Many best practices in security and regulations (PCI-DSS, NIST 800-53) demand or recommend renaming/deleting the default administrative accounts that come with the equipment. And every Fortinet product comes with the admin account built-in. Some people are afraid to lose administrative access by such changes, but with the Fortinet Fortigate it is not the case – you can rename or delete this account without any bad consequences whatsoever. Here is how to do it on CLI of the Fortigate.

Before diving in to the config, you may want to know few facts about the procedure:

  • You cannot rename/delete the admin user while logged in with it.

  • You have to create first another user privileged enough (super_admin) to make changes to admin. This way Fortigate prevents you from locking yourself out of the management.

  • Just…


Source link

Author: Yuri Slobodyanyuk

Article used for cyber security disclosure.