Endpoints sometimes need to form legitimate off-Fabric connections to EMS. For example, if an employee has brought their mobile device to an off-net environment, they must connect to EMS off-Fabric. In this scenario, the additional information that this enhancement provides allows you deeper visibility into the endpoint's connection information. You can also use this information for other scenarios, such as hunting down rogue AP connections or hacking into unauthorized Ethernet ports.
FortiClient (macOS) 6.4.2 and later versions sends the following upstream network connection information for Ethernet and Wi-Fi connections to EMS 6.4.2 and later versions:
For Wi-Fi connections, FortiClient (macOS) also sends the SSID. For VPN connections, FortiClient (macOS) sends the IP address information.
EMS displays this information in All Endpoints > Summary > Network Status / Hardware Details.
The following shows how EMS displays the macOS endpoint's active VPN and Ethernet interface details:
The following shows how EMS displays the macOS endpoint's active Wi-Fi and Ethernet interface details: