Created on
09-20-2024
01:13 AM
Edited on
07-29-2025
10:15 PM
By
Anthony_E
| Description | This article describes how to configure FortiAuthenticator to use the REST API for two-factor authentication (2FA) during Windows logins through the FortiAuthenticator Windows Agent. |
| Scope | FortiAuthenticator. |
| Solution |
Step 1: Enable REST API access on the FortiAuthenticator interface.
Step 2: Create an API Key for REST API Authentication. Create an admin account with Full Permission (manual token will not work if assigned to another profile) and enable web service.
Step 3: Enable 2FA for the users and assign a FortiToken. Go to Remote-user -> Enable OTP Authentication -> Select FortiToken -> Mobile -> Select the token.
Step 4: Install the agent on the Windows device that requires 2FA and add FortiAuthenticator Windows Agent configuration.
Open the FortiAuthenticator Window agent -> Select Configure and then add the FortiAuthenticator IP or FQDN, Rest API username, and Rest API key copied before.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.