Dear All,
my Goal is: All FortiClients managed by the EMS should receive new policies or receive Client updates at any time. Therefore i have the following questions: 1) Regarding the setting on the EMS Server: "Listen on IP" under -> EMS Settings -> Shared Settings -> Listen on IP. Do you enter the public IP here which e.g. the FortiClients use to reach the EMS server? Or is an internal IP entered here? I would have assumed that it is best to enter a FQDN which points from the outside to the public IP (which is forwarded via NAT to the EMS). And optionally you can resolve the IP in the internal DNS to the internal EMS server IP. Am i right? How do you configure the settings here?
2) What do I have to do to be able to distribute a new FortiClient version to the clients over the Internet at any time? I guess you use "Manage Deployment" for this. Is there a guide that explains the configurations in detail? Because in my tests sometimes the package is deployed, sometimes not even though the client is shown as managed. It seems somehow unreliable / unstable but I think I have not yet found the correct configuration.
Can you help me?
Best Regards
Chromda
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
1.here should be internal ip (you can fut FQDN in FQDN and custom hostname field)
2. could you please create support ticket with TAC as there might be many factors causing your issue ?
Pavol
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.