cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
708
Views
0
Helpful
1
Replies

AnyConnect prompts for User/pass after 2FA

Hi All,

 

I'm configuring SMS Passcode on AnyConnect using ASA.

 

I'm challenged by the fact that after a successful secondary Auth via SMS, AnyConnect prompts for username and password again in a loop.

 

I've traced the RADIUS traffic, and the RADIUS server sends "Access-Accept" to the ASA, so I'm confident that it's not the RADIUS flows that's the issue.

 

Has anyone seen this behavior before?

 

/Michael 

1 Reply 1

The issue was with MSCAHPv2 on that specific ASA code, though it wasn't documented. We switched to PAP auth, and the flow worked.