cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3949
Views
0
Helpful
1
Replies

Start Before Login with AnyConnect and Okta SAML authentication

jackfait1
Level 1
Level 1

We recently switched how we log into the Cisco AnyConnect Client. We used to use hard or soft tokens with RSA and radius profiles. Now we use Okta SAML authentication with LDAP for selecting the appropriate group policy.

 

My question:

With RSA, Start before Login would work but now with Okta I receive a message - The requested authentication type is not supported during Start Before Logon. Most likely because it needs the browser for SAML authentication.

 

Has anyone ran into this and what was the solution that was implemented? Keeping RSA wasn't an option because of licensing costs.

 

Thanks,

 

1 Reply 1

Hi @jackfait1 

This is not currently possible and an open enhancement request

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvm86891/?rfs=iqvred