Description
This article describes the FortiToken code prompt even when 2FA is not enabled on user.
Scope
FortiAuthenticator.
Solution
In certain scenarios, Token code is prompted even when 2FA is not enabled on the user.
It can be through admin web UI login via FortiAuthenticator, or through RADIUS authentication.
When this option is enabled, the login flows for RADIUS authentication, SAML IdP, guest portals, and GUI login has to be all meet PCI DSS 3.2 standards regarding multi-factor authentication.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.