Administrative accounts specify Administrative
Roles and authentication for Panorama administrators. The
service that you use to assign roles and perform authentication
determines whether you add the accounts on Panorama, on an external
server, or both (see Administrative
Authentication). For an external authentication service,
you must configure an authentication profile before adding an administrative
account (see Configure
Administrative Accounts and Authentication). If you already
configured the authentication profile or you will use the authentication mechanism
that is local to Panorama, perform the following steps to add an
administrative account on Panorama.
You can’t add an
administrator account to a Dedicated Log Collector (M-Series appliance
in Log Collector mode). Only the predefined administrator account
with the default username (admin) is available on Dedicated Log
Modify the number of supported administrator accounts.
Configure the total number of supported concurrent administrative
accounts sessions for Panorama in the normal operational mode or
in FIPS-CC mode. You can
allow up to four concurrent administrative account sessions or configure
Panorama to support an unlimited number of concurrent administrative
edit the Authentication Settings.
Max Session Count
specify the number of supported concurrent sessions (range is
allowed for all administrator and user accounts.
to configure the firewall
to support an unlimited number of administrative accounts.
FIPS-CC mode, the range is 1 to 4 with a default value of 4.
Max Session Time
minutes for an administrative account. Default is