User's Manual

User Management
671
SonicOS Enhanced 4.0 Administrator Guide
Configuring Additional Administrator User Profiles
To configure additional administrator user profiles, perform the following steps:
Step 1 While logged in as admin, navigate to the Users > Local Users page.
Step 2 Click the Add User button.
Step 3 Enter a Name and Password for the user.
Step 4 Click on the Group Membership tab.
Step 5 Select the appropriate group to give the user Administrator privileges:
Limited Administrators - The user has limited administrator configuration privileges.
SonicWALL Administrators - The user has full administrator configuration privileges.
SonicWALL Read-Only Admins - The user can view the entire management interface, but
cannot make any changes to the configuration.
Step 6 Click the right arrow button and click OK.
Step 7 To configure the multiple administrator feature such that administrators are logged out when
they are preempted, navigate to the System > Administration page.
Step 8 Select the Log out radio button for the On preemption by another administrator option and
click Apply.
Configuring Administrators Locally when Using LDAP or RADIUS
When using RADIUS or LDAP authentication, if you want to ensure that some or all
administrative users will always be able to manage the appliance, even if the RADIUS or LDAP
server becomes unreachable, then you can use the RADIUS + Local Users or LDAP + Local
Users option and configure the accounts for those particular users locally.
For users authenticated by RADIUS or LDAP, create user groups named SonicWALL
Administrators and/or SonicWALL Read-Only Admins on the RADIUS or LDAP server (or
its back-end) and assign the relevant users to those groups. Note that in the case of RADIUS
you will probably need special configuration of the RADIUS server to return the user group
information – see the SonicWALL RADIUS documentation for details.