Fortinet black logo

Administration Guide

Using Microsoft AD to deploy FortiClient

Using Microsoft AD to deploy FortiClient

  1. On your domain controller, create a distribution point.
  2. Log into the server computer as an administrator.
  3. Create a shared network folder where the FortiClient MSI installer file is distributed from.
  4. Set file permissions on the share to allow access to the distribution package. Copy the FortiClient MSI installer package into this share folder.
  5. Select Start > Administrative Tools > Active Directory Users and Computers.
  6. After selecting your domain, right-click to select a new organizational unit (OU).
  7. Move all the computers you want to distribute the FortiClient software to into the newly-created OU.
  8. Create a group policy object (GPO), then create the FortiClient installer package:
    1. Select Start > Administrative Tools > Group Policy Management. The Group Policy Management MMC Snap-in opens. Select the OU you just created. Right-click it, Select Create a GPO in this domain, and link it here. Give the new GPO a name then select OK.
    2. Expand the GPO container and find the newly created GPO. Right-click the GPO and select Edit. The Group Policy Management Editor MMC Snap-in opens.
    3. Expand Computer Configuration > Policies > Software Settings. Right-click Software Settings and select New > Package.
    4. Select the path of your distribution point and FortiClient installer file and then select Open. Select Assigned and select OK. The package is then generated.
  9. If you wish to expedite the installation process, on the server and client computers, force a GPO update.
  10. The software is installed on the client computer’s next reboot. You can also wait for the client computer to poll the domain controller for GPO changes and install the software then.

Using Microsoft AD to deploy FortiClient

  1. On your domain controller, create a distribution point.
  2. Log into the server computer as an administrator.
  3. Create a shared network folder where the FortiClient MSI installer file is distributed from.
  4. Set file permissions on the share to allow access to the distribution package. Copy the FortiClient MSI installer package into this share folder.
  5. Select Start > Administrative Tools > Active Directory Users and Computers.
  6. After selecting your domain, right-click to select a new organizational unit (OU).
  7. Move all the computers you want to distribute the FortiClient software to into the newly-created OU.
  8. Create a group policy object (GPO), then create the FortiClient installer package:
    1. Select Start > Administrative Tools > Group Policy Management. The Group Policy Management MMC Snap-in opens. Select the OU you just created. Right-click it, Select Create a GPO in this domain, and link it here. Give the new GPO a name then select OK.
    2. Expand the GPO container and find the newly created GPO. Right-click the GPO and select Edit. The Group Policy Management Editor MMC Snap-in opens.
    3. Expand Computer Configuration > Policies > Software Settings. Right-click Software Settings and select New > Package.
    4. Select the path of your distribution point and FortiClient installer file and then select Open. Select Assigned and select OK. The package is then generated.
  9. If you wish to expedite the installation process, on the server and client computers, force a GPO update.
  10. The software is installed on the client computer’s next reboot. You can also wait for the client computer to poll the domain controller for GPO changes and install the software then.