(Optional) Creating an Administrator Role
This section describes how to create an administrator role using the web UI.
- Choose .
- Click Add.
- Set the administrator role parameters to the desired values.
If the operation is successful, a new administrator role is displayed in the Administrator Role List page.
Repeat the preceding steps to add another administrator role.
The administrator role referenced by an administrator cannot be deleted.
Table 1 lists administrator role parameters.
Table 1 Administrator role parametersParameter
|
Description
|
Name
|
Name of an administrator role.
The role name must be unique on a FW.
|
Description
|
Description of an administrator role.
|
Permission Control Modules
|
Permission for modules. Select one of the following options: - Read-write: Indicates the access and control permission on the selected content.
- Read-only: Indicates only the access permission on the selected content.
- None: Indicates no access or control permission on the selected content. This is the default permission.
NOTE: Only role system-admin has the Read-write permission on the SNMP, sandbox and hardware fast forwarding modules. Even through the Read-write permission on is specified for the role when the role is created, the administrator with the role does not have the Read-write permission on these modules.
Only role system-admin has the Read-write permission on the administrator, log configuration, system update, and profile management modules. Even through the Read-write permission on is specified for a role when the role is created, the administrator with the role does not have the Read-write permission on these modules.
Only role system-admin has the Read-write permission on the diagnosis center and 5-tuple packet capture modules. Even through the Read-write permission on is specified for the role when the role is created, the administrator with a role does not have the Read-write permission on these modules.
Only role system-admin has the Read-write permission on the IPv6 configuration and cloud management mode modules. Even through the Read-write permission on is specified for a role when the role is created, the administrator with the role does not have the Read-write permission on these modules.
Only role system-admin has the permission to clear logs or reports. Even though the Read-write permission on Dashboard is specified for a newly created role, the administrator with the role cannot have the permission to clear logs or reports.
- The value other in the system indicates the LACP module, ARP module, Keychain module, TWAMP module, IPv6 protocol stack, file system management module, and MPAC module.
|
- Click OK.