FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
pcavalcante
Staff
Staff
Article Id 253941
Description

This article describes the necessary procedures to recover device access with a backup made with a prof_admin account, restored to the device that lost the super_admin account.

Scope

FortiGate v.6.0 and above.

Solution

Select the top-right user icon and navigate to Configuration -> Backup to take a backup of the current configuration.

 

Open the configuration file in a text editor and search for the 'config system admin' section:

 

Pic1.png

 

Below this line, paste the following configuration:

 

# edit "admin"

set accprofile "super_admin"

set vdom "root"

next

 

The final file should look like this:

 

Pic2.png

 

Save the configuration file.

 

Next, factory reset the device with the following CLI command:

 

# exec factoryreset2

 

In this case, factoryreset2 is used to keep the interface and routing configurations.

When using this procedure in a FortiVM, it is necessary to also add 'keepvmlicense' to keep the license in the VM.

 

After the factory reset, the device will reboot. It will be possible to access it using the default admin credentials: the username is 'admin' and the password is blank.

 

Finally, restore the configuration backup modified in the earlier step.