Hi guys,
I've one customer that needs read-only access to the fortigate,
all works fine when I set up the "Administrator Profile" with read-only permission.
now my customer want to launch the "diagnose sniffer packet" command on the CLI,
but is not possible with such permissions
is there a way to give him these kind of commands, without give him too many read-write permissions?
thanks so much
I thnik permissions are not so detailed as to be able to allow single command verbs within 'diag'. RO users do not have access to the 'diag' command branch.
User | Count |
---|---|
1897 | |
1141 | |
769 | |
447 | |
277 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.