- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-29-2018 12:35 AM
Hi all,
we have some 160 firewalls connected to a single panorama.
One of our suppliers get read only accounts on the firewalls. The accounts including the password and profiles were created on panorama and then pushed as device settings to the firewalls.
The supplier can change the local firewall password and login with a new password.
However, if we push new device settings, the initial password is set again and the changed password is lost.
Can we do anything to prevent this behaivior?
Best regards
Hendrik
08-29-2018 04:36 AM
your supplier will need to convey the new password to you so you can manage it centrally from panorama and push it out to all the firewalls that hold his username
08-29-2018 04:36 AM
your supplier will need to convey the new password to you so you can manage it centrally from panorama and push it out to all the firewalls that hold his username
08-29-2018 04:47 AM
Hi,
thanks for the information.
KR
Hendrik
08-29-2018 04:51 AM
if you grant them access to panorama they can change it themselves, but I take this is not how you'd like this set up?
you could make them a profile that only shows the firewalls they should be able to see, elimnminating the need for them to connect to individual machines and seperate policies on each allowing said access, efectively raising your security as they will only get access to a centralized infrastructure
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!