I was struggling with the same issue, we have AppLocker blocking this as
well. There is a solution, you can allow a file hash rule in your
AppLocker's Script Rules. Grab the CMD file that FortiClient will run on
connect, import the file hash of that ...