Skip to main content

Hi Community

Have a question does anyone manage fortigate devices using a svc functional account domain account .

If so how was it done as TACACS is not supported as confirmed by Howard

 

Hello ​@RidwaanK

 Password Safe manages local Fortinet accounts using the command “config user local” over an ssh connection. 

 

Regards,

John


@RidwaanK Forget the account as a TACACS existence, think as a Domain Account, Beyondtrust changes the password on the Active Directory and you configure on the tacacs side the permission that account will have on the server, but that is it.

BeyondTrust does not work in a pure tacacs account, but if you are just using tacacs as a middleware to authenticate your domain users on Unix servers, then you just need to change the password on the source and configure the admin permissions as you would normally using tacacs on the target server.


Reply