Permissions
The below table lists the default permissions for the predefined administrator profiles.
When Read-Write is selected, the user can view and make changes to the FortiAnalyzer system. When Read-Only is selected, the user can only view information. When None is selected, the user can neither view or make changes to the FortiAnalyzer system.
Setting |
Predefined Administrator Profile |
|||
---|---|---|---|---|
Super User |
Standard User |
Restricted User |
||
System Settings
|
Read-Write |
None |
None |
|
Administrative Domain
|
Read-Write |
Read-Write |
None |
|
Device Manager
|
Read-Write |
Read-Write |
Read-Only |
|
|
Add/Delete/Edit Devices/Groups
|
Read-Write |
Read-Write |
None |
Log View/FortiView
|
Read-Write |
Read-Write |
Read-Only |
|
FortiSOC
|
Read-Write |
Read-Write |
Read-Only |
|
Create & Update Incidents
|
Read-Write |
Read-Write |
None |
|
Triage Event
|
Read-Write |
Read-Write |
None |
|
Reports
|
Read-Write |
Read-Write |
Read-Only |
|
Run Report
|
Read-Write |
Read-Write |
None |
|
Fabric View
|
Read-Write |
Read-Write |
Read-Only |
|
CLI only settings |
||||
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
Read-Only |
|
|
Read-Write |
Read-Write |
None |
|
|
Read-Write |
Read-Write |
None |
|
|
Read-Write |
Read-Write |
None |
|
|
Read-Write |
Read-Write |
None |
For a description of each permission, see the FortiAnalyzer CLI Reference. |