FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
babakmh
Staff
Staff
Article Id 378314
Description This article explains how to deal with the FortiClient pop-up message to reboot the PC to finalize vulnerability patching.
Scope All Windows FortiClients.
Solution

FortiClient occasionally displays a pop-up notification with the following content:

'Windows requested a reboot so that it can finish installing updates.


You must reboot your PC to allow FortiClient to finish the vulnerability patching.


Please reboot by clicking the Reboot button.
If you don't want to reboot now, click the Do Not Reboot button.'

 

Which provide below options:

  • Reboot.
  • Do Not Reboot.

 

FortiClient reboot PC popup.PNG

  

This is an expected behavior of the vulnerability patching feature.

 

To apply patches, the FortiClient vulnerability patching feature communicates with the Windows Update Manager.

However, suppose the Windows Update Manager does not apply the appropriate updates or has a problem. In that case, FortiClient constantly displays annoying Reboot messages due to the Windows Update Manager malfunction or wait for reboot to apply OS patches. 

 

During a vulnerability scan, FortiClient checks for Windows updates. The scan will not run if Windows has already installed certain updates and is awaiting a reboot to finish the installation. In this situation, the Windows Update service returns an error message indicating that the PC is awaiting a reboot.

 

solution:

  • Perform the Windows update manually on the impacted endpoints. This should take care of the issue, and it is very unlikely to occur again.
  • Reboot the PC.
  • Disable Scan OS Vulnerabilities under the Vulnerability profile could resolve the issue:

 

Disable Scan OS Vulnerabilities.png

 

There is no other option in FortiClient EMS settings to prevent this message from appearing, but the user can always choose 'Do Not Reboot'.

Contributors