Fortinet white logo
Fortinet white logo
7.4.0

Supported FortiClient 7.4.7 features

Supported FortiClient 7.4.7 features

This topic includes information on the following platforms:

Windows

The following table lists the FortiClient version 7.4.7 supported features for the Windows platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Diagnostic logs on-demand
Digital experience monitoring agent
FortiGuard Forensics Analysis
FSSOMA connectivity status
Access
Microsoft Entra ID options
Autoconnect using SAML SSO
Steering bypass destinations
Exempt autoconnect via DNS server
Exempt autoconnect via DHCP server
Exempt autoconnect via local subnet
Exempt autoconnect via ping server
Exempt autoconnect via public IP
Configurable MTU on IPsec
Endpoint profile assignment (Entra ID Groups)
Endpoint profile change notifications
Endpoint telemetry
Tunnel connectivity notifications
Tunnel disconnect from FortiSASE
External browser for SAML login
SAML engine for built-in browser
Force always-on tunnel
Network lockdown
Pre-logon tunnel
Security posture tags
Split DNS/DNS redirection
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
FSSO
FortiClient SSO Mobility Agent
Protection
Anti-ransomware
Next-generation AntiVirus
Removable media access control
Media block notifications
Vulnerability scan
Event-based vulnerability scan
Sandboxing (Cloud + on-prem)
ZTNA
Security posture tagging rules
ZTNA remote access
ZTNA JWT authentication
VPN Enhancements
IPsec over TCP
IPsec transparent reconnect

Windows ARM installer

A FortiClient 7.4.7 ARM installer is available for Windows endpoint onboarding. If the ARM installer was implemented for onboarding, supported features for the Windows platform differs, as listed in the following table:

Feature

Supported

Zero Trust Telemetry

Web Filter

ZTNA

Digital experience monitoring (DEM)

Application Firewall

FortiGuard Forensics Analysis

Remote Access

IPsec

SSL VPN

Protection

Vulnerability Scan

Next-generation AntiVirus

Sandbox Detection

Anti-ransomware

Access

Microsoft Entra ID options

VPN Enhancements

FSSO

SSO mobility agent

Privileged access agent

macOS

The following table lists the FortiClient version 7.4.7 supported features for the macOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Diagnostic logs on-demand
Digital experience monitoring agent
FortiGuard Forensics Analysis
FSSOMA connectivity status
Access
Microsoft Entra ID options
Autoconnect using SAML SSO
Steering bypass destinations Only subnet Only subnet
Exempt autoconnect via DNS server
Exempt autoconnect via DHCP server
Exempt autoconnect via local subnet
Exempt autoconnect via ping server
Exempt autoconnect via public IP
Configurable MTU on IPsec
Endpoint profile assignment (Entra ID Groups)
Endpoint profile change notifications
Endpoint telemetry
Tunnel connectivity notifications
Tunnel disconnect from FortiSASE
External browser for SAML login
SAML engine for built-in browser
Force always-on tunnel
Network lockdown
Pre-logon tunnel
Security posture tags
Split DNS/DNS redirection
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
FSSO
FortiClient SSO Mobility Agent
Protection
Anti-ransomware
Next-generation AntiVirus
Removable media access control
Media block notifications
Vulnerability scan
Event-based vulnerability scan
Sandboxing (Cloud + on-prem)
ZTNA
Security posture tagging rules
ZTNA remote access
ZTNA JWT authentication
VPN Enhancements
IPsec over TCP
IPsec transparent reconnect

Android

The following table lists the latest FortiClient version supported features for the Android platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Access
Autoconnect using SAML SSO
Endpoint telemetry
External browser for SAML login
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
Protection
Vulnerability scan
Sandboxing (Cloud + on-prem) On-prem only On-prem only
ZTNA
Security posture tagging rules

iOS

The following table lists the latest FortiClient version supported features for the iOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Access
Autoconnect using SAML SSO
Endpoint telemetry
External browser for SAML login
IPsec IKEv2 + PSK + SAML
IPsec IKEv2 + PSk + Local user
Force always-on tunnel ✓ MDM is required
Pre-logon tunnel ✓ MDM is required
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
ZTNA
Security posture tagging rules

Supported FortiClient 7.4.7 features

Supported FortiClient 7.4.7 features

This topic includes information on the following platforms:

Windows

The following table lists the FortiClient version 7.4.7 supported features for the Windows platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Diagnostic logs on-demand
Digital experience monitoring agent
FortiGuard Forensics Analysis
FSSOMA connectivity status
Access
Microsoft Entra ID options
Autoconnect using SAML SSO
Steering bypass destinations
Exempt autoconnect via DNS server
Exempt autoconnect via DHCP server
Exempt autoconnect via local subnet
Exempt autoconnect via ping server
Exempt autoconnect via public IP
Configurable MTU on IPsec
Endpoint profile assignment (Entra ID Groups)
Endpoint profile change notifications
Endpoint telemetry
Tunnel connectivity notifications
Tunnel disconnect from FortiSASE
External browser for SAML login
SAML engine for built-in browser
Force always-on tunnel
Network lockdown
Pre-logon tunnel
Security posture tags
Split DNS/DNS redirection
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
FSSO
FortiClient SSO Mobility Agent
Protection
Anti-ransomware
Next-generation AntiVirus
Removable media access control
Media block notifications
Vulnerability scan
Event-based vulnerability scan
Sandboxing (Cloud + on-prem)
ZTNA
Security posture tagging rules
ZTNA remote access
ZTNA JWT authentication
VPN Enhancements
IPsec over TCP
IPsec transparent reconnect

Windows ARM installer

A FortiClient 7.4.7 ARM installer is available for Windows endpoint onboarding. If the ARM installer was implemented for onboarding, supported features for the Windows platform differs, as listed in the following table:

Feature

Supported

Zero Trust Telemetry

Web Filter

ZTNA

Digital experience monitoring (DEM)

Application Firewall

FortiGuard Forensics Analysis

Remote Access

IPsec

SSL VPN

Protection

Vulnerability Scan

Next-generation AntiVirus

Sandbox Detection

Anti-ransomware

Access

Microsoft Entra ID options

VPN Enhancements

FSSO

SSO mobility agent

Privileged access agent

macOS

The following table lists the FortiClient version 7.4.7 supported features for the macOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Diagnostic logs on-demand
Digital experience monitoring agent
FortiGuard Forensics Analysis
FSSOMA connectivity status
Access
Microsoft Entra ID options
Autoconnect using SAML SSO
Steering bypass destinations Only subnet Only subnet
Exempt autoconnect via DNS server
Exempt autoconnect via DHCP server
Exempt autoconnect via local subnet
Exempt autoconnect via ping server
Exempt autoconnect via public IP
Configurable MTU on IPsec
Endpoint profile assignment (Entra ID Groups)
Endpoint profile change notifications
Endpoint telemetry
Tunnel connectivity notifications
Tunnel disconnect from FortiSASE
External browser for SAML login
SAML engine for built-in browser
Force always-on tunnel
Network lockdown
Pre-logon tunnel
Security posture tags
Split DNS/DNS redirection
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
FSSO
FortiClient SSO Mobility Agent
Protection
Anti-ransomware
Next-generation AntiVirus
Removable media access control
Media block notifications
Vulnerability scan
Event-based vulnerability scan
Sandboxing (Cloud + on-prem)
ZTNA
Security posture tagging rules
ZTNA remote access
ZTNA JWT authentication
VPN Enhancements
IPsec over TCP
IPsec transparent reconnect

Android

The following table lists the latest FortiClient version supported features for the Android platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Access
Autoconnect using SAML SSO
Endpoint telemetry
External browser for SAML login
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
Protection
Vulnerability scan
Sandboxing (Cloud + on-prem) On-prem only On-prem only
ZTNA
Security posture tagging rules

iOS

The following table lists the latest FortiClient version supported features for the iOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:

Feature IPsec SSL VPN
Access
Autoconnect using SAML SSO
Endpoint telemetry
External browser for SAML login
IPsec IKEv2 + PSK + SAML
IPsec IKEv2 + PSk + Local user
Force always-on tunnel ✓ MDM is required
Pre-logon tunnel ✓ MDM is required
SSL tunnel remains active when idle
SSL tunnel DTLS support
SSL tunnel to FortiSASE
ZTNA
Security posture tagging rules