| Description | This article describes how to trigger the Identity Management Integration to assign Classification Tags with FortiClient EMS. |
| Scope | FortiEDR 6.0+. |
| Solution |
FortiEDR integrates FortiClient Endpoint Management Server (EMS) as an Identity Management connector. It allows FortiClient EMS to assign Classification Tags (FortiEDR_Malicious, FortiEDR_PUP, FortiEDR_Suspicious, FortiEDR_Likely_Safe, and FortiEDR_Probably_Good) to a client machine upon the event detection with FCS Classification in FortiEDR.
To set up the Identity Management connector, visit the administration guide for more information: Identity Management integration
Prerequisites.
Before triggering the Identity Management Integration, check the following:
In this scenario, FortiEDR Central Manager v6.0, Collector v5.2, FortiClient/EMS 7.2 and FortiGate 7.4 are used.
The tag can then be used with a firewall policy to block network connectivity as desired. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.