Every person or system that manages the firewall should have its own administrator account with the least privilege needed. Shared accounts make it impossible to tell who changed what, and over-privileged accounts turn one stolen password into a full compromise. Accounts are created under Device > Administrators, and each account has an authentication method and an administrative role. The role decides what the account can see and change in the web interface, the command-line interface (CLI) and the APIs.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.