Fortinet black logo

Identity & Access Management (IAM)

Adding IAM users

24.1.0
Copy Link
Copy Doc ID cb035e9b-aa60-11ee-8673-fa163e15d75b:5478
Download PDF

Adding IAM users

Use the Add New wizard to configure IAM users and generate their login credentials. To save time, you can apply a permission profile or assign the user to a group.

To add a new IAM user, you must:

  1. Create the new user account. See Creating a new IAM user.

  2. Generate the password reset link and share it with the selected IAM user. See Generating the password reset link.

Creating a new IAM user

You can create a new IAM user with the Add New wizard.

To create an IAM user with the wizard:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Click Add New > IAM User. The User Details pane opens.
  3. (Optional) Click Apply same permissions as existing User, and then select a user from the dropdown. You can configure the permissions later.
  4. Enter the user's details and click Next.

    UsernameType the username with no spaces.
    Full Name Type the user's first and last name.
    EmailType the user's email address.
    Phone Select the country code from the dropdown, and type the user's phone number.
    Description (Optional)Type a description of the user.

  5. (Optional) Add the user to an IAM user group. See User groups.

    1. Select Yes from Basic Info.

      A dropdown list of user groups is displayed.

    2. Select a user group from the dropdown.

    3. Click Next, and proceed to Step 10.

  6. Select the user type from Choose A Type dropdown list.

  7. From the Permission Scope dropdown, select an asset folder or Organizational Unit.
    Note

    Permission Scope hierarchy and options depend on the type you select in the previous step.

  8. In the Permissions Profile dropdown, select a profile.

    The Permission Details assigned to the selected profile are displayed.

    Note

    If the SysAdmin profile is selected, a message will display instead of portal cards to denote that the user has full access to all portals.

  9. Click Next. The Confirmation page is displayed.
  10. Review the user information, and click Confirm. The user's details are displayed.

Account credentials must be shared with the user. The account password can be configured using Generate Password. See Generating the password reset link to configure the account password and share user credentials.

Generating the password reset link

You can choose to generate the password reset link and share it with the selected IAM user.

To generate the password reset link:
  1. On the Successful User Registration page, click Generate Password. The Login with the Generated Link dialog opens.

  2. Click Generate Password. A reset link is generated.

  3. Click Copy Reset Link. The reset link is copied to your clipboard and you can now share it with the IAM user.

  4. For the IAM user to reset their password, paste the reset link into your browser. The Reset Password page opens and account credentials are displayed.

  5. Enter the password in the New Password and Confirm New Password fields.

  6. Click Submit. A confirmation message displays.

Note

The Generate Password link can also be accessed on Security Credentials tab of the Users > IAM user page. See Resetting a password.

Send the credentials to the user. New IAM users are required to perform a validation check the first time they log in to a portal. See Validating new IAM users.

Adding IAM users

Use the Add New wizard to configure IAM users and generate their login credentials. To save time, you can apply a permission profile or assign the user to a group.

To add a new IAM user, you must:

  1. Create the new user account. See Creating a new IAM user.

  2. Generate the password reset link and share it with the selected IAM user. See Generating the password reset link.

Creating a new IAM user

You can create a new IAM user with the Add New wizard.

To create an IAM user with the wizard:
  1. Select Users from the left-hand navigation menu. The Users page opens.
  2. Click Add New > IAM User. The User Details pane opens.
  3. (Optional) Click Apply same permissions as existing User, and then select a user from the dropdown. You can configure the permissions later.
  4. Enter the user's details and click Next.

    UsernameType the username with no spaces.
    Full Name Type the user's first and last name.
    EmailType the user's email address.
    Phone Select the country code from the dropdown, and type the user's phone number.
    Description (Optional)Type a description of the user.

  5. (Optional) Add the user to an IAM user group. See User groups.

    1. Select Yes from Basic Info.

      A dropdown list of user groups is displayed.

    2. Select a user group from the dropdown.

    3. Click Next, and proceed to Step 10.

  6. Select the user type from Choose A Type dropdown list.

  7. From the Permission Scope dropdown, select an asset folder or Organizational Unit.
    Note

    Permission Scope hierarchy and options depend on the type you select in the previous step.

  8. In the Permissions Profile dropdown, select a profile.

    The Permission Details assigned to the selected profile are displayed.

    Note

    If the SysAdmin profile is selected, a message will display instead of portal cards to denote that the user has full access to all portals.

  9. Click Next. The Confirmation page is displayed.
  10. Review the user information, and click Confirm. The user's details are displayed.

Account credentials must be shared with the user. The account password can be configured using Generate Password. See Generating the password reset link to configure the account password and share user credentials.

Generating the password reset link

You can choose to generate the password reset link and share it with the selected IAM user.

To generate the password reset link:
  1. On the Successful User Registration page, click Generate Password. The Login with the Generated Link dialog opens.

  2. Click Generate Password. A reset link is generated.

  3. Click Copy Reset Link. The reset link is copied to your clipboard and you can now share it with the IAM user.

  4. For the IAM user to reset their password, paste the reset link into your browser. The Reset Password page opens and account credentials are displayed.

  5. Enter the password in the New Password and Confirm New Password fields.

  6. Click Submit. A confirmation message displays.

Note

The Generate Password link can also be accessed on Security Credentials tab of the Users > IAM user page. See Resetting a password.

Send the credentials to the user. New IAM users are required to perform a validation check the first time they log in to a portal. See Validating new IAM users.