Feature comparison chart
Identity & Access Management introduces an enhanced user model for improved security, scalability, and management.
The following table compares the features in the legacy Sub User Model with the IAM User Model.
|
Feature |
Sub User Model |
IAM User Model |
|---|---|---|
| Account Access Management | Add sub users to the account | Add IAM users to the account |
|
Permission Control |
Account level (Full Access/Limited Access) |
Fine grained permissions for each FortiCloud Service |
| Asset Permissions | List of devices/Asset Groups (limited) | Asset folders or OUs with permissions hierarchy |
| User Groups & Permissions | User group (limited) | User groups and group-level permissions |
| Portal Access | No per portal control | Allow or Deny access per portal |
| API User Support | No | Granular permissions for each FortiCloud Service APIs |
| User 2FA Management | No | Enforce (or exempt) 2FA for IAM users |