config CLI commands

system accprofile

system accprofile

Use this command to add access profiles that control administrator access to FortiBridge features. Each administrator account must include an access profile. You can create access profiles that deny access to or allow read only, write only, or both read and write access to FortiBridge features.

Command syntax pattern

config system accprofile edit <profile-name_str>

set <keyword> <variable>

end

config system accprofile edit <profile-name_str>

unset <keyword>

end

config system accprofile delete <profile-name_str>

end

get system accprofile [<profile-name_str>]

show system accprofile [<profile-name_str>]

Keywords and variables

Description

Default

 

 

 

admingrp {none r rw w}

Control administrator access to FortiBridge administrator

none

 

accounts and access profiles.

 

 

none deny access.

 

 

r read only access.

 

 

rw read write access.

 

 

w write only access.

 

loggrp {none r rw w}

Control administrator access to log and alert email settings.

none

 

none deny access.

 

 

r read only access.

 

 

rw read write access.

 

 

w write only access.

 

sysgrp {none r rw w}

Control administrator access to system configuration settings.

none

 

none deny access.

 

 

r read only access.

 

 

rw read write access.

 

 

w write only access.

 

sysshutdowngrp {none r

Control administrator access to system shutdown, system,

none

rw w}

reboot, and firmware upgrade functions.

 

 

none deny access.

 

 

r read only access.

 

 

rw read write access.

 

 

w write only access.

 

FortiBridge Version 3.0 Administration Guide

57

09-30000-0163-20061109

Page 57
Image 57
Fortinet Version 3.0 manual System accprofile, Rw w