Description |
This article describes how to troubleshoot Read Only Remote user login configuration. |
Scope |
FortiWeb 7.0.0 and later. |
Solution |
In some cases, although a Read-Only Remote user account is created using TACACS authentication on FortiWeb, the user still receives Write access. Below is the configuration for the user account:
config user admin-usergrp set type remote-user
This scenario explains the configuration:
The key issue in this case is the 'wildcard' setting in the system admin configuration. It is important to ensure that 'wildcard' is disabled in the system admin settings. The command to disable the wildcard is as follows:
config system admin This issue occurs because the wildcard setting was enabled in the admin user configuration.
Wildcard Explanation: This is used together with the Remote User. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.