<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multi-factor authentication for Captive Portal on FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086403#M1070246</link>
    <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Based on the fact that this solution here is already two years old, is there in the mean time a possibility that Firepower can do MFA to enhance security?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;</description>
    <pubDate>Fri, 15 May 2020 07:32:11 GMT</pubDate>
    <dc:creator>markus.albisser1</dc:creator>
    <dc:date>2020-05-15T07:32:11Z</dc:date>
    <item>
      <title>Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3314056#M926075</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Has anyone tried integrating Okta or any other two-factor authentication with captive portal on FTD. Couldn't find any configuration example on the same. Any help would be great.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Vaibhav&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:10:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3314056#M926075</guid>
      <dc:creator>vaibhav.parlekar1</dc:creator>
      <dc:date>2020-02-21T15:10:01Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3316016#M926076</link>
      <description>&lt;P&gt;Hello Vaibhav-&lt;/P&gt;
&lt;P&gt;This is currently not supported. I would suggest reaching out to your local Cisco team and ask them to create an enhancement request and provide you with the ID.&lt;/P&gt;
&lt;P&gt;Sorry to bring the bad news &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jan 2018 16:27:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3316016#M926076</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2018-01-22T16:27:17Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3791006#M926077</link>
      <description>&lt;P&gt;Just for anyone else that ends up here and using something other than OKTA. (RSA and Duo are supported as of 6.3)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;TABLE class="table frame-all table--pgwide-1" border="1" width="100%"&gt;
&lt;TBODY class="tbody"&gt;
&lt;TR class="row"&gt;
&lt;TD class="entry align-left colsep-1 rowsep-1"&gt;
&lt;P class="p"&gt;RA VPN: Two-Factor Authentication&lt;/P&gt;
&lt;/TD&gt;
&lt;TD class="entry align-left colsep-1 rowsep-1"&gt;
&lt;P class="p"&gt;&lt;SPAN class="ph"&gt;Firepower Threat Defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;now supports two-factor authentication for RA VPN users using the Cisco AnyConnect Secure Mobility Client. For the two-factor authentication process, we support:&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI class="li"&gt;
&lt;P class="p"&gt;First factor: any RADIUS or LDAP/AD server&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="li"&gt;
&lt;P class="p"&gt;Second factor: RSA tokens or DUO passcodes pushed to mobile&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="p"&gt;For more information on Duo multi-factor authentication (MFA) for FTD, see the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="xref" href="https://duo.com/docs/cisco-firepower" target="_blank"&gt;Cisco Firepower Threat Defense (FTD) VPN with AnyConnect&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;documentation on the Duo Security website.&lt;/P&gt;
&lt;P class="p"&gt;Supported platforms:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;FTD&lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Documentation:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/630/relnotes/firepower-release-notes-630/new_features.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/630/relnotes/firepower-release-notes-630/new_features.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Jan 2019 09:23:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/3791006#M926077</guid>
      <dc:creator>mludwig89</dc:creator>
      <dc:date>2019-01-30T09:23:17Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086403#M1070246</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Based on the fact that this solution here is already two years old, is there in the mean time a possibility that Firepower can do MFA to enhance security?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;</description>
      <pubDate>Fri, 15 May 2020 07:32:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086403#M1070246</guid>
      <dc:creator>markus.albisser1</dc:creator>
      <dc:date>2020-05-15T07:32:11Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086524#M1070252</link>
      <description>&lt;P&gt;&lt;A href="https://community.cisco.com/t5/user/viewprofilepage/user-id/198172" target="_self"&gt;&lt;SPAN class=""&gt;Markus.albisser&lt;/SPAN&gt;&lt;/A&gt;&lt;BR /&gt;MFA is supported as of code, 6.3 (RSA &amp;amp; DUO). The link to the documentation is in the above post.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 May 2020 12:02:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086524#M1070252</guid>
      <dc:creator>mludwig89</dc:creator>
      <dc:date>2020-05-15T12:02:46Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086664#M1070257</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;A href="https://community.cisco.com/t5/user/viewprofilepage/user-id/127586" target="_self"&gt;&lt;SPAN class=""&gt;mludwig89&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your feedback here. Do you also know if this applicable to the Captive Portal part of FP? What we want to do is to authenticate users with the Captive Portal and then to use their IP address and AD group membership for FP rules, for example grant access to a certain server. And we are looking that the user has not only to put his username/password into the Captive Portal, best would be also to be prompted to get an MFA request (Azure here is preferred).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;</description>
      <pubDate>Fri, 15 May 2020 14:53:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4086664#M1070257</guid>
      <dc:creator>markus.albisser1</dc:creator>
      <dc:date>2020-05-15T14:53:30Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4191574#M1076327</link>
      <description>&lt;P&gt;Hi Markus,&lt;BR /&gt;&lt;BR /&gt;have you found a solution to this problem?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Dec 2020 18:43:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4191574#M1076327</guid>
      <dc:creator>Hrvoje Samec</dc:creator>
      <dc:date>2020-12-01T18:43:53Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-factor authentication for Captive Portal on FTD</title>
      <link>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4191776#M1076335</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;Hrvoje &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Unfortunately not, FP actually does not support MFA on their internal Captive Portal. For the moment we cannot go into this direction. It is open on our side in which direction we go, either if MFA is an absolute need we have to evaluate another solution of course outside Cisco (ISE-PIC does not scale for us as well and the ISE is too big for this function). As this topic is on hold for the moment we will start the evaluate process once it comes up again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 04:51:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/multi-factor-authentication-for-captive-portal-on-ftd/m-p/4191776#M1076335</guid>
      <dc:creator>markus.albisser1</dc:creator>
      <dc:date>2020-12-02T04:51:46Z</dc:date>
    </item>
  </channel>
</rss>

