Description | This article describes how to configure a 'schedule' for a FortiGate user administrator. |
Scope | FortiGate v6.4, v7.0, v7.2, v7.4, v7.6. |
Solution |
Sometimes it is necessary to have a particular FortiGate administrator be active only during working hours. To implement this, the following configuration is used:
Configure a firewall schedule to recur:
config firewall schedule recurring
The configuration above is only an example for a schedule 9:00 AM to 16:00 PM all days of the week, but could be adjusted only Monday to Friday, and a different time frame.
Set the schedule action under the desired admin user account:
config system admin
The configured schedule will be based on the firewall's local time configured under 'config system global'.
config system global
Example log of log in failure caused by scheduler:
date=2025-04-28 time=12:26:40 eventtime=1745836000627131916 tz="+0200" logid="0100032002" type="event" subtype="system" level="alert" vd="root" logdesc="Admin login failed" sn="0" user="midnight" ui="https(12.1.2.1)" method="https" srcip=12.1.2.1 dstip=10.2.1.1 action="login" status="failed" reason="out_of_schedule" msg="Administrator midnight login failed from https(12.1.2.1) because of wrong time schedule"
Related article: Technical Tip: How to configure schedule policy with deny action |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.