cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
60
Views
0
Helpful
1
Replies

Cisco Secure Client and Entra ID - remember the username

Chess Norris
Level 4
Level 4

Hello,

When using RA VPN with Entra ID SSO, is it possible to configure Entra ID to remember the username when the user re-connects?

Every time a user want to connect, he is forced to enter his username/password and we want the username to be remembered like before when we were using Secure Client without Entra ID.

I read a similar thread with secure client and Meraki MX and in that case you needed to create a support ticket with Meraki support and have them disable force re-authentication in the back-end. 

How can we achive the same result with FTD managed by FMC?

There is a setting in Entra ID called " Request Idp re-authentication on Logon" This is enabled by default. If I dissable that, will it let us bypass authentication?

Thanks

/Chess

 

 

 

1 Reply 1

Ben Weber
Level 1
Level 1

Hey @Chess Norris 

You are correct - disabling 'Request IdP re-authentication on Logon' will allow the SSO session to persist in Secure Client, meaning that users won't have to login if they have already authenticated to Entra. 

The only caveat to that is users will still be forced to redo their AuthN when the SSO session expires, but at least users won't have to enter their credentials each time they want to connect to the VPN/ZTA.

Hope that helps.

- BW
Please rate posts if they have been helpful.