FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
salmas
Staff
Staff
Article Id 329610
Description This article describes how to see PKI users under a read-only admin profile.
Scope FortiOS  v7.x.x.
Solution

PKI users can only be made visible after creating a PKI user from the CLI.

See Technical Tip: How to enable PKI feature on GUI and create new PKI users from GUI on FortiGate for instructions.

 

When any read-only admin logs into FortiGate, PKI users will not show up at all.

To see PKI users under a read-only profile, enable read/write permission to 'User & Device' under the read-only admin profile.

 

salmas_0-1722445559418.png

 

Remember that now this admin can also edit these PKI users. There is no customization option for the User & Device attribute which prevents read-only admins from editing PKI users.

Contributors