Skip to main content
Staff
June 12, 2026

Technical Tip: Resolving a license/contract number to its registered FortiGate

  • June 12, 2026
  • 0 replies
  • 92 views

Description

This article describes how to determine which license or contract number is registered to a FortiGate serial number (for example, FCLDPS0000020465), when only the license/contract string is known. It also explains why certain entitlements are not bound to a single device serial.

Scope

FortiGate.

Solution

Note on license prefixes - the prefix indicates the entitlement type and whether a single-serial binding should be expected:

  • FC / FCxx: FortiCare hardware/support contract - bound to one device serial.

  • FCLD: FortiCloud service entitlement (e.g. FortiCloud logging/management) - frequently account- or pool-level; may not map to one serial.

  • FAZ / FMG: FortiAnalyzer / FortiManager subscriptions - bound to the management appliance, not the FortiGate.

  • FG-VM / point licenses: VM and capacity licenses - bound to a VM serial once registered.


A FCLD entitlement may legitimately appear as unassigned, assigned to a license pool, or attached to a FortiCloud account rather than to a single FortiGate. A one-to-one device mapping should not be assumed for this prefix.

Method 1 - FortiCloud Asset Management portal (authoritative):

  1. Sign in at Welcome to Fortinet Support with the FortiCare account that contains the entitlement.

  2. Go to Asset Management -> Manage/View Products (labelled Products or Asset Management depending on portal version).

  3. Search by the license/contract number. If the portal does not accept the contract string directly:

  • List the registered FortiGate serials, then expand each device to view its entitlements. The contract appears under the device it is registered to, alongside other contracts (FortiCare, FortiGuard, FortiCloud).

  1. If the entitlement is not under any device, check FortiCloud services and any license pool / flex view - FCLD items are frequently found there rather than under a serial.

 

Method 2 - From the FortiGate (confirm on a suspected unit):


In the GUI:

  • System -> FortiGuard - shows active licenses/contracts and expiry on that FortiGate.

 

In the CLI:

Run the following command:

get system fortiguard
diagnose test update info
execute update-now


Method 3 - Customer Service (when the portal is inconclusive).

If the entitlement appears in no device and no pool, contact Customer Service via Welcome to Fortinet Support.