FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
jie
Staff
Staff
Article Id 403752
Description This article describes how to manually patch vulnerabilities for endpoints through EMS and the whole process.
Scope FortiClient, FortiClient EMS.
Solution

For some vulnerabilities the EMS auto-patch feature doesn't work for them. As in the screenshot below, there is a 'patch' option available to any EMS admin for selection, and this needs admin intervention.

 

Patch.PNG

 

Selecting 'Patch' changes it to to 'Patch Scheduled' immediately. It will then change status to 'Schedule Notified'.

 

Patch2.PNG

 

Patch3.PNG

 

On the client side, it starts downloading and then installing the patch.

 

downloading patches.PNG

downloading patches.PNG

Installing patches.PNG

 

Once the patch is installed, it usually requires a system reboot on the client machine.

 

system reboot request.PNG

 

In the EMS console -> Administrations -> Log Viewer, the vulnerability patch request which has been sent to the client is shown.

 

EMS console request patch.PNG

Contributors