In all builds up to and including 6.2 then it is only used to identify Fortinet devices based on the registered Fortinet OUIs. If the device has FortiClient installed and the FortiGate has end-point control enabled then the device registers with the FortiGate and informs the FortiGate of its exact device type, OS and version. I assume that it is the latter that is the subject of the question and for that the following methods are used to determine the device type, OS and version :-įortiClient. If an interface has 'set device-detection enable' then a completely separate system is used to create a device indexed by MAC address and then attempt to determine what the device type, OS and version is. If a policy contains an application list or ips sensor then IPS will use signatures in order to discover the OS/type in order to decide whether to apply a particular rule. FortiOS has two independent device detection mechanisms :.
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |