Fortinet black logo

EMS QuickStart Guide

Preparing Windows endpoints for FortiClient deployment

Preparing Windows endpoints for FortiClient deployment

The following services must be enabled and configured on each Windows endpoint before FortiClient is deployed to them:

  • Task Scheduler: Automatic
  • Windows Installer: Manual
  • Remote Registry: Automatic

The Windows Firewall must be configured to allow the following inbound connections:

  • File and Printer Sharing (SMB-In)
  • Remote Scheduled Tasks Management (RPC)

For AD group deployments, an AD administrator account is required. For non-AD deployments, the installer URL can be shared with users, who can then download and install FortiClient manually. You can locate the installer URL in Manage Installers. Go to Profile Components > Manage Installers.

Preparing Windows endpoints for FortiClient deployment

The following services must be enabled and configured on each Windows endpoint before FortiClient is deployed to them:

  • Task Scheduler: Automatic
  • Windows Installer: Manual
  • Remote Registry: Automatic

The Windows Firewall must be configured to allow the following inbound connections:

  • File and Printer Sharing (SMB-In)
  • Remote Scheduled Tasks Management (RPC)

For AD group deployments, an AD administrator account is required. For non-AD deployments, the installer URL can be shared with users, who can then download and install FortiClient manually. You can locate the installer URL in Manage Installers. Go to Profile Components > Manage Installers.