Chapter 14 Managing Devices : Managing “bring your own device” : Security policies for devices : Creating device policies : Adding endpoint protection
  
Adding endpoint protection
Optionally, you can require that users’ devices have FortiClient Endpoint Security software installed. FortiOS pushes a FortiClient profile out to the FortiClient software, configuring network protection such as antivirus, application control, and web category filtering. Devices without an up-to-date installation of FortiClient software are restricted to a captive portal from which the user can download a FortiClient installer. For information about creating FortiClient profiles, see “Endpoint Protection”.
To add endpoint protection to a security policy
1. Go to Policy & Objects > Policy > IPv4 and edit the policy.
2. In Firewall / Network Options set Compliant with FortiClient Profile to ON.
The policy must have device types or gevice groups in the Source Device Type field.