Chapter 10 Install and System Administration for FortiOS 5.0 : Basic Administration : Administrators : Security Precautions : Prevent multiple admin sessions
  
Prevent multiple admin sessions
Multiple admin sessions can occur when multiple users access the FortiGate using the same admin account. By default, the FortiGate unit enables multiple logins of administrators using the same login credentials from different locations. To control admin log ins, and minimize the potential of configuration collisions, you can disable concurrent admin sessions. When disabled, only one user can use the admin account at a time. When a second admin attempts to connect, connection is denied with a message that the login attempt failed.
To disable concurrent admin sessions, enter the following command in the CLI:
config system global
set admin-concurrent disable
end
On 2U FortiGate units, this option is also available in the Web-Based Manager by going to System > Admin > Settings and select Allow each admin to log in with multiple sessions.
See Also
Security Precautions
Passwords
 
Disable admin services
Disable the console interface
Disable interfaces
SSH login time out
Administrator lockout
Idle time-out
Administrative ports
Segregated administrative roles