cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2094
Views
0
Helpful
5
Replies

RSA 2-Factor authentication

jwillie3
Level 1
Level 1

In my environment there is a requirement to use RSA 2-factor authentication using a One-Time Password.

I don't seem to find an option for enabling or setting this up.

Am I missing something or is this feature not available?

-Thanks

5 Replies 5

kevwilso
Cisco Employee
Cisco Employee

Hi jwillie3,

Two-Factor authentication is not currently supported.  Can you explain your workflow though?

Thanks,

Kevin W.

Workflow?

If you are referring to the AAA flow its pretty basic.

We SSH to a device

AAA sends request to ISE

ISE is setup to pass credentials to RSA server

RSA server is expecting the User ID (Active directory) and OTP

RSA responds to ISE with an accept

ISE responds to device with access-accept

i also have this issue, is there a way to turn off the auto sign in functionality of cli analyzer?  I am happy to enter my creds once connected to the end device as I need to sign in with radius, then enter the 2 factor pin.

 

Thanks

Luke

Is there any intent or road map for CLI Analyzer to support 2 factor?

Matt Bowman
Level 1
Level 1

I am having this issue as well. I agree with Luke. An option to turn off the auto sign in functionality of cli analyzer would be helpful, and maybe a work around for the 2FA troubles.

 

-Matt