Hi all,
Looking to see if anyone has experience getting RadiusBridge/OpenOTP to work as an external Radius server with Cisco ACS 5.2?
We are looking to configure MFA using OTP token and test user defined on external OTP server.
On OpenOTP server side we have set up a client and test user and we see the ACS forward the authentication request, which is successful:
So far on ACS side we have defined:
1. OpenOTP server as external radius server.
2. OpenOTP server as Radius Identity server.
3. Added OpenOTP server to Identity Store sequence.
However, when testing connection from Cisco VPN client, the Authenticating User phase of the log in never completes, we are repeteadly asked to enter TOTP password. Any idea what could be happening? Do I need to set up additional authorization policy?
Appreciate any input.