Fortinet 50A user manual Adding new administrator accounts, Editing administrator accounts, 124

Models: 50A

1 272
Download 272 pages 24.69 Kb
Page 124
Image 124

Adding and editing administrator accounts

System configuration

 

 

admin

Has all permissions. Can view, add, edit, and delete administrator accounts.

 

Can view and change the FortiGate configuration. The admin user is the only

 

user who can go to the System Status page and manually update firmware,

 

update the antivirus definitions, update the attack definitions, download or

 

upload system settings, restore the FortiGate unit to factory defaults, restart

 

the FortiGate unit, and shut down the FortiGate unit. There is only one admin

 

user.

Read & Write Can view and change the FortiGate configuration. Can view but cannot add, edit, or delete administrator accounts. Can change own administrator account password. Cannot make changes to system settings from the System Status page.

Read Only Can view the FortiGate configuration.

Adding new administrator accounts

From the admin account, use the following procedure to add new administrator accounts and control their permission levels.

To add an administrator account

1Go to System > Config > Admin.

2Select New to add an administrator account.

3Type a login name for the administrator account.

The login name can contain numbers (0-9), uppercase and lowercase letters (A-Z, a-z), and the special characters - and _. Other special characters and spaces are not allowed.

4Type and confirm a password for the administrator account.

For improved security, the password should be at least 6 characters long. The password can contain any characters except spaces.

5Optionally type a Trusted Host IP address and netmask for the location from which the administrator can log into the web-based manager.

If you want the administrator to be able to access the FortiGate unit from any address, set the trusted host to 0.0.0.0 and the netmask to 0.0.0.0.

To limit the administrator to only access the FortiGate unit from a specific network, set the trusted host to the address of the network and set the netmask to the netmask for the network. For example, to limit an administrator to accessing the FortiGate unit from your internal network, set the trusted host to the address of your internal network (for example, 192.168.1.0) and set the netmask to 255.255.255.0.

6Set the Permission level for the administrator.

7Select OK to add the administrator account.

Editing administrator accounts

The admin account user can change individual administrator account passwords, configure the IP addresses from which administrators can access the web-based manager, and change the administrator permission levels.

Administrator account users with Read & Write access can change their own administrator passwords.

124

Fortinet Inc.

Page 124
Image 124
Fortinet 50A user manual Adding new administrator accounts, Editing administrator accounts, 124