This article describes how to recover the firewall when the ISSU upgrade fails.
If you executed ISSU upgrade and node1 upgraded using ISSU and customer unknowingly pressed control+c in node0 during the upgrade of node0 and the ISSU aborts.
Since OS already upgraded in node1, we now need to upgrade the node0 alone.
First abort the ISSU on both the nodes:
request chassis cluster in-service-upgrade abort
Note: run this command separately on both the nodes. If you fail to run the abort command in node0 and you have performed normal upgrade on node0, post reboot the FPC will be in present state.
Then upgrade the node0 using a normal upgrade procedure. Follow the KB16652 [juniper.net] for upgrade.