Skip to main content
Contributor
October 12, 2009

Note about "Enable Endpoint NAC" - AV Signature out of date

  • October 12, 2009
  • 0 replies
  • 1473 views

Description

Question :
 
When the option "Enable Endpoint NAC" is enabled on a Firewall Policy,  using FortiClient check, what is used to qualify an Anti-Virus signature as "out of date" ?
 
 
Answer :
 
When using this option to have the Fortigate check the AV signatures installed on the FortiClient, anything older then what is listed on the FortiGate (Virus DB version)  is considered out of date.


If  "Host Check Software" is used in the SSL settings, anything older then what is configured on the FortiGate is considered out of date.