EasyManuals Logo

Fortinet Version 4.0 MR1 User Manual

Fortinet Version 4.0 MR1
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #18 background imageLoading...
Page #18 background image
Creating a customized installer using FCRepackager Custom Installer Packages
FortiClient Endpoint Security Version 4.0 MR1 Administration Guide
12 04-40001-99556-20090626
http://docs.fortinet.com/Feedback
3 Set the value of DontRateIP to 1.
Blocking all connections that have no firewall rule
By default, if there is no firewall rule for a particular network connection, the FortiClient
application asks the user whether to allow the connection. For an enterprise deployment,
you might prefer to block all connections except those that have a specific firewall rule to
permit them.
To block all connections by default
1 Using regedit or regedt32, edit the following key:
HKEY_LOCAL_MACHINE\Software\Fortinet\FortiClient\FA_FCM\firewallbehavior
2 Set the key value to 0.
Changing the certificate key size
The default VPN certificate key size in FortiClient v4.0 is 2048 bits. You can change the
size.
To change the certificate key size
1 Using regedit or regedt32, edit the following key:
HKEY_LOCAL_MACHINE\Software\Fortinet\FortiClient\FA_CERT\key_size
2 Set the key value to one of: 1 (1024 bits), 15 (1536 bits), 2 (2048 bits), 3 (3072 bits) or
4 (4096 bits).
Creating the custom MSI installation file
With the sample application configured as you want for your users, you can create a
custom MSI installer file for your customized FortiClient application.
1 Determine the command line options you need for your customized FortiClient installer
from the following table.
Refer to the FCRepackager_Readme.txt file for more information about command line
options.
Table 1: FCRepackager options
Specify license key (for standard fixed license or
volume license from FDS, not for enterprise license)
-k <license_key>
Lock down program for FortiManager.
Specify the plain text password.
-L <lockdown_password>
Set random AV update time between specified hours.
The sample installation must contain an update
schedule.
-s <start_hour>-<end_hour>
Specify which features can be installed.
The resulting .msi file cannot be used for upgrades,
only for new installations.
If the -i option is not specified, all features are available
for installation.
-i <feature1>[,<feature2>] ...
Features are:
AV Antivirus
VPN Virtual Private Network
FW Firewall
WF Web filter
AS Antispam
AL AntiLeak
Note: feature names are case-sensitive.
Shrink the .msi file by removing files for unused
features. Valid only when used with -m option.
-z

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Fortinet Version 4.0 MR1 and is the answer not in the manual?

Fortinet Version 4.0 MR1 Specifications

General IconGeneral
BrandFortinet
ModelVersion 4.0 MR1
CategorySoftware
LanguageEnglish

Related product manuals