Preparing Windows endpoints for FortiClient deployment
The following services must be enabled and configured on each Windows endpoint before FortiClient is deployed to them:
- Task Scheduler: Automatic
- Windows Installer: Manual
- Remote Registry: Automatic
![]() |
The Windows Firewall must be configured to allow the following inbound connections:
|
For AD group deployments, an AD administrator account is required. For non-AD deployments, the installer URL can be shared with users, who can then download and install FortiClient manually. You can locate the installer URL in Software Management. Go to Administration > Software Management.