FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Kush_Patel
Staff
Staff
Article Id 247548
Description This article describes how to fix an issue where other administrator accounts cannot be listed upon logging in to an administrator account with read-only privileges. This fix will allow the user to verify if FortiGate has any administrator accounts that can be used to make changes to the configuration.
Scope FortiGate v6.4, v7.0, v7.2, v7.4, v7.6
Solution

In v6.4, v7.0, and v7.2, when logged into an administrator account with read-only privileges, other admin accounts with a different administrator profile assigned are not listed:

 

Kush_Patel_0-1677597182174.png

 

Go to ‘Admin Profiles’ under System to verify how many administrator accounts FortiGate has configured.

 

Kush_Patel_1-1677597200822.png

 

Select 'Reference' to see them as follows:

 

Kush_Patel_2-1677597215780.png

 

Log in to FortiGate using an ‘admin’ profile that has the ‘super_admin’ profile assigned to it:

 

Kush_Patel_3-1677597232138.png

 

It will now be possible to see all of the administrator profiles configured in FortiGate.

 

Note:

This kind of behavior is also applicable to a 'prof_admin' administrator profile.

In v7.4 and v7.6, it will not be possible to view any accprofile or account details that have a higher privilege than the current login profile.