This article shows one of the possible solutions for a scenario where the hardware Token has a 'Pending' status in FortiGate -> User & Authentication -> FortiTokens and the error: 'Token server status : unreachable' appears under the command: 'diag fortitoken info' appears.
FortiGate.
Sample errors seen in FortiGate:
Turn on activation debugging by executing the commands below:
diagnose debug reset
diagnose debug console timestamp enable
diagnose debug application forticldd 255
diagnose debug enable
diagnose debug info
If the output below is visible, where 'Too many tasks in queue: 10', proceed with killing the forticldd process by executing the command below:
# fnsysctl killall forticldd
Run the 'diagnose fortitoken info' command and see if the Token server status is now reachable.
If it is reachable, proceed by selecting 'Refresh' -> User & Authentication -> FortiTokens. After a short time, the hard Token will now be in 'Available' status from 'Pending'.
Related article:
Technical Tip: FortiToken basic troubleshooting
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.