Fortinet FortiGate Series Administration Manual page 281

Hide thumbs Also See for FortiGate Series:
Table of Contents

Advertisement

System Admin
FortiGate Version 4.0 MR1 Administration Guide
01-410-89802-20090903
http://docs.fortinet.com/
Feedback
Table 40: Admin profile control of access to Web-based manager pages
Access control
Admin Users
Antivirus Configuration
Auth Users
Firewall Configuration
FortiGuard Update
IM, P2P & VoIP Configuration
IPS Configuration
Log&Report
Maintenance
Network Configuration
Router Configuration
Spamfilter Configuration
System Configuration
VPN Configuration
Webfilter Configuration
Read-only access enables the administrator to view the web-based manager page. The
administrator needs write access to change the settings on the page.
You can expand the firewall configuration access control to enable more granular control
of access to the firewall functionality. You can control administrator access to policy,
address, service, schedule, profile, and other virtual IP (VIP) configurations.
Note: When Virtual Domain Configuration is enabled (see
administrators with the admin profile super_admin have access to global settings. Other
administrator accounts are assigned to one VDOM and cannot access global configuration
options or the configuration for any other VDOM.
For information about which settings are global, see
page
160.
The admin profile has a similar effect on administrator access to CLI commands. The
following table shows which command types are available in each Access Control
category. You can access "get" and "show" commands with Read Only access. Access to
"config" commands requires Read-Write access.
Affected web-based manager pages
System > Admin
System > Admin > Central Management
System > Admin > Settings
UTM > AntiVirus
User
Firewall
System > Maintenance > FortiGuard
IM, P2P & VoIP > Statistics
IM, P2P & VoIP > User > Current Users
IM, P2P & VoIP > User > User List
IM, P2P & VoIP > User > Config
UTM > Intrusion Protection
Log&Report
System > Maintenance
System > Network > Interface
System > Network > Zone
System > DHCP
Router
UTM > AntiSpam
System > Status, including Session info
System > Config
System > Hostname
System > Network > Options
System > Admin > Central Management
System > Admin > Settings
System > Status > System Time
VPN
UTM > Web Filter
"VDOM configuration settings" on
Admin profiles
"Settings" on page
286), only the
281

Advertisement

Table of Contents
loading

Table of Contents