Fort I Client
Fort I Client
Fort I Client
FortiClient
Secure remote access with visibility and controls for Zero Trust Network Access (ZTNA)
Key Advantages
EMS for Central
Unified endpoint features including compliance, Management
protection, and secure access into a single, modular § Simple & User Friendly UI
lightweight client. § Remote FortiClient Deployment
§ Real-time Dashboard
End-to-end threat visibility and control by natively
§ Software Inventory Management
integrating endpoint into the Security Fabric
§ Active Directory Integration
architecture.
§ Central Quarantine Management
FortiClient Benefits
Security Fabric Integration Zero Trust Network Access
FortiClient integrates the endpoints into Fortiner’s Security Fabric Fortinet extends ZTNA control to end-user devices both on- and
for early detection and prevention of advanced threats. This off-network operation through FortiClient. With FortiClient endpoint
integreation delivers native endpoint visibility, compliance control, telemetry and risk assessment, Admin gain the critical endpoint
vulnerability management and automation. With 6.0, FortiOS and visibility and can set conditional-access policies to control access
FortiAnalyzer leverage FortiClient endpoint telemetry intelligence from the endpoints. For example, limit a vulnerable endpoint
to identify Indicator of Compromise (IoC). With the Automation from accessing critical areas of the network or even block VPN
capability, admins can investigate real-time and set policies connection.
to automate responses including quarantining suspicious or
compromised endpoints to contain incidents and stem outbreaks. Secure Remote Access
Fortinet’s endpoint compliance & vulnerability management features To enable secure remote access, FortiClient provides flexible
simplifies the enforcement of enterprise security policies options for VPN connectivity. It supports both secure sockets layer
preventing endpoints from becoming easy attack targets. (SSL) and Internet Protocol security (IPsec) VPNs. A split tunneling
feature enables remote users on SSL VPNs to access the internet
Web Filtering and SAAS Control without their traffic having to pass through the corporate VPN
FortiClient provides off network web filtering, delivering web headend, as in a typical SSL tunnel. This feature reduces latency,
security and content filtering. The web application firewall provides which improves user experience. At the same time, FortiClient
botnet protection and granular application traffic control including includes protections to ensure that internet-based transactions
web-based applications and software as a service (Saas). cannot backflow into the VPN connection and jeopardize the
corporate network.
Endpoint Hygiene
FortiClient helps organizations reduce attack
surface with vulnerability scanning and optional
auto-patching. Combined with the zero-trust
access principles, this approach can enhance
an organization’s hygiene and security posture.
2
DATA SHEET | FortiClient
Feature Highlights
EMS EMS provides ability to centrally FortiGate FortiGate provides awareness and
manage Windows, Mac, Linux, control over all your endpoints
Chrome, iOS and Android endpoints
Software Inventory Management provides visibility into Telemetry provides real-time endpoint visibility (including
installed software applications and licence management to user avatar) on FortiGate console so administrators can get a
improve security hygiene. You can use inventory information to comprehensive view of the whole network. Telemetry also ensures
detect and remove unnecessary or outdated applications that that all fabric components have a unified view of the endpoints.
might have vulnerabilities to reduce your attack surface.
Dynamic Access Control for Compliance Enforcement
Windows AD Integration helps sync organizations AD structure requires EMS to create virtual groups based on endpoint security
into EMS so same OUs can be used for endpoint management. posture. These virtual groups are then retrieved by FortiGate and
used in firewall policy for dynamic access control. Dynamic groups
Real-time Endpoint Status always provides current information help automate & simplify compliance to security policies.
on endpoint activity & security events.
Endpoint Quarantine helps to quickly disconnect a compromised
Vulnerability Dashboard helps manage organizations endpoint from the network and stop it from infecting other assets.
attack surface. All vulnerable endpoints are easily identified for
administrative action. Automated Response helps detect and isolate suspicious or
compromised endpoints without manual intervention.
Centralized FortiClient Deployment & Provisioning that
allows administrators to remotely deploy endpoint software Application-based Split Tunnel supports source application-
and perform controlled upgrades. Makes deploying FortiClient based split tunnel, where you can specify application traffic to
configuration to thousands of clients an effortless task with a click exclude from the VPN tunnel, such as high bandwidth apps.
of a button.
Sandbox settings are automatically synchronized with EMS Web Filtering with Keyword Search / YouTube Filters blocks
and detailed analysis of FortiClient submitted files for behavior web pages containing words or patterns that you specify as
based detection is accessible in EMS. Administrators can see well as limit users’ access by blocking or only allowing specified
all behavior activity of a file including graphic visualization of full YouTube channels.
process tree.
Remote Control
On-demand Antivirus Scan
On-demand Vulnerability Scan
Host Quarantine
PLUS - Add Sandbox Cloud Subscription for Proactive Advanced Threat Detection as well as other upcoming add-ons in the future.
3
DATA SHEET | FortiClient
Order Information
Product SKU Description
FortiClient Security Fabric Agent FC1-15-EMS01-299-02-DD Security Fabric Agent with EPP license subscription for 25 endpoints.
with FortiSandbox Cloud Includes Fabric Agent, Anti-Malware, Remote Access, Web Filter,
Vulnerability Scan, Software Inventory, Application Firewall, SSOMA,
Threat Outbreak Detection, Sandbox Agent with Cloud Sandbox
CERTIFIED
subscription, Central Management and 24x7 Support
FortiClient Security Fabric Agent FC1-15-EMS01-297-02-DD Security Fabric Agent with EPP license subscription for 25 endpoints.
for 25 Clients Includes Fabric Agent, Anti-Malware, Remote Access, Web Filter,
Vulnerability Scan, Software Inventory, Application Firewall, SSOMA,
Threat Outbreak Detection, Sandbox Agent (On-Prem), Central
Management and 24x7 Support
FortiClient Chromebook for 25 FC1-15-EMS01-403-02-DD FortiClient Chromebook license subscription for 25 Chrome OS users.
Clients Includes Web Filter, Central Management and 24x7 Support.
www.fortinet.com
Copyright © 2020 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law
trademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results
may vary. Network variables, different network environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to
the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event,
only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests.
Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version
of the publication shall be applicable. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without
notice, and the most current version of the publication shall be applicable.
FST-PROD-DS-FCT FCT-DAT-R22-202012