Permissions
The below table lists the default permissions for the predefined administrator profiles.
When Read-Write is selected, the user can view and make changes to the FortiAnalyzer system. When Read-Only is selected, the user can only view information. When None is selected, the user can neither view or make changes to the FortiAnalyzer system.
|
Setting |
Predefined Administrator Profile |
|||
|---|---|---|---|---|
|
Super User |
Standard User |
Restricted User |
||
|
System Settings
|
Read-Write |
None |
None |
|
|
Administrative Domain
|
Read-Write |
Read-Write |
None |
|
|
Device Manager
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Add/Delete/Edit Devices/Groups
|
Read-Write |
Read-Write |
None |
|
Log View/FortiView
|
Read-Write |
Read-Write |
Read-Only |
|
|
FortiSOC
|
Read-Write |
Read-Write |
Read-Only |
|
|
Create & Update Incidents
|
Read-Write |
Read-Write |
None |
|
|
Triage Event
|
Read-Write |
Read-Write |
None |
|
|
Reports
|
Read-Write |
Read-Write |
Read-Only |
|
|
Run Report
|
Read-Write |
Read-Write |
None |
|
|
Fabric View
|
Read-Write |
Read-Write |
Read-Only |
|
|
CLI only settings |
||||
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
|
Read-Write |
Read-Write |
None |
|
|
|
Read-Write |
Read-Write |
None |
|
|
|
Read-Write |
Read-Write |
None |
|
|
|
Read-Write |
Read-Write |
None |
|
|
|
For a description of each permission, see the FortiAnalyzer CLI Reference. |