Description This article describes how to Uninstall FortiEndpoint
Component, i.e, FortiClient and FortiEDR, from the Endpoint to free up
licenses. Scope Applies to Cloud FortiEndPoint deployments. Solution
Create a Workgroup on FortiClient EMS, which...
Description This article describes how to exclude Veeam backup and
replication processes from FortiEDR security monitoring. Scope Applies
to both On-prem and cloud FortiEDR deployments. Solution Login to
FortiEDR Manager -> Security Settings -> Exclu...
Description This article describes how to scope an exception before
adding it. Scope Applies to both On-prem and Cloud FortiEDR deployments.
Solution Consider a scenario where a process is blocked by Execution
Prevention module with no socket connect...
Description This article describes the process to successfully detect
Brute Force attempts in the protected environment and block lateral
movement. Scope Applies to both On prem and cloud FortiEDR environments.
Solution Detecting a Brute-Force Attack...
Description This article describes how to add an exclusion for FortiSIEM
processes on FortiEDR. Scope Applies to both on-premises and cloud
FortiEDR environments. Solution According to the FortiSIEM Windows Agent
Installation Guide: if antivirus soft...
Hello, I would start with reviewing communication control events to
isolate if any communication to teams is being blocked by EDR due to
known vulnerability in a specific version or reputation could be a
problem. You can do so by following below step...
Hello Trevor, - Take the un-encrypted backup of the config file from FAZ
(System Settings -> Dashboard -> System Configuration -> Backup) -
Rename the config file and change the format from .dat to .gzip2-
Decompress it and again rename and change th...