Using the Web-based Manager : Configuring Web-based Manager settings : Other security considerations
 
Other security considerations
Other security consideration for restricting access to the FortiManager Web-based Manager include the following:
Configure administrator accounts using a complex passphrase for Local accounts,
Configure administrator accounts using RADIUS, LDAP, or TACACS+,
Configure the admin profile to allow read-write access as required and restrict access using read-only or no access to settings which are not applicable to the administrator,
Configure the administrator account to allow access to specific ADOMs as required,
Configure the administrator account to allow access to specific policy packages as required.