Created on
12-02-2025
01:37 AM
Edited on
01-19-2026
10:31 PM
By
Jean-Philippe_P
| Description | This article describes the settings for a customized user role to enable the live monitoring feature. |
| Scope | FortiPAM v1.6.x, v1.7.x, v1.8.x. |
| Solution |
Live session monitoring in FortiPAM is evaluated at the role level.
When a user role is granted access to live session monitoring, the visibility applies globally across the system. This means that users with live monitoring permissions can view all active sessions, regardless of whether they have access to the underlying secrets associated with those sessions.
FortiPAM does not restrict live session visibility based on secret-level access, secret groups, or target-level entitlements. Live session monitoring is a security and auditing capability. Assign this permission only to administrative or security-focused roles.
To enable live monitoring for a customized user role, follow the steps below:
After configuring the above, re-login to FortiPAM with the user assigned to the user role. Verify that the user can perform live monitoring for any active user under Monitoring -> Active Sessions. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.