![Fortinet FortiGate Voice 4.0 MR1 Administration Manual Download Page 36](http://html1.mh-extra.com/html/fortinet/fortigate-voice-4-0-mr1/fortigate-voice-4-0-mr1_administration-manual_2322091036.webp)
Configuring FortiGuard Services
Endpoint Network Access Control
FortiClient Endpoint Security Version 4.0 MR1 Administration Guide
30
04-40001-99556-20090626
http://docs.fortinet.com/
•
Feedback
Optionally, you can configure software detection to monitor whether endpoints have
specific applications installed. For more information, see the Endpoint control chapter of
the
FortiGate Administration Guide
.
Configuring FortiGuard Services
The FortiGuard Distribution Network (FDN) and FortiGuard Services. The FDN provides
updates to antivirus definitions, IPS definitions, and the Antispam rule set. FortiGuard
Services include FortiGuard web filtering and the FortiGuard Analysis and Management
Service. You must be connected to the FortiGuard subscription service in order to receive
the services.
You can see if your FortiGate unit is connected to FortiGuard Services by going to
Endpoint NAC > Config
and seeing a check mark next to
FortiGuard Availability
.
Figure 3: FortiGuard Availability
Go to
System > Maintenance > FortiGuard
to configure your FortiGate unit to use the
FortiGuard Distribution Network and FortiGuard Services.
Setting the FortiClient version
By default, FortiClient software is provided by FortiGuard Services and the latest version
is the required version. In your FortiGate unit’s web-based manager, go to
Endpoint NAC
> Config
to view the current settings as well as the latest available versions of FortiClient
software and antivirus signatures. There is a warning if FortiGuard service is not available.
If the version of FortiClient running on the endpoint does not meet the required version or
does not have up to date antivirus, firewall, and database, the non-compliant computer will
be blocked with the following exceptions:
• The user can download the required version of FortiClient.
• The user can update the antivirus definition files.
If the user attempts to access any web page, they will receive a message stating that they
can update or install FortiClient or update the antivirus definitions.
To set the required FortiClient version and the download location
1
In your FortiGate unit’s web-based manager, go to
Endpoint NAC > Config
and select
the FortiClient
tab.
Note:
You cannot enable
Endpoint Compliance Check
in firewall policies if the
Redirect
HTTP Challenge to a Secure Channel (HTTPS)
option is enabled in
User > Options >
Authentication
.