewalls running side by side during the transition, with rollback at every step
- Rules, objects and network services reproduced exactly so nothing breaks
- Gradual cut-over, network by network, with traffic spread across two Internet links (SD-WAN)
- Automated testing: every rule replayed and validated one by one on the new firewall
The result
Migration completed with no service interruption, 100% rule compliance validated, and a modern, redundant security platform. A recommendations report was delivered for the next hardening steps.
| Before | After | |
|---|---|---|
| Redundancy | None, single point of failure | Two firewalls, automatic failover |
| Visibility | Poorly documented legacy rules | Audited, documented rules |
| Internet access | Links used separately | SD-WAN across both links |
For your project : An inventory of critical flows, an agreed cut-over window and a network contact on your side. We prepare everything upfront so every step is reversible.











































