FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
hbac
Staff
Staff
Article Id 232153
Description

This article describes the situation when hard tokens are showing an error status and how to fix it. 

Scope FortiGate, Hard token.
Solution

hbac_0-1670018589882.png

 

In the CLI, it gives the following error:


FortiGate # diag fortitoken info
FORTITOKEN DRIFT STATUS
FTK200BAA0000000 0 token already activated, and seed won't be returned
FTK200BAA0000001 0 token already activated, and seed won't be returned

Total activated token: 21
Total global activated token: 21

Token server status: reachable

 

- Those Tokens need to be reset on the server side (Need to open a support ticket for that).

- After resetting the tokens on the server side, run the following command to re-activate them. It might take a few minutes to update.

 

FortiGate # exec fortitoken activate  FTK200BAA0000000
FortiGate # exec fortitoken activate  FTK200BAA0000001

Contributors