Fortinet FortiGate-5000 User Guide

Page of 402
FortiGate-5000 series Administration Guide Version 2.80 MR8
FortiGate-5000 series Administration Guide
01-28008-0013-20050204
 119
System Admin
When the FortiGate unit is first installed, it is configured with a single administrator 
account with the user name admin. From this administrator account, you can add and 
edit administrator accounts. You can also control the access level of each of these 
administrator accounts and control the IP address from which the administrator 
account can connect to the FortiGate unit.
Each administrator account belongs to an access profile. The access profile separates 
FortiGate features into access control categories for which you can enable read 
and/or write access. The following table lists the web-based manager pages that each 
access control category controls:
Read access enables the administrator to view the web-based manager page. The 
administrator needs write access to change the settings on the page.
The access profile has a similar effect on administrator access to CLI commands. The 
following table shows which commands are available in each access control category 
with read and write permission. If the get command is listed, the show command is 
also available.
Table 22: Access profile control of access to Web-based manager pages
Access control
Affected web-based manager pages
System Configuration
System > Status
System > Network
System > DHCP
System > Config
System > Maintenance > Backup
System > Maintenance > Support
Log & Report
Log & Report > Log Config 
Log & Report > Log Access
Security Policy
Router 
Firewall
VPN
IPS
Anti-Virus
Web Filter
Auth Users
User
Admin Users
System > Admin
FortiProtect Update
System > Maintenance > Update Center
System Shutdown
System > Maintenance > Shutdown