Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
admin-restrict-local on fortigate
Greetings,
I enabled admin-restrict-local on FortiGate and tested it which is working as expected. now I need a way to keep it enabled which only accessable when TACACS is down but in the same time allow specific sources to access local admin account even if TACACS is up. is this possible?
I don`t want to use trusted hosts becasue I am using local-in-policy instead.
Labels:
- Labels:
-
FortiGate
3 REPLIES 3
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello,
admin-restrict-local can be enabled under "config system global" so you can play with the admin account.
- Happy to help, hit like and accept the solution -
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Additionally this article might help as well:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-configure-TACACS-authentication-and...
BR
- Happy to help, hit like and accept the solution -
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi ndumaj,
Thanks for your reply, I have these document but it is not a solution in my scenario.
