简介10 fortiClient EMS组件10文档12 BPS 13入门15开始管理Windows,Macos和Linux端点15最初将Forticlient软件部署到端点15将配置信息推向Forticlient 16 Forticlient 16的关系16 forticlient 16的关系16 forticlient的关系将个人资料部署到Chromebooks 21 21如何与Chromebook一起使用Chromebook 22安装准备23系统要求23系统要求23许可类型24 ForticLient EMS 24组件应用程序27所需的服务27所需的服务27遥测数据使用需求30管理能力30管理能力32在EMS和SQL No no no no no no no no fortere fortigate fortigate 33硬件33硬件33硬件时进行33硬件33硬件33的硬件。 FortiGate connected 34 Hardware configuration when there are FortiGates connected to the EMS 35 FortiClient Telemetry security features 36 Server readiness checklist for installation 36 Upgrading EMS 37 Upgrading from an earlier FortiClient EMS version 37 Auto upgrading EMS to latest patch release 39 Install preparation for managing Chromebooks 40 Google Workspace account 40 SSL certificates 41 Installation and licensing 42 Downloading the installation file 42 Installing FortiClient EMS 42 Installing FortiClient EMS to specify SQL Server Enterprise or Standard instance 44 Installing FortiClient EMS using the CLI 48 Allowing remote access to FortiClient EMS and using custom port numbers 50 Customizing the SQL Server Express install directory 50 Starting FortiClient EMS and logging in 51
简介10 fortiClient EMS组件10文档12 BPS 13入门15开始管理Windows,Macos和Linux端点15最初将Forticlient软件部署到端点15将配置信息推向Forticlient 16 Forticlient 16的关系16 forticlient 16的关系16 forticlient的关系将个人资料部署到Chromebooks 21 21如何与Chromebook一起使用Chromebook 22安装准备23系统要求23系统要求23许可类型24 ForticLient EMS 24组件应用27所需的服务27所需的服务27遥测数据使用需求30管理能力30管理能力32在没有EMS和No fort fortigate Connect and Fortigate fortigate fortigate 32硬件时,EM的硬件配置在em fortigate 32硬件上运行32硬件时连接的33个硬件配置连接到EMS 34 ForticLient遥测安全功能35服务器准备清单35升级EMS 36从较早的Forticlient EMS版本中升级,从较早的Forticlient EMS版本36升级36下载安装文件40安装ForticLient EMS 7.4 40迁移EMS 7.2.4或7.2.5至7.4.1 41安装46安装参数91启动ForticLient EMS并在安装后92配置EMS中登录93
Introduction 7 FortiClient, FortiClient EMS, and FortiGate 7 Fortinet product support for FortiClient 7 FortiClient EMS 8 FortiManager 8 FortiGate 8 FortiAnalyzer 9 FortiSandbox 9 FortiClient standalone and licensed version feature comparison 9 Endpoint communication security 11 Recommended upgrade path 12 BPS 16 Getting started 18 Getting started with FortiClient 18 EMS and endpoint profiles 19 Telemetry connection options 19 EMS and automatic upgrade of FortiClient 22 Provisioning preparation 23 Installation requirements 23 Licensing 24 Required services and ports 24 Firmware images and tools 28 Microsoft Windows 28 macOS 29 Linux 29 Obtaining FortiClient installation files 30 Provisioning 31 Manually installing FortiClient on computers 31 Microsoft Windows 31 Microsoft Server 32 macOS 32 Linux 38 Installing FortiClient on infected systems 39 Installing FortiClient as part of克隆磁盘图像40使用CLI 40集中式堡垒部署安装forticlient 41 Forticlient EMS 41使用Microsoft AD服务器部署forticlient 41卸载Forticlient 42升级Forticlient 42升级Forticlient 43 EMS和ForticLient 45端口和服务之间的forticlient 43
概述4安装和许可EMS 5 SQL数据库管理6 EMS配置7服务器设置7日志设置7 fortiguard设置7 Fortiguard设置7端点设置7端点设置7管理员设置7管理员8警报8端点设置9 FortIctlient设置9 Fortient功能固定功能建议10 forticlient harning 13 fortict offient 13 forterning local offerning local local local local local local internal local intabling localient 13密码13个密码的forterine forterine 13 Antiransomware 13加密备份配置文件13允许用户在注册到EMS 14 forticlient服务监视14 EMS维护15故障排除16查看弱点应用程序的文件路径16聚集调试日志16更改日志17
Introduction 9 FortiClient EMS components 9 Documentation 11 Getting started 12 Getting started with managing Windows, macOS, and Linux endpoints 12 Initially deploying FortiClient software to endpoints 12 Pushing configuration information to FortiClient 13 Relationship between FortiClient EMS, FortiGate, and FortiClient 13 Getting started with managing Chromebooks 18 Configuring FortiClient EMS for Chromebooks 18 Configuring the Google Admin console 18 Deploying a profile to Chromebooks 18 How FortiClient EMS and FortiClient work with Chromebooks 19 Installation preparation 20 System requirements 20 License types 20 FortiClient EMS 21 Component applications 24 Required services and ports 24 Management capacity 27 Hardware configuration when EMS and SQL Server run on same machine with no FortiGate connected 28 Hardware configuration when EMS and SQL Server run on different machines with no FortiGate connected 29 Hardware configuration when there are FortiGates connected to the EMS 29 FortiClient Telemetry security features 30 Server readiness checklist for installation 31 Upgrading from an earlier FortiClient EMS version 31 Converting legacy Fabric Agent licenses 31 Upgrading EMS and FortiClient 32 Upgrading EMS from an earlier version 33 Install preparation for managing Chromebooks 33 Google Workspace account 33 SSL certificates 33 Installation and licensing 35 Downloading the安装文件35安装Forticlient EMS 35安装ForticLient EMS指定SQL Server Enterprise或Standard实例37使用CLI 39安装ForticLient EMS,允许远程访问ForticLient EMS访问ForticLient EMS并使用自定义端口编号42使用SQL Server SELPERS ENSTARK EXPERS 42启动Forticlient EMS和Divation 42 Insport forticlient EMS和div Ims in 43 in 33
概述5 ZTNA 6端点:面料代理6 JWT支持ZTNA UID和标签共享6个透明的forticlient升级8零信任标签重命名为安全姿势标签10支持安全姿势规则,基于CRAWDSTRIKE ZTA ZTA ZTA评分7.4.4 UDP 7.4.1 17端点:远程访问19 iPSec VPN在TCP 7.4.1上方19个配置在多个协议上配置IPSEC IKEV2 7.4.1 7.4.1 36 IKEV2会话恢复7.4.1.4.1 38 Forticlient EMS 40 ZTNA 40 MDM集成EMS HA,ForticLient Cloud和ForticLient Cloud和Multitenancy 40 ZTNA应用程序4.4.4.141 41 41 41 41 41 41 configuration of non-web ZTNA applications 7.4.1 41 Removing support for legacy SKUs 45 FortiClient (Linux) installer creation support 46 Linux-based EMS model 51 Support for access key for Fortinet Security Fabric devices to connect to FortiClient Cloud 52 On-fabric detection based on destination address 7.4.1 53 Auto upgrade EMS to latest patch release 7.4.1 53 FortiClient hotfix deployment via EMS 7.4.1 53 Deploy the FortiClient EMS server as a virtual machine image 7.4.1 56 FortiClient GUI enhancement 7.4.1 59 Keyboard navigation 60 Create connectors with OAuth 2.0 token-based authentication 7.4.1 60 Assign AD and local Windows server groups to roles 7.4.1 63 FortiEndpoint (FortiClient integration of FortiEDR agent) 7.4.1 65 Example 1 66 Example 2 69 Support forensic analysis reports on macOS端点7.4.1 70添加支持ManageEngine MDM 7.4.1 71准备在本地ManageEngine Instances 71准备Cloud ManageEngine Instances 71注册设备并部署ForticLient 72 EMS VM Image 7.4.1 75
如果您将EMS部署在EMS无法访问Internet的气动网络或隔离网络中,则可以配置EMS以接收Fortimanager的更新以部署到ForticLient。在离线模式下,Fortimanager允许从Fortimanager出口和导入Fortiguard软件包,以作为Fortiguard Distribution服务器提供。您可以将Fortiguard软件包从在线Fortimanager中导出到离线Fortimanager,该fortimanager为EMS提供签名和引擎更新。EMS接收防病毒,Web过滤器,应用防火墙,漏洞扫描以及Sandbox签名和发动机更新从Fortimanager中进行更新,并在气动或孤立的网络中部署更新到ForticLient。
Introduction 7 FortiClient, FortiClient EMS, and FortiGate 7 Fortinet product support for FortiClient 7 FortiClient EMS 8 FortiManager 8 FortiGate 8 FortiAnalyzer 9 FortiSandbox 9 FortiClient standalone and licensed version feature comparison 9 Endpoint communication security 11 Recommended upgrade path 12 Getting started 17 Getting started with FortiClient 17 EMS and endpoint profiles 18 Telemetry connection options 18 EMS and automatic upgrade of FortiClient 21 Provisioning preparation 22 Installation requirements 22 Licensing 23 Required services and ports 23 Firmware images and tools 27 Microsoft Windows 27 macOS 28 Linux 28 Obtaining FortiClient installation files 29 Provisioning 30 Manually installing FortiClient on computers 30 Microsoft Windows 30 Microsoft Server 31 macOS 31 Linux 37 Installing FortiClient on infected systems 38 Installing FortiClient as part of cloned disk images 39使用CLI 39安装forticlient 39 forticlient部署40 ForticLient EMS 40使用Microsoft Ad Servers部署forticlient 40卸载ForticLient 41升级ForticLient 42验证FortiClient 42 EMS和ForticLient 44 Ports和Forticlient 44 Connectitive ems和Forticlient 44 Connectitive ems and Service and ems和Forticientive ems and Service and ems and forticiC 44
简介4要求5许可6产品集成和支持6部署forticlient Cloud 8用Forticlient Cloud管理端点8添加forticlient cloud 10添加forticlient部署套件10在端点上安装forticlient在端点上安装forticlient,并注册到Forticlient Cloud上添加二级管理员帐户20 iam用户20 API访问密钥22升级forticlient Cloud 24允许列入forticlient云IP地址27从端点到Forticlient Cloud 27从forticlient Cloud 27从forticlient clouds到端点27通知28通知28系统维护28目标通知28用于在forticlient cloud 3 30 fortification 3 3 3 3 3 33备份和还原策略37本地可靠性37灾难恢复37更改日志38
Introduction 10 FortiClient EMS components 10 Documentation 12 Getting started 13 Getting started with managing Windows, macOS, and Linux endpoints 13 Initially deploying FortiClient software to endpoints 13 Pushing configuration information to FortiClient 14 Relationship between FortiClient EMS, FortiGate, and FortiClient 14 Getting started with managing Chromebooks 19 Configuring FortiClient EMS for Chromebooks 19 Configuring the Google Admin console 19 Deploying a profile to Chromebooks 19 How FortiClient EMS and FortiClient work with Chromebooks 20 Installation preparation 21 System requirements 21 License types 22 FortiClient EMS 22 Component applications 25 Required services and ports 25 Telemetry data usage requirements 28 Management capacity 29 Hardware configuration when EMS and SQL Server run on same machine with no FortiGate connected 31 Hardware configuration when EMS and SQL Server run on different machines with no FortiGate connected 31 Hardware configuration when there are FortiGates connected to the EMS 33 FortiClient Telemetry security features 34 Server readiness checklist for installation 34 Upgrading EMS 34 Upgrading from an earlier FortiClient EMS version 34 Auto upgrading EMS to latest patch release 36 Install preparation for managing Chromebooks 38 Google Workspace account 38 SSL certificates 38 Installation and licensing 39 Downloading the installation file 39 Installing FortiClient EMS 39 Installing FortiClient EMS to specify SQL Server Enterprise or Standard instance 41 Installing FortiClient EMS using the CLI 45 Allowing remote access to FortiClient EMS and using custom port numbers 47 Customizing the SQL Server Express install directory 48 Starting FortiClient EMS and logging in 48 Configuring EMS after installation 50
