Skip to main content
FortiEng_345
Explorer III
July 29, 2026
Question

Install FortiClient Installer from EMS Cloud to Windows PCs automatically without need to enter Invitation code

  • July 29, 2026
  • 4 replies
  • 183 views

Hi everyone,

Is it possible to register the FortiClient to EMS Cloud without needing the invitation code. 

We have more than 300 PCs to install the client and we dont want to enter the invitation to each of them. 

Bests,
FortiEng

4 replies

Stephen_G
Staff & Editor
Staff & Editor
August 3, 2026

Hi FortiEng_345,

I encourage someone to correct me if I’m wrong, but I believe that in FortiClient on-premises, the administrator can set ‘Enforce invitation-only registration for’ to ‘none’ under System Settings -> EMS Settings. This should allow multiple installations without invitation codes, but I’m not sure if this is possible in EMS.

Stephen_G - Fortinet Community Team
networkb_444
Explorer
August 6, 2026

Hi Stephen_G,

‘Enforce invitation-only registration for’ to ‘none’ doesnt exist in the EMS Cloud System Settings → EMS Settings. 

The only choice is the screenshot below. 

We would like auto_registration for Endpoints after installation without using for Invitation_Code, but we read this. 

“After initial installation, FortiClient should automatically register to FortiClient Cloud. If FortiClient does not automatically register to FortiClient , enter the invitation code in the Join FortiClient Cloud field on the Zero Trust Telemetry tab in FortiClient Cloud. “
https://docs.fortinet.com/document/forticlient-cloud/latest/cloud-deployment/491820/connecting-an-endpoint-to-forticlient-cloud

MG4
Explorer III
August 10, 2026

Hi,

you can create an MSI installer in FortiClient EMS Cloud and deploy it to your endpoints via Group Policy. This allows you to roll out FortiClient to a large number of endpoints without manually entering an invitation code on each endpoint.

If you want to use a FortiEndpoint installer that includes the FortiEDR feature, there is one additional consideration: FortiEndpoint installers that include FortiEDR cannot be created as MSI packages.

In that case, you can use a two-stage deployment:

  1. Create a FortiClient installer without the FortiEDR feature and generate it as an MSI package.
  2. Deploy this MSI package to your endpoints via Group Policy. The endpoints can then automatically register with your FortiClient EMS Cloud instance.
  3. Once the endpoints are managed by EMS, deploy a second installer that includes the FortiEDR feature through FortiClient EMS Cloud (FortiEndpoint EMS).

This way, you can perform the initial deployment and registration centrally without having to manually enter the invitation code on each of your 300+ endpoints.

Kind regards,
MG4

 

FortiEng_345
Explorer III
August 14, 2026

MG4 thank you for the instructions! I appreciate it! 

So, if I deploy the MSI installer via Microsoft intune to endpoints, does this allow me to roll out the FortiClient without manually entering an invitation code on each endpoint? 

Bests,
FortiEng_345

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!