<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE - OKTA as external radius server in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4127113#M561966</link>
    <description>&lt;P&gt;I was able to get this working setting up Okta as a RADIUS Token Server on ISE. Not sure why RADIUS proxy doesn't work, must be the Okta side.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 29 Jul 2020 06:56:05 GMT</pubDate>
    <dc:creator>Madura Malwatte</dc:creator>
    <dc:date>2020-07-29T06:56:05Z</dc:date>
    <item>
      <title>ISE - OKTA as external radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4126711#M561955</link>
      <description>&lt;P&gt;Need some help to shed some light on the below errors.&lt;/P&gt;&lt;P&gt;I have Okta for MFA set up as an external radius server on ISE (i think here lies my problem, as other users on here have mentioned configuring Okta as radius token instead). I'll try radius token, but for now Okta is currently set up as an external radius server on ISE and I get an access reject back from Okta with the following error seen in the ISE radius live logs: "Authentication failed for user user@company.com, reason --- Access-Request failed, error: Request failed at step=DURING_MFA_POLL_LOOP. Time-out".. Anyone know what this&amp;nbsp;MFA_POLL_LOOP timeout is?&lt;/P&gt;&lt;P&gt;In other instances I see this error in the live logs: "5405 RADIUS Request dropped -&amp;nbsp;11353 No more external RADIUS servers; can't perform failover"&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2020 15:19:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4126711#M561955</guid>
      <dc:creator>Madura Malwatte</dc:creator>
      <dc:date>2020-07-28T15:19:05Z</dc:date>
    </item>
    <item>
      <title>Re: ISE - OKTA as external radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4127113#M561966</link>
      <description>&lt;P&gt;I was able to get this working setting up Okta as a RADIUS Token Server on ISE. Not sure why RADIUS proxy doesn't work, must be the Okta side.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jul 2020 06:56:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4127113#M561966</guid>
      <dc:creator>Madura Malwatte</dc:creator>
      <dc:date>2020-07-29T06:56:05Z</dc:date>
    </item>
    <item>
      <title>Re: ISE - OKTA as external radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4498752#M570900</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;Madura Malwatte,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I am trying to Add OKTA to ISE 3.0 as Radius Token server&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I want to use OKTA for authentication on Device Admin and use AD for Authorization&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Can you please me with some reference document or share some Steps/Screenshots ???&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 05 Nov 2021 19:43:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4498752#M570900</guid>
      <dc:creator>Mustafa9046</dc:creator>
      <dc:date>2021-11-05T19:43:16Z</dc:date>
    </item>
    <item>
      <title>Re: ISE - OKTA as external radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4499607#M570937</link>
      <description>&lt;P&gt;Please follow one of the existing guides, that also use RADIUS token servers.&lt;/P&gt;
&lt;P&gt;For example, &lt;A href="https://community.cisco.com/t5/security-documents/how-to-deploy-ise-device-admin-with-duo-mfa/ta-p/3821231" target="_self"&gt;How to Deploy ISE Device Admin with Duo MFA&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Nov 2021 16:40:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-okta-as-external-radius-server/m-p/4499607#M570937</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2021-11-08T16:40:46Z</dc:date>
    </item>
  </channel>
</rss>

