FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
Anil_Solakoglu
Article Id 334699

Description

This article describes how to allow the EMS Cloud IP address from the Fortigate side to sync the web filter profile.

Scope

FortiClient EMS, FortiGate.

Solution

To sync the web filter profile from FortiGate to the EMS server documentation should be followed. 

 

If the HTTPS port is accessible but a trusted host configuration is in place on FortiGate.

Collect public IP address configuration from the FortiCloud administration page -> About.

 

Anil_Solakoglu_0-1724147659677.png

 

Allow required admin user to log in from specific trusted host.

 

config system admin
    edit <administrator-name>
        set trustedhost1 xxx.xxx.xxx.xxx 255.255.255.255
        set trustedhost2 xxx.xxx.xxx.xxx 255.255.255.255
    end

 

From the EMS perspective admin user should be able to read corresponding web filter profiles on the FortiGate.

 

If there are still observed issues after the provided steps, a support ticket can be created to troubleshoot further details.