Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Lukino
New Contributor

Read_Only permission - plus diagnose commands

Hi guys,

I've one customer that needs read-only access to the fortigate, 

all works fine when I set up the "Administrator Profile" with read-only permission.

now my customer want to launch the "diagnose sniffer packet" command on the CLI, 

but is not possible with such permissions

is there a way to give him these kind of commands, without give him too many read-write permissions?

 

thanks so much 

1 REPLY 1
ede_pfau
SuperUser
SuperUser

I thnik permissions are not so detailed as to be able to allow single command verbs within 'diag'. RO users do not have access to the 'diag' command branch.

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors