Fortinet 3.0 MR7 Network Card User Manual


 
FortiAnalyzer Version 3.0 MR7 Administration Guide
48 05-30007-0082-20080908
Admin System
Adding or editing an administrator account
You can add, edit or delete a FortiAnalyzer administrator account, except the
default administrator admin administrator account.
When configuring the administrator’s information, you can add the @ symbol to
the administrator’s name. For example, jb@headquarters. The @ symbol is also
useful to those administrators who require RADIUS authentication.
To add or edit an administrator account
1 Go to System > Admin > Administrators.
2 Select Create New.
3 Configure the following options and select OK.
Name The assigned name for the administrator.
Trusted Hosts The IP address and netmask of acceptable locations for the
administrator to log in to the FortiAnalyzer unit.
If you want the administrator to be able to access the
FortiAnalyzer unit from any address, use the IP address and
netmask 0.0.0.0/0.0.0.0. To limit the administrator to only
access the FortiAnalyzer unit from a specific network or host,
enter that network’s IP and netmask.
Profile The access profile assigned to the administrator.
Type Type can be either local, as a configured administrator on the
FortiAnalyzer unit or RADIUS if you are using a RADIUS server on
your network.
Delete Select to remove the administrator account. You cannot delete the
account named admin.
Edit Select to modify the account information.
Change Password Select to change the account password. For more information,
see “Changing an administrator’s password” on page 50.
Administrator Enter the administrator name. You can now add the @ symbol, if
required.
Remote Auth Select if you are using a RADIUS server group on your network.
Auth Group Select which RADIUS server group to use when authenticating
this administrator account.
This option only appears if Remote Auth is enabled.
Password Enter a password. For security reasons, a password should be a
mixture of letters and numbers and longer than six characters.
If a user attempts to log in and mis-types the password three
times, the user is locked out of the system from that IP address for
a short period of time.
This does not appear when editing the account.
Confirm Password Re-enter the password to confirm its spelling.
This does not appear when editing the account.
Trusted Host Enter the IP address and netmask of acceptable locations for the
administrator to log in to the FortiAnalyzer unit.
If you want the administrator to be able to access the
FortiAnalyzer unit from any address, use the IP address and
netmask 0.0.0.0/0.0.0.0. To limit the administrator to only
access the FortiAnalyzer unit from a specific network, enter that
network’s IP and netmask.