Feature comparison chart
Identity & Access Management introduces an enhanced user model for improved security, scalability, and management.
The following table compares the features in the legacy Sub User Model with the IAM User Model.
Feature |
Sub User Model |
IAM User Model |
---|---|---|
Account Access Management | Add sub users to the account | Add IAM users to the account |
Permission Control |
Account level (Full Access/Limited Access) |
Fine grained permissions for each FortiCloud Service |
Asset Permissions | List of devices/Asset Groups (limited) | Asset folders or OUs with permissions hierarchy |
User Groups & Permissions | User group (limited) | User groups and group-level permissions |
Portal Access | No per portal control | Allow or Deny access per portal |
API User Support | No | Granular permissions for each FortiCloud Service APIs |
User 2FA Management | No | Enforce (or exempt) 2FA for IAM users |