Creating an auto provision rule
To create an auto provision rule:
- Go to User Management > Auto Provision Rules.
- In the auto provision rules list, select Create.
The New Auto-provision Rule window opens.
- Enter the following information:
Name
The name of the auto provision rule.
Status
Enable/disable the auto provision rule (default = enable).
From Remote Group
From the dropdown, select the remote user group from where to auto provision users.
To create a new remote group:
- Select +.
The Create New User Group window opens.
- Follow the steps in Creating a remote user group, starting step 4 to create a new remote user group.
Use the search bar to look up a remote user group.
As Role
From the dropdown, select a role (access profile) that is assigned to the user on successful login.
To create a new user role:
- Select +.
The New User Role window opens.
- Follow the steps in To create a role in Role, to create a new user role.
Use the search bar to look up a user role.
Description
Optionally, enter a description about the auto provision rule.
Restricted Access
Login Schedule
Enable, and from the dropdown, select a login schedule.
This is the schedule when auto provisioned users are allowed to log in.
Note: The option is disabled by default.
Use the search bar to look up a schedule.
See Schedule.
Trust Host IPv4
Enable, and from the dropdown, select trusted IPv4 addresses users use to connect to FortiPAM.
Note: The option is disabled by default.
Use + button to add a new IPv4 address and x to delete an added IPv4 address.
- Select +.
- Click Submit.