cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1534
Views
0
Helpful
1
Replies

Anyconnect two factor authentication

ruliffilur
Level 1
Level 1

As of today we in my organisation require two factor authentication for VPNs, right now we are using Cisco EasyVPN that has username + password + tunnel psk, in order to replace EasyVPN with Anyconnect we need to find a two factor authentication solution.

I wonder if the ASA can do this:

We use a reverse proxy that authenticates our users to reach several internal web sites with a two factor authentication, the basic function of it is as fallows, first it validates the username and password with an AD domain controller via ldap or radius it then pulls out a value from the user in the AD and then uses that to make another radius request to an identity server that present the user with a code on the webpage they have to enter from an id card that they have and then they are granted access if authentication is sucsessfull.

//Rulif

1 Reply 1

Jatin Katyal
Cisco Employee
Cisco Employee

What authentication server are you using for second authentication method, Is that RSA SECURE ID or SAFENET TOKEN SERVER?

Jatin Katyal


- Do rate helpful posts -

~Jatin