Fortitoken Mobile: One-Time Password Application With Push Notification
Fortitoken Mobile: One-Time Password Application With Push Notification
FortiToken Mobile TM
Highlights
FTM
FortiToken Mobile Advantages
Provisioning Service
§§ Unique token provisioning service via
FortiGuard™ minimizes provisioning
overhead and ensures maximum
2a. Provisioning
Request seed security
1. Assign FTM
to user
3. Activation §§ Perpetual token license and unlimited
Customer IT Admin Request
device transfers eliminates annual
subscription fees
§§ Scalable solution leveraging existing
FortiAuthenticator 2b. Activation Email
(or FortiGate) or SMS end-user devices offers low entry cost
and TCO
§§ Reduces costs and complexity by using
your existing FortiGate as the two-factor
End User
authentication server
§§ Zero footprint solution
DATA SHEET | FortiTokenTM Mobile
HIGHLIGHTS
Leverage Existing Fortinet Platforms Privacy and Control
Besides offering out-of-the-box interoperability with any time- FortiToken Mobile cannot change settings on your phone, take
based OATH compliant authentication server, such as the pictures or video, record or transmit audio, nor can it read or send
FortiAuthenticator™ from Fortinet, the FortiToken can also be used emails. Further, it cannot see your browser history, and it requires
directly with the FortiGate consolidated security platform, including
®
your permission to send you notifications or to change any settings.
High Availability configurations. And, FortiToken Mobile cannot remotely wipe your phone. Any
visibility FortiToken Mobile requires is to verify your OS version
FortiGate has an integrated authentication server for validating
to determine app version compatibility. While FortiToken Mobile
the OTP as the second authentication factor for SSL VPN, IPsec
cannot change any settings without your permission, the following
VPN, Captive Portal and Administrative login, thereby eliminating
permissions are relevant to FortiToken Mobile operations:
the need for the external RADIUS server ordinarily required when
§§ Access to camera for scanning QR codes for easy token
implementing two-factor solutions.
activation;
§§ TouchID/FaceID: used for app security, respectively;
Ultra-Secure Token Provisioning
§§ Access to the Internet for communication to activate tokens and
What makes this mobile OTP application superior to others on
receive push notifications;
the market is that while being simple to use for the enduser, and
§§ “Send Feedback by Email”, to automatically populate the
easy to administer and provision for the system administrator, it is
“Sender” field;
actually more secure than the conventional hard token. The token
§§ Internally share files between applications to prepare an
seeds are generated dynamically, minimizing online exposure.
attachment to be sent by email for “Send Feedback by Email”;
Binding the token to the device is enforced and the seeds are
§§ FortiToken must keep the phone awake while it is upgrading the
always encrypted at rest and in motion.
internal database to avoid data corruption.
2
DATA SHEET | FortiTokenTM Mobile
Order Information
PRODUCT SKU DESCRIPTION
FortiToken Software License Key FTM-ELIC-5 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 5 users. Electronic license certificate.
FTM-ELIC-10 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 10 users. Electronic license certificate.
FTM-ELIC-20 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 20 users. Electronic license certificate.
FTM-ELIC-50 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 50 users. Electronic license certificate.
FTM-ELIC-100 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 100 users. Electronic license certificate.
FTM-ELIC-200 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 200 users. Electronic license certificate.
FTM-ELIC-500 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 500 users. Electronic license certificate.
FTM-ELIC-1000 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 1,000 users. Electronic license certificate.
FTM-ELIC-2000 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 2,000 users. Electronic license certificate.
FTM-ELIC-5000 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 5,000 users. Electronic license certificate.
FTM-ELIC-10000 Software one-time password tokens for iOS, Android and Windows Phone mobile devices. Perpetual licenses for 10,000 users. Electronic license certificate.
FTM Redemption Certificate containing one license code for the number of token instances ordered will be issued. Enter license code into FortiGate or FortiAuthenticator to retrieve the tokens. Requires FortiOS 5.0 and up or
FortiAuthenticator 1.4 and up.
www.fortinet.com
Copyright © 2019 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law
trademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results
may vary. Network variables, different network environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to
the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event,
only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests.
Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version
of the publication shall be applicable. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without
notice, and the most current version of the publication shall be applicable.
FST-PROD-DS-FTMR3 FTM-DAT-R11-201909