Supported FortiClient 7.4.5 features
This topic includes information on the following platforms:
Windows
The following table lists the FortiClient version 7.4.5 supported features for the Windows platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:
| Feature | IPsec | SSL VPN |
|---|---|---|
| Diagnostic logs on-demand | ✓ | ✓ |
| Digital experience monitoring agent | ✓ | ✓ |
| FortiGuard Forensics Analysis | ✓ | ✓ |
| FSSOMA connectivity status | ✓ | ✓ |
| Access | ||
| Microsoft Entra ID options | ✓ | |
| Autoconnect using SAML SSO | ✓ | ✓ |
| Steering bypass destinations | ✓ | ✓ |
| Exempt autoconnect via DNS server | ✓ | ✓ |
| Exempt autoconnect via DHCP server | ✓ | ✓ |
| Exempt autoconnect via local subnet | ✓ | ✓ |
| Exempt autoconnect via ping server | ✓ | ✓ |
| Exempt autoconnect via public IP | ✓ | ✓ |
| Configurable MTU on IPsec | ✓ | |
| Endpoint profile assignment (Entra ID Groups) | ✓ | ✓ |
| Endpoint profile change notifications | ✓ | ✓ |
| Endpoint telemetry | ✓ | ✓ |
| Tunnel connectivity notifications | ✓ | ✓ |
| Tunnel disconnect from FortiSASE | ✓ | ✓ |
| External browser for SAML login | ✓ | ✓ |
| SAML engine for built-in browser | ✓ | ✓ |
| Force always-on tunnel | ✓ | ✓ |
| Network lockdown | ✓ | ✓ |
| Pre-logon tunnel | ✓ | ✓ |
| Security posture tags | ✓ | ✓ |
| Split DNS/DNS redirection | ✓ | ✓ |
| SSL tunnel remains active when idle | ✓ | |
| SSL tunnel DTLS support | ✓ | |
| SSL tunnel to FortiSASE | ✓ | |
| FSSO | ||
| FortiClient SSO Mobility Agent | ✓ | ✓ |
| Protection | ||
| Anti-ransomware | ✓ | ✓ |
| Next-generation AntiVirus | ✓ | ✓ |
| Removable media access control | ✓ | ✓ |
| Media block notifications | ✓ | ✓ |
| Vulnerability scan | ✓ | ✓ |
| Event-based vulnerability scan | ✓ | ✓ |
| Sandboxing (Cloud + on-prem) | ✓ | ✓ |
| ZTNA | ||
| Security posture tagging rules | ✓ | ✓ |
| ZTNA remote access | ✓ | ✓ |
| ZTNA JWT authentication | ✓ | ✓ |
| VPN Enhancements | ||
| IPsec over TCP | ✓ | |
| IPsec transparent reconnect | ✓ | |
macOS
The following table lists the FortiClient version 7.4.5 supported features for the macOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:
| Feature | IPsec | SSL VPN |
|---|---|---|
| Diagnostic logs on-demand | ✓ | ✓ |
| Digital experience monitoring agent | ✓ | ✓ |
| FortiGuard Forensics Analysis | ||
| FSSOMA connectivity status | ✓ | ✓ |
| Access | ||
| Microsoft Entra ID options | ||
| Autoconnect using SAML SSO | ✓ | ✓ |
| Steering bypass destinations | Only subnet | Only subnet |
| Exempt autoconnect via DNS server | ✓ | ✓ |
| Exempt autoconnect via DHCP server | ✓ | ✓ |
| Exempt autoconnect via local subnet | ✓ | ✓ |
| Exempt autoconnect via ping server | ✓ | ✓ |
| Exempt autoconnect via public IP | ✓ | ✓ |
| Configurable MTU on IPsec | ✓ | |
| Endpoint profile assignment (Entra ID Groups) | ✓ | ✓ |
| Endpoint profile change notifications | ✓ | ✓ |
| Endpoint telemetry | ✓ | ✓ |
| Tunnel connectivity notifications | ✓ | ✓ |
| Tunnel disconnect from FortiSASE | ✓ | ✓ |
| External browser for SAML login | ✓ | ✓ |
| SAML engine for built-in browser | ✓ | ✓ |
| Force always-on tunnel | ✓ | ✓ |
| Network lockdown | ✓ | ✓ |
| Pre-logon tunnel | ||
| Security posture tags | ✓ | ✓ |
| Split DNS/DNS redirection | ✓ | ✓ |
| SSL tunnel remains active when idle | ✓ | |
| SSL tunnel DTLS support | ✓ | |
| SSL tunnel to FortiSASE | ✓ | |
| FSSO | ||
| FortiClient SSO Mobility Agent | ✓ | ✓ |
| Protection | ||
| Anti-ransomware | ||
| Next-generation AntiVirus | ✓ | ✓ |
| Removable media access control | ✓ | ✓ |
| Media block notifications | ✓ | ✓ |
| Vulnerability scan | ✓ | ✓ |
| Event-based vulnerability scan | ✓ | ✓ |
| Sandboxing (Cloud + on-prem) | ✓ | ✓ |
| ZTNA | ||
| Security posture tagging rules | ✓ | ✓ |
| ZTNA remote access | ✓ | ✓ |
| ZTNA JWT authentication | ✓ | ✓ |
| VPN Enhancements | ||
| IPsec over TCP | ✓ | |
| IPsec transparent reconnect | ✓ | |
Android
The following table lists the latest FortiClient version supported features for the Android platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:
| Feature | IPsec | SSL VPN |
|---|---|---|
| Access | ||
| Autoconnect using SAML SSO | ✓ | |
| Endpoint telemetry | ✓ | ✓ |
| External browser for SAML login | ✓ | ✓ |
| SSL tunnel remains active when idle | ✓ | |
| SSL tunnel DTLS support | ✓ | |
| SSL tunnel to FortiSASE | ✓ | |
| Protection | ||
| Vulnerability scan | ✓ | ✓ |
| Sandboxing (Cloud + on-prem) | On-prem only | On-prem only |
| ZTNA | ||
| Security posture tagging rules | ✓ | |
iOS
The following table lists the latest FortiClient version supported features for the iOS platform for IPsec and SSL VPN tunneling. Likewise, the table lists feature support by the FortiSASE portal:
| Feature | IPsec | SSL VPN |
|---|---|---|
| Access | ||
| Autoconnect using SAML SSO | ✓ | |
| Endpoint telemetry | ✓ | ✓ |
| External browser for SAML login | ✓ | ✓ |
| IPsec IKEv2 + PSK + SAML | ✓ | |
| IPsec IKEv2 + PSk + Local user | ✓ | |
| Force always-on tunnel | ✓ MDM is required | |
| Pre-logon tunnel | ✓ MDM is required | |
| SSL tunnel remains active when idle | ✓ | |
| SSL tunnel DTLS support | ✓ | |
| SSL tunnel to FortiSASE | ✓ | |
| ZTNA | ||
| Security posture tagging rules | ✓ | |