Fortinet white logo
Fortinet white logo

Administration Guide

Creating an auto provision rule

Creating an auto provision rule

To create an auto provision rule:
  1. Go to User Management > Auto Provision Rules.
  2. In the auto provision rules list, select Create.

    The New Auto-provision Rule window opens.

  3. Enter the following information:

    Name

    The name of the auto provision rule.

    Status

    Enable/disable the auto provision rule (default = enable).

    From Remote Group

    From the dropdown, select the remote user group from where to auto provision users.

    To create a new remote group:
    1. Select +.

      The Create New User Group window opens.

    2. Follow the steps in Creating a remote user group, starting step 4 to create a new remote user group.

      Use the search bar to look up a remote user group.

    As Role

    From the dropdown, select a role (access profile) that is assigned to the user on successful login.

    To create a new user role:
    1. Select +.

      The New User Role window opens.

    2. Follow the steps in To create a role in Role, to create a new user role.

      Use the search bar to look up a user role.

    Description

    Optionally, enter a description about the auto provision rule.

    Restricted Access

    Login Schedule

    Enable, and from the dropdown, select a login schedule.

    This is the schedule when auto provisioned users are allowed to log in.

    Note: The option is disabled by default.

    Use the search bar to look up a schedule.

    See Schedule.

    Trust Host IPv4

    Enable, and from the dropdown, select trusted IPv4 addresses users use to connect to FortiPAM.

    Note: The option is disabled by default.

    Use + button to add a new IPv4 address and x to delete an added IPv4 address.

  4. Click Submit.

Creating an auto provision rule

Creating an auto provision rule

To create an auto provision rule:
  1. Go to User Management > Auto Provision Rules.
  2. In the auto provision rules list, select Create.

    The New Auto-provision Rule window opens.

  3. Enter the following information:

    Name

    The name of the auto provision rule.

    Status

    Enable/disable the auto provision rule (default = enable).

    From Remote Group

    From the dropdown, select the remote user group from where to auto provision users.

    To create a new remote group:
    1. Select +.

      The Create New User Group window opens.

    2. Follow the steps in Creating a remote user group, starting step 4 to create a new remote user group.

      Use the search bar to look up a remote user group.

    As Role

    From the dropdown, select a role (access profile) that is assigned to the user on successful login.

    To create a new user role:
    1. Select +.

      The New User Role window opens.

    2. Follow the steps in To create a role in Role, to create a new user role.

      Use the search bar to look up a user role.

    Description

    Optionally, enter a description about the auto provision rule.

    Restricted Access

    Login Schedule

    Enable, and from the dropdown, select a login schedule.

    This is the schedule when auto provisioned users are allowed to log in.

    Note: The option is disabled by default.

    Use the search bar to look up a schedule.

    See Schedule.

    Trust Host IPv4

    Enable, and from the dropdown, select trusted IPv4 addresses users use to connect to FortiPAM.

    Note: The option is disabled by default.

    Use + button to add a new IPv4 address and x to delete an added IPv4 address.

  4. Click Submit.