hi there,
I need to assign user with authorize:
- change their password
- access IPsec monitor, and able to bring-up and bring down connection, but restrict to modify its settings
this user can't access other menus besides above.
can I do that?
we are using:
fortigate 60D with firmware 6.0 something.
looking for your help, guys.
thanks in advance
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi,
you can try to make admin with very limited access profile.
You can also have end users on LDAP so no need to access FGT to change their password.
And VPN would be better to be set with auto negotiate so whenever there will be data to destination behind it the VPN will be brought up by FGT automatically and when data stops to flow it will be down again. Automatic withotu necessity to have user manually interfering with it.
Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff
hi Tomas,
thanks for share. sorry late reply.
I tried to search limited admin, but not found. can I get more guidance?
about VPN, yes it's been set to auto negotiate, but somehow I need to manually interfering it. maybe there is "timeout" for several times. not sure.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1731 | |
1105 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.