Fortinet white logo
Fortinet white logo
6.2.0

Configuring FortiClient EMS on-premise

Configuring FortiClient EMS on-premise

To integrate FortiEDR with on-premise FortiClient EMS, you must first create an Admin Role and an Admin User that is linked to the Admin Role in FortiClient EMS. The Admin User is required for FortiEDR to update endpoint classification tags. Fortinet recommends that you create a dedicated Admin Role for FortiEDR integration.

To create an Admin Role in FortiClient EMS:
  1. Log into FortiClient EMS.
  2. Go to Administration > Admin Roles.
  3. Click Add.
  4. In the Name field, enter the admin role name.
  5. (Optional) In the Description field, enter the description.
  6. In the Endpoint permissions field, enable Block/Unblock/Quarantine/Unquarantine endpoints and leave all other options disabled. See Admin role permissions reference for more information.

  7. Click Save.
To create an Admin User that is linked to the Admin Role in FortiClient EMS:
  1. Log into FortiClient EMS.
  2. Go to Administration > Admin Users.
  3. Click Add.
  4. Select Create a new user and click Next.
  5. Specify a username and select the role that you created earlier.

  6. Configure the domain access so that the Admin User has access to endpoints that will be affected by the tag updates.
  7. (Optional) Enable Restrict Login to Trusted Hosts and specify the IP address of the FortiEDR JumpBox.
  8. Click Next and define the password for the Admin User.

    Note down the username and password as you will need to provide the information when Configuring FortiEDR.

  9. Click Finish.

Configuring FortiClient EMS on-premise

Configuring FortiClient EMS on-premise

To integrate FortiEDR with on-premise FortiClient EMS, you must first create an Admin Role and an Admin User that is linked to the Admin Role in FortiClient EMS. The Admin User is required for FortiEDR to update endpoint classification tags. Fortinet recommends that you create a dedicated Admin Role for FortiEDR integration.

To create an Admin Role in FortiClient EMS:
  1. Log into FortiClient EMS.
  2. Go to Administration > Admin Roles.
  3. Click Add.
  4. In the Name field, enter the admin role name.
  5. (Optional) In the Description field, enter the description.
  6. In the Endpoint permissions field, enable Block/Unblock/Quarantine/Unquarantine endpoints and leave all other options disabled. See Admin role permissions reference for more information.

  7. Click Save.
To create an Admin User that is linked to the Admin Role in FortiClient EMS:
  1. Log into FortiClient EMS.
  2. Go to Administration > Admin Users.
  3. Click Add.
  4. Select Create a new user and click Next.
  5. Specify a username and select the role that you created earlier.

  6. Configure the domain access so that the Admin User has access to endpoints that will be affected by the tag updates.
  7. (Optional) Enable Restrict Login to Trusted Hosts and specify the IP address of the FortiEDR JumpBox.
  8. Click Next and define the password for the Admin User.

    Note down the username and password as you will need to provide the information when Configuring FortiEDR.

  9. Click Finish.