FortiPAM
FortiPAM allows you to protect, isolate and secure privileged account credentials, manage and control privileged user access, and monitor and record privileged account activity.
mturic
Staff & Editor
Staff & Editor
Article Id 322836
Description

This article clarifies the prerequisites for using the FortiClient PAM module for some common scenarios.

 

When using native launchers to connect to target remote servers via FortiPAM and through locally installed clients (rdp.exe, putty, vnc, etc.) on the source workstation, the source workstation needs to have a route to the secret's destination IP.

 

When connecting remotely to the environment, a VPN connection might be necessary as in the following example: 

Capture.JPG

Scope FortiClient v7.2.x, FortiPAM v1.x.
Solution

Fortinet offers free standalone FortiClient versions with limited features, such as FortiClient VPN and FortiClient Privileged Access Management for use with FortiPAM.

 

When one free standalone version of FortiClient is installed and another version is to be installed, FortiClient will consider this as an upgrade, as only a single FortiClient installation is possible on a workstation. 

As such, multiple versions of the free Standalone FortiClient with different features cannot coexist on a single workstation.

 

To use both VPN and FortiPAM features on the FortiClient, purchase and use the FortiClient EMS version, tied to an EMS server. 

 

Additional documentation on the FortiClient EMS can be found on the following links:

FortiClient datasheet

EMS Administration Guide