Chapter 5 Compliance : Configuring FortiGate units for PCI DSS compliance : Controlling access to the CDE network : Administrator timeout requirement
  
Administrator timeout requirement
PCI DSS requires:
If a session has been idle for more than 15 minutes, require the user to re-enter the password to reactivate the terminal. (8.1.8)
By default, the idle timeout is five minutes. You can go to System > Admin > Settings and change the Idle Timeout timeout to any value up to the permitted value of 15 minutes.