Privacy Masking
Use Privacy Masking to help protect user privacy by masking user information. You can select which fields to mask. Masked fields show anonymous data. You can unmask and see the original data by entering the Data Mask Key that you specify in the administrator profile.
When Privacy Masking is enabled in an administrator profile, accounts using that profile have a See Original Data button in the banner.
To turn privacy masking on:
-
In System Settings > Admin Profiles, create or edit a profile.
-
Toggle Privacy Masking to ON.
-
In the Masked Data Fields section, select the fields you want to mask.
The fields you select are masked in all modules that display those fields, including reports generated by the administrator.
If fields that must be masked are not available to select, they can be manually added using the CLI. For more information, see the FortiAnalyzer CLI Reference.
-
In the Data Mask Key field, type the key that will allow users to unmask the data.
-
In the Data Unmasked Time field, type the number of days the data is initially unmasked.
You can enter a number between 0-365. Logs that are older than the number of days appear masked.
To see the original, unmasked data:
-
In any list showing masked data, click See Original Data in the banner and select Screen Picker or Manual Input.
-
If you select Screen Picker, click a masked field in the current pane.
The Unmask Protected Data dialog displays with the field you clicked already entered.
If you select Manual Input, enter the Masked Text.
-
Enter the Data Mask Key that was configured in the Admin Profile and click OK.
The original data appears in the Unmasked Text field.