Fortinet white logo
Fortinet white logo

Identity & Access Management (IAM)

24.4.0

Managing IAM users

Managing IAM users

Select an IAM user from the Users page to update a user's details or generate the password reset link.

The Users > IAM user page displays the following information:

Column

Description

Username The user's display name.

Full Name

The user's first and last name.

Email

The email address for the IAM user account.

Note

Updating the email address in the User Profile tab will also change the IAM user's email address in the Security Credentials > Contacts page. See Contacts.

Updated The date the user's information was updated.
Group The user group the user is assigned to.
Status The user's status (Active/Disabled).

Updating user details

To update the user name, ID, email, and status, go to the User Profile tab.

Note

If you change the email address used by the user, email Two-Factor Authentication tokens will be sent to the new email address. See Two-Factor Authentication for more information.

To update user details:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the IAM user Username.
  3. Click Edit.
  4. Edit the user's information, and click Update.
To activate a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the IAM user Username.
  3. Click Edit.
  4. From the Status dropdown, select Active.
  5. Click Update.

Updating user status

You can enable, disable, and delete an IAM user from the Users page.

Note

You can also update multiple user statuses at once from the Users page. See Bulk updating users.

To enable a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.

  2. Find the user your want to enable.

  3. Under Actions, click Enable. The Confirm to Enable User dialog is displayed.

  4. Click Yes, I want to continue.

To delete a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select a user from the list, and click Delete. The Delete User(s) dialog opens.
  3. Click Confirm.
To disable user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select a user in the list.
  3. Click Disable. The Permission Changed Confirmation dialog opens..
  4. Click Confirm.

Updating a user in a user group

You can add or remove a user from a group.

To add a user to a user group:
  1. Select Users from the left-hand navigation menu. The Users page opens.

  2. Select the user's Username. The Users > IAM user page is displayed.

  3. Click User Permissions.

  4. Click Edit.

  5. In Basic Info, select Yes to add a user to a user group.

  6. Select the user group from dropdown list.

  7. Click Update.

Resetting an IAM user password

You can generate a reset IAM user password link and enable Two-Factor Authentication.

Note

You cannot regenerate a password if the user has enabled Two-Factor Authentication at the account level.

To generate a password:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the user's Username. The Users > IAM user page is displayed.
  3. Click Security Credentials.
  4. (Optional) Click Two Factor Authentication.
  5. Click Generate Password. The password is generated.
  6. Click Copy Reset Link. The link is copied to your clipboard.
  7. Share the password reset link with the IAM user.

Managing IAM users

Managing IAM users

Select an IAM user from the Users page to update a user's details or generate the password reset link.

The Users > IAM user page displays the following information:

Column

Description

Username The user's display name.

Full Name

The user's first and last name.

Email

The email address for the IAM user account.

Note

Updating the email address in the User Profile tab will also change the IAM user's email address in the Security Credentials > Contacts page. See Contacts.

Updated The date the user's information was updated.
Group The user group the user is assigned to.
Status The user's status (Active/Disabled).

Updating user details

To update the user name, ID, email, and status, go to the User Profile tab.

Note

If you change the email address used by the user, email Two-Factor Authentication tokens will be sent to the new email address. See Two-Factor Authentication for more information.

To update user details:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the IAM user Username.
  3. Click Edit.
  4. Edit the user's information, and click Update.
To activate a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the IAM user Username.
  3. Click Edit.
  4. From the Status dropdown, select Active.
  5. Click Update.

Updating user status

You can enable, disable, and delete an IAM user from the Users page.

Note

You can also update multiple user statuses at once from the Users page. See Bulk updating users.

To enable a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.

  2. Find the user your want to enable.

  3. Under Actions, click Enable. The Confirm to Enable User dialog is displayed.

  4. Click Yes, I want to continue.

To delete a user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select a user from the list, and click Delete. The Delete User(s) dialog opens.
  3. Click Confirm.
To disable user:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select a user in the list.
  3. Click Disable. The Permission Changed Confirmation dialog opens..
  4. Click Confirm.

Updating a user in a user group

You can add or remove a user from a group.

To add a user to a user group:
  1. Select Users from the left-hand navigation menu. The Users page opens.

  2. Select the user's Username. The Users > IAM user page is displayed.

  3. Click User Permissions.

  4. Click Edit.

  5. In Basic Info, select Yes to add a user to a user group.

  6. Select the user group from dropdown list.

  7. Click Update.

Resetting an IAM user password

You can generate a reset IAM user password link and enable Two-Factor Authentication.

Note

You cannot regenerate a password if the user has enabled Two-Factor Authentication at the account level.

To generate a password:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Select the user's Username. The Users > IAM user page is displayed.
  3. Click Security Credentials.
  4. (Optional) Click Two Factor Authentication.
  5. Click Generate Password. The password is generated.
  6. Click Copy Reset Link. The link is copied to your clipboard.
  7. Share the password reset link with the IAM user.