User permissions
IAM users
FortiCloud Identity & Access Management (IAM) supports creating IAM users and allowing access to FortiZTP using the admin or read-only access role. The admin role allows the same permissions as a full admin email account user. The read-only role allows read-only access to all FortiZTP pages.
FortiZTP also supports specifying IAM user folder permissions. For example, if a local IAM user has been specified with permissions to a folder, FortiZTP only shows devices within that folder.
See Adding IAM users for details on configuring IAM users.
FortiCloud organizations
FortiZTP supports organizational unit (OU) account selection and switching. OU support is available to external customers with FortiCloud Premium license accounts. See Organization Portal for details on creating an OU.
To create an IAM user with OU scope, see User permissions.