We recently switched how we log into the Cisco AnyConnect Client. We used to use hard or soft tokens with RSA and radius profiles. Now we use Okta SAML authentication with LDAP for selecting the appropriate group policy.
My question:
With RSA, Start before Login would work but now with Okta I receive a message - The requested authentication type is not supported during Start Before Logon. Most likely because it needs the browser for SAML authentication.
Has anyone ran into this and what was the solution that was implemented? Keeping RSA wasn't an option because of licensing costs.
Thanks,