<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ASA AnyConnect MFA options in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278635#M1090888</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1083493"&gt;@LovejitSingh1313&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There many many MFA solutions, such as Cisco DUO &lt;A href="https://duo.com/" target="_self"&gt;https://duo.com&lt;/A&gt; or OCTA &lt;A href="https://www.okta.com/products/adaptive-multi-factor-authentication/" target="_self"&gt;https://www.okta.com/products/adaptive-multi-factor-authentication/&lt;/A&gt;.&lt;/P&gt;</description>
    <pubDate>Mon, 25 Jan 2021 07:48:27 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2021-01-25T07:48:27Z</dc:date>
    <item>
      <title>Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278556#M1090887</link>
      <description>&lt;P&gt;Hello Experts&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326229"&gt;@Richard Burts&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt;&amp;nbsp; &amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/319690"&gt;@Marius Gunnerud&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp; &amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/325924"&gt;@Giuseppe Larosa&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/284594"&gt;@Aref Alsouqi&lt;/a&gt;&amp;nbsp; &amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/292493"&gt;@Mohammed al Baqari&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am looking for options for 2nd factor authentication on Cisco ASA Any Connect VPN Connectivity?&amp;nbsp; Please also what kind of additional license or packages need.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I never implemented anything else than Domain authentication for it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 02:52:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278556#M1090887</guid>
      <dc:creator>LovejitSingh1313</dc:creator>
      <dc:date>2021-01-25T02:52:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278635#M1090888</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1083493"&gt;@LovejitSingh1313&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There many many MFA solutions, such as Cisco DUO &lt;A href="https://duo.com/" target="_self"&gt;https://duo.com&lt;/A&gt; or OCTA &lt;A href="https://www.okta.com/products/adaptive-multi-factor-authentication/" target="_self"&gt;https://www.okta.com/products/adaptive-multi-factor-authentication/&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 07:48:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278635#M1090888</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-01-25T07:48:27Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278665#M1090889</link>
      <description>&lt;P&gt;In general, all of the MFA products (Duo, Okta, Microsoft etc.) are separate from the ASA and require their own licensing and administration. Each works well with an ASA (or FTD) remote access VPN; but it is generally recommended to take into account other systems in use or planned in your organization when choosing an MFA solution.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 08:34:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278665#M1090889</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-01-25T08:34:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278763#M1090890</link>
      <description>&lt;P&gt;You can have Duo is good, i also have good experience SAFEnet / or any MFA is good now a days. it is just addintional security for the layer of security.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 11:05:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4278763#M1090890</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-01-25T11:05:58Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4279156#M1090891</link>
      <description>&lt;P&gt;There's many possibilities to solutions you can implement.&amp;nbsp;&lt;/P&gt;&lt;P&gt;You mention you know about domain integrations. If you're a user of Azure AD you can do O365 MFA with ASA along with SAML 2.0 - this will make your user management and MFA controllable from Office365 Administration.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Other solutions would be things like SMSPasscode which can fetch details by LDAP or Radius directly, and get 2FA by Call or SMS - newest version support app I believe as well.&lt;/P&gt;&lt;P&gt;Otherwise Cisco Duo MFA would be excellent, but comes with license requirements of course.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 18:09:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4279156#M1090891</guid>
      <dc:creator>AViftrup</dc:creator>
      <dc:date>2021-01-25T18:09:16Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630839#M1090892</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/557458"&gt;@AViftrup&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I had profile setup with Azure MFA and it is working flawless but Anyconnect only prompt for credentials and go through MFA first time and then keep connecting automatic.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want that it should atleast reprompt for credentials once a week.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jun 2022 15:00:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630839#M1090892</guid>
      <dc:creator>LovejitSingh130013</dc:creator>
      <dc:date>2022-06-13T15:00:50Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630856#M1090893</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1162274"&gt;@LovejitSingh130013&lt;/a&gt; define the VPN timeout -&lt;STRONG&gt;vpn-session-timeout&amp;nbsp;&lt;/STRONG&gt;so the session ends after x minutes and the user is forced to re-authenticate.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jun 2022 15:15:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630856#M1090893</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-06-13T15:15:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA AnyConnect MFA options</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630936#M1090902</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;On ASA/FTD no additional licenss needed for MFA. There are many options to&lt;BR /&gt;proceed. Personally I prefer SAML SSO for AAD clients (don't go for MS&lt;BR /&gt;onprem MFA as it's EOL). Otherwise, DUO is the 2nd way to go.&lt;BR /&gt;&lt;BR /&gt;**** please remember to rate useful posts&lt;BR /&gt;</description>
      <pubDate>Mon, 13 Jun 2022 17:23:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-anyconnect-mfa-options/m-p/4630936#M1090902</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2022-06-13T17:23:19Z</dc:date>
    </item>
  </channel>
</rss>

