Introduction
A cloud-based software-as-a-service endpoint management service called FortiEndpoint is available. This is a Fortinet-hosted EMS solution.
FortiEndpoint provides the same features as FortiClient Cloud but with an additional FortiEndpoint deployment feature. The scope of this document is to describe features that are unique to FortiEndpoint. For features that are also available in FortiClient Cloud, see FortiClient Cloud Deployment.
FortiEndpoint integrates the FortiClient Cloud and FortiEDR cloud systems and is only available for new customers/deployments. In FortiEndpoint, FortiClient Cloud is responsible for deploying the FortiEDR collector and managing its version. FortiClient Cloud has an EDR connector to manage EDR collector groups, specifically creating collector groups, membership of endpoints within a collector group, and EDR collector versions assigned to a collector group.
In FortiClient Cloud, you can create a unified installer that installs the FortiClient agent and EDR collector. These two applications are integrated so that the FortiClient GUI handles EDR notifications instead of the EDR collector and has a new tab to view an EDR activity log.
FortiClient Cloud manages EDR collector versions through its deployments:
- When you create a deployment, FortiClient Cloud, through the EDR Connector, creates a collector group with the same name as the deployment.
- When you assign endpoints to the deployment, the EDR connector assigns the same endpoints to the associated EDR collector group.
By contrast, in a standalone EDR management system, the EDR administrator assigns collector versions to a collector group, and the EDR management system ensures that all members of the collector group match the version assignment, upgrading collectors if necessary. In this integration, the EDR connector sets the EDR collector versions based on the collector versions defined in the FortiClient installer.
Because the collector group management is the responsibility of FortiClient Cloud, these functions are inaccessible in the EDR management system. The EDR administrator still assigns security policies and playbooks to the collector groups.