hi
We use RADIUS to authenticate SSH users on our network infrastructure. We are thinking about using 2FA to tighten things up and are looking at Duo.
We have installed Duo Radius proxy and configured the clients to authenticate with the proxy and then the proxy to use the RADIUS server and put our Duo . However when a client logs on, the proxy is passing the credentials to the radius and logging user in without 2FA from DUO
Radius server is = Freeradius
Duo config :-
[radius_client]
host=x.x.x.183
secret=XYZ
;[ad_client]
;host=
;service_account_username=
;service_account_password=
;search_dn=
[radius_server_auto]
ikey=XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
■■■■
api_host=XXXXXXXX.duosecurity.com
radius_ip_1=X.X.X.188
radius_secret_1=yyy
failmode=safe
client=radius_client
port=1812