Admin

System

Name

The assigned name for the administrator.

Trusted Hosts

The IP address and netmask of acceptable locations for the

 

administrator to log in to the FortiAnalyzer unit.

 

If you want the administrator to be able to access the

 

FortiAnalyzer unit from any address, use the IP address and

 

netmask 0.0.0.0/0.0.0.0. To limit the administrator to only

 

access the FortiAnalyzer unit from a specific network or host,

 

enter that network’s IP and netmask.

Profile

The access profile assigned to the administrator.

Type

Type can be either local, as a configured administrator on the

 

FortiAnalyzer unit or RADIUS if you are using a RADIUS server on

 

your network.

Delete

Select to remove the administrator account. You cannot delete the

 

account named admin.

Edit

Select to modify the account information.

Change Password

Select to change the account password. For more information,

 

see “Changing an administrator’s password” on page 50.

Adding or editing an administrator account

You can add, edit or delete a FortiAnalyzer administrator account, except the default administrator admin administrator account.

When configuring the administrator’s information, you can add the @ symbol to the administrator’s name. For example, jb@headquarters. The @ symbol is also useful to those administrators who require RADIUS authentication.

To add or edit an administrator account

1Go to System > Admin > Administrators.

2Select Create New.

3Configure the following options and select OK.

Administrator

Enter the administrator name. You can now add the @ symbol, if

 

required.

Remote Auth

Select if you are using a RADIUS server group on your network.

Auth Group

Select which RADIUS server group to use when authenticating

 

this administrator account.

 

This option only appears if Remote Auth is enabled.

Password

Enter a password. For security reasons, a password should be a

 

mixture of letters and numbers and longer than six characters.

 

If a user attempts to log in and mis-types the password three

 

times, the user is locked out of the system from that IP address for

 

a short period of time.

 

This does not appear when editing the account.

Confirm Password

Re-enter the password to confirm its spelling.

 

This does not appear when editing the account.

Trusted Host

Enter the IP address and netmask of acceptable locations for the

 

administrator to log in to the FortiAnalyzer unit.

 

If you want the administrator to be able to access the

 

FortiAnalyzer unit from any address, use the IP address and

 

netmask 0.0.0.0/0.0.0.0. To limit the administrator to only

 

access the FortiAnalyzer unit from a specific network, enter that

 

network’s IP and netmask.

FortiAnalyzer Version 3.0 MR7 Administration Guide

48

05-30007-0082-20080908

Page 48
Image 48
Fortinet 3.0 MR7 manual Adding or editing an administrator account