Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Administration Guide

Fortinet product support for FortiClient

The following Fortinet products work together to support FortiClient:

  • FortiClient EMS
  • FortiManager
  • FortiGate
  • FortiAnalyzer
  • FortiSandbox

FortiClient EMS

FortiClient EMS runs on a Windows server. EMS can manage FortiClient endpoints by deploying FortiClient (Windows) and endpoint policies to endpoints, and the endpoints can connect FortiClient Telemetry to FortiGate and EMS. FortiClient endpoints connect to the FortiGate to participate in the Security Fabric. FortiClient endpoints connect to EMS to be managed in real time.

For information on EMS, see the FortiClient EMS Administration Guide.

FortiManager

FortiManager provides central FortiClient management for FortiGates that FortiManager manages. When endpoints are connected to managed FortiGates, you can use FortiManager to monitor endpoints from multiple FortiGates.

For information on FortiManager, see the FortiManager Administration Guide.

FortiGate

FortiGate provides network security. EMS defines compliance verification rules for connected endpoints and communicates the rules to endpoints and the FortiGate. The FortiGate uses the rules and endpoint information from EMS to dynamically adjust security policies. When using FortiManager, FortiGates communicate between endpoints, EMS, and FortiManager.

When FortiClient Telemetry is connected to the FortiGate, endpoints can participate in the Security Fabric.

For information on FortiGate, see the FortiOS documentation.

FortiAnalyzer

FortiAnalyzer can receive logs and software inventory reports from endpoints connected to FortiGate or EMS, and you can use FortiAnalyzer to analyze the logs and run reports. FortiAnalyzer receives logs and software inventory reports directly from FortiClient.

For information on FortiAnalyzer, see the FortiAnalyzer Administration Guide.

FortiSandbox

FortiSandbox offers capabilities to analyze new, previously unknown, and undetected virus samples in real time. Files sent to it are scanned first, using similar antivirus (AV) engine and signatures as are available on FortiOS and FortiClient. If the file is not detected but is an executable file, it is run in a Microsoft Windows virtual machine (VM) and monitored. The file is given a rating or score based on its activities and behavior in the VM.

As FortiSandbox receives files for scanning from various sources, it collects and generates AV signatures for such samples. FortiClient periodically downloads the latest AV signatures from FortiSandbox, and applies them locally to all realtime and on-demand AV scanning.

FortiClient supports connection to an on-premise FortiSandbox appliance or FortiSandbox Cloud. For more information, see the FortiSandbox Administration Guide.

Fortinet product support for FortiClient

The following Fortinet products work together to support FortiClient:

  • FortiClient EMS
  • FortiManager
  • FortiGate
  • FortiAnalyzer
  • FortiSandbox

FortiClient EMS

FortiClient EMS runs on a Windows server. EMS can manage FortiClient endpoints by deploying FortiClient (Windows) and endpoint policies to endpoints, and the endpoints can connect FortiClient Telemetry to FortiGate and EMS. FortiClient endpoints connect to the FortiGate to participate in the Security Fabric. FortiClient endpoints connect to EMS to be managed in real time.

For information on EMS, see the FortiClient EMS Administration Guide.

FortiManager

FortiManager provides central FortiClient management for FortiGates that FortiManager manages. When endpoints are connected to managed FortiGates, you can use FortiManager to monitor endpoints from multiple FortiGates.

For information on FortiManager, see the FortiManager Administration Guide.

FortiGate

FortiGate provides network security. EMS defines compliance verification rules for connected endpoints and communicates the rules to endpoints and the FortiGate. The FortiGate uses the rules and endpoint information from EMS to dynamically adjust security policies. When using FortiManager, FortiGates communicate between endpoints, EMS, and FortiManager.

When FortiClient Telemetry is connected to the FortiGate, endpoints can participate in the Security Fabric.

For information on FortiGate, see the FortiOS documentation.

FortiAnalyzer

FortiAnalyzer can receive logs and software inventory reports from endpoints connected to FortiGate or EMS, and you can use FortiAnalyzer to analyze the logs and run reports. FortiAnalyzer receives logs and software inventory reports directly from FortiClient.

For information on FortiAnalyzer, see the FortiAnalyzer Administration Guide.

FortiSandbox

FortiSandbox offers capabilities to analyze new, previously unknown, and undetected virus samples in real time. Files sent to it are scanned first, using similar antivirus (AV) engine and signatures as are available on FortiOS and FortiClient. If the file is not detected but is an executable file, it is run in a Microsoft Windows virtual machine (VM) and monitored. The file is given a rating or score based on its activities and behavior in the VM.

As FortiSandbox receives files for scanning from various sources, it collects and generates AV signatures for such samples. FortiClient periodically downloads the latest AV signatures from FortiSandbox, and applies them locally to all realtime and on-demand AV scanning.

FortiClient supports connection to an on-premise FortiSandbox appliance or FortiSandbox Cloud. For more information, see the FortiSandbox Administration Guide.