Hi guys, I'm new to FortiClient and EMS and I'm lost. In any security system I've seen in the past:
1) I could acknowledge alerts
1) I could delete or recover quarantine files
Now in my brand new EMS I've got this client with 5 AV alerts and I cannot clear them up. If I go on the client and open the local FortiClient console, I found 6 threats (not 5) and 1 quarantined file (no info on the other threats). Delete and restore buttons grayed out. And I logged on the machine as a local Administrator.
What does I have to do to recover that file? (it's a false positive, identified as PossibleThreat)
thanks
Bye, Dario
Hi dariopalermo,
I'm sorry not to be able to offer help, but I want to add a +1
as I am asking myself exactly the same questions.
We are evaluating EMS and Forticlient and have several Clients with false positives.
I have no idea how to manage this possible threads in EMS or on the client.
I can only hope it's a GUI-bug.
maybe someone can help?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.