Created on
10-08-2014
08:54 AM
Edited on
10-23-2024
02:13 AM
By
Jean-Philippe_P
Description
FortiGate is shipped with two free FortiTokens Mobile per unit with unique serial numbers. This works very similar to the bought licenses with the EFTMxxx numbers, it will have a real activation code.
Scope
Solution
If there is an activation code, then on GUI, create a new Hard Token or Mobile Token:
Locate the 20-digit code on the redemption certificate for the license: EFTMXXXXXXXX.
The same steps can be followed on FortiAuthenticator 'Importing Trial Tokens' or adding a license file for FortiToken Mobile or Hardware token.
Go to Authentication -> User Management -> FortiTokens -> Create New, select FortiToken Mobile, enable Get FortiToken Mobile free trial tokens or use the Activation code 0000-0000-0000-0000-0000.
Importing trial tokens in FortiAuthenticator
In order to import trial tokens on FortiAuthenticator it is necessary to have internet reachability to connect with FortiGuard servers.
From CLI on FortiGate:
execute fortitoken-mobile import 0000-0000-0000-0000-0000
From CLI:
config system email-server
set server "notification.fortinet.net"
set port 465
set security smtps
end
Enable authentication, if it is required by the server to send email messages.
If a security mode is selected, make sure the TLS tunnel can come up by importing the custom mail servers CA to the FortiGates CA store.
Configure an SMS server for sending SMS messages to support user authentication.
config system sms-server
edit <name>
set mail-server {string}
next
end
On the End user side (Mobile):
Troubleshooting notes:
If the token selection is empty on the user profile:
Solution :
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.