12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Using virtual domains<br />

Configuring VDOMs and global settings<br />

A regular administrator assigned to a VDOM can log in to the web-based manager<br />

or the CLI only on interfaces that belong to that VDOM. The super admin can<br />

connect to the web-based manager or CLI through any interface on the <strong>FortiGate</strong><br />

unit that permits management access. Only the super admin or a regular<br />

administrator of the root domain can log in by connecting to the console interface.<br />

To assign an administrator to a VDOM<br />

1 Log in as the super admin.<br />

Virtual domains must be enabled.<br />

2 Go to System > Admin >Administrators.<br />

3 Create and/or configure the new administrator account as required.<br />

For detailed information about configuring an administrator account, see<br />

“Configuring an administrator account” on page 166.<br />

4 While configuring this admin account, select the VDOM this administrator<br />

manages from the Virtual Domain list.<br />

5 Select Apply.<br />

Changing the Management VDOM<br />

The management VDOM on your <strong>FortiGate</strong> unit is where some default types of traffic<br />

originate. These types of traffic include:<br />

• SNMP<br />

• logging<br />

• alert email<br />

• FDN-based updates<br />

• NTP-based time setting<br />

Before you change the management VDOM, ensure virtual domains are enabled.<br />

Only one VDOM can be the management VDOM at any given time. If you<br />

accidently select more than one VDOM when setting the management VDOM, the<br />

VDOM closest to the top of the list will be<strong>com</strong>e the management VDOM.<br />

Note: You cannot change the management VDOM if any administrators are using RADIUS<br />

authentication.<br />

To change the management VDOM<br />

1 Go to System > VDOM.<br />

2 Select the VDOM that will be the new management VDOM.<br />

3 Select Management to apply the changes.<br />

Management traffic will now originate from the new management VDOM.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 77

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!