Skip to main content
FortiKoala
Staff
Staff
September 27, 2018

Technical Tip: Whitelist Windows Machines from Endpoint Compliance Scans for a Specific VLAN

  • September 27, 2018
  • 0 replies
  • 955 views

Description

 
This article describes the Whitelist Windows Machines from Endpoint Compliance Scans for a Specific VLAN.


Solution

 
Example: Do not scan student-owned Windows devices during the registration onboarding process.

Solution: Modify the existing Student endpoint compliance posture checking policy to not require the scanning of student-owned devices (Windows machines).

The following steps assume the criteria used for matching the Network Access Policy assigning Student VLAN is used for the Endpoint Compliance Policy (same User/Host Profile).

  1. Navigate to Policy & Objects -> Endpoint Compliance.
  2. Modify the Endpoint Compliance Policy for Students.
  3. Modify the  Endpoint Compliance Configuration for Student (select and Modify).
  4. Select the Agent tab.
  5. Set the Windows to 'None - Bypass'.
  6. Select OK.

compliance.PNG
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!