FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
rbraha
Staff
Staff
Article Id 295638
Description This article describes how to assign hardware tokens to users in FortiAuthenticator Cloud (FortiTrust ID).
Scope FortiAuthenticator Cloud, FortiTrust ID.
Solution

FortiTrust Identity is an Identity and Access Management as a Service (IDaaS) cloud service offered by Fortinet. FortiAuthenticator Cloud and FortiToken Cloud are available as a bundled service in FortiTrust Identity.

 

FortiTrust includes the following features using FortiAuthenticator Cloud: Authentication, User Identification, Integration, and Multi-Factor Authentication.

In order to assign hardware tokens to remote or local users in the FortiAuthenticator cloud, it is necessary to have a valid license as well on FortiToken cloud.

 

Login on the FortiToken Cloud account and on the tokens, it is possible to select Hardware - Import Tokens. 

It is possible to import it by entering the FortiToken Hardware serial number, or with a list to be uploaded as a CSV file.

 

The model of the hardware token imported can be one of the following:

 

  • FTK200.
  • FTK220.
  • Other.

 

FTC01.png

 

In order to assign this Hardware token to users in FortiAuthenticator cloud (FortiTrust ID), login with the credentials in FortiAuthenticator Cloud, select User Management -> Local/Remote users -> Enable One-Time Password (OTP), and select FortiToken - Hardware.

 

FTC2.png

 

After this hardware token is assigned, it is possible to see it on FortiToken Cloud - Hardware.

 

FTC1.png

 

If it is desired to delete this token, first unassign from the user on FortiAuthenticator cloud (FortiTrust ID) and after that, it is possible to delete it from FortiToken Cloud.

 

Note: FortiAuthenticator Cloud currently is limited to only using FortiTokens from FortiToken Cloud, there is no possibility to add directly EFTM licenses or hardware tokens.