Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Greetings all.
We currently have a sub-account for our EPCS-mandated users at our organization. Our setup is two different domains that have users that will need MFA for EPCS activation. The second domain users AD security group contains the users th...
All,
Greetings. Curious to know if anyone is experiencing issues after logging into their respective admin portals for managing their Duo instances? This morning I have been logged out of our admin portal whilst navigating through it almost immediate...
All,
Greetings. Wondering if the following scenario is possible, and if not, what would be the recommended course of action to take:
Currently, we have our Office 365 and another third-party application protected via Duo. As such, any logins to eithe...
Greetings all. We have deployed the Duo Access Gateway (DAG) in our organization to fulfil the role of providing access for our users as a Self-Service Portal to manage their devices. One of the issues we’ve run into is attempting to craft a policy t...
@Amy - Happy to help out, and wouldn’t be able to present it here without our CSE’s assistance.
@wujieleo - One thing to note on the scheduled task, you may wish to modify it to the following settings utilizing a domain account with administrative pe...
FCalderone,
That sounds like you need to configure under “Firewall - Network Tab - GlobalProtect - Portals - GlobalProtect Portal Configuration - Agent” a specific client config that is tied to your LDAP security group for your domain users who are t...
Leo,
Here is a step-by-step set of instructions I’ve crafted with the assistance of our Duo Customer Solutions Engineer. It is for the Microsoft Windows environment, and is targeted towards sending logs to a Qradar SIEM, but with the necessary change...
Leo,
We are in the process of implementing the Duo Log Sync in conjunction with our Qradar SIEM. Once configured, you should be able to have your SIEM of choice send out alerts based upon your criteria for your environment.
The instructions look to b...
But would you want an unenrolled user enrolling from a location outside of your trusted network(s)?
We deny unenrolled users from enrolling should they attempt anywhere but our trusted networks. The only way they can access protected assets remotely ...