I have a decent understanding of how the Attribute Transformations feature works in SSO, but I would LOVE to see more real world examples in the document. Single Sign-On for Generic SAML Service Providers | Duo Security
Hi,
I see the FBI warning the hackers are stealing session cookies and can use them to by pass creds and MFA when logging into a site. These cookies are usually the Remember this device or remember me session cookies.
I wanted to know if Duo can be...
I'm looking to download the latest PCI-DSS AoC and Roles and Responsibilities Matrix for CISCO DUO but can't find it. Can anyone point me to the location or let me know how to request it.Regards,robert.hutchison@audienceview.com
All of my Admins receive this when using DUO EAM with sign in frequency enabled. If we use Microsoft MFA it does not appear. Is anyone else enforcing a sign in frequency with their DUO EAM configuration? We can press "sign in again" and it will load ...
Hi,In my test lap I would like to authenticate a checkpoint vpn user via duo mfa, but it seems duo auth proxy send the request to ldap server with the user attribute of sAMAccountName, even though uid is configured as user attribute. Here is my confi...
Hello!Sorry if this is a silly question, but I'm a little bit confused about how Duo works. I was looking into integrating Duo with AWS Cognito, and I was under the impression that Duo worked similarly to Auth0 or Okta. However, after reading some do...
Hello.For one of our solutions we have enabled both Passcode and Push options in the Duo admin portal. We have noticed we only see client-side IP addresses in the logs for users opting to use Push.Is there a way to capture the IP address when users o...
As a huge podcast fan and fledgling security nerd, I’m wondering if anyone has recommendations for series or episodes they especially like. I love Radiolab the most, so Darkode is my biggest must-listen so far.
What else should I be enjoying/learning...
I have a windows 2022 server in a standalone deployment, i.e. not belonging to a domain. Is there any chance of Duo Security could help me to authenticate via RADIUS the incoming RDP sessions? I already have the RADIUS server, and it's external to th...
Hello community,anyone else experiencing issues with Duo Security Authentication Proxy running on WS2016 after latest (09/24) patches install?On ASA debug it was shown "Unable to decipher response message" (Anyconnect)After restore of server to the v...
Hi, I have tested DUO EAM integration and it's working (passkey is main feature of test) but utilizing Microsoft Conditional Access Policy there is a challenge -> it does not understand EAM integration as "Strong (Phishing resistant) authentication"....
We’ve been testing Duo for Windows Logon (RDP) for a while now. When it is installed on a Windows Device (Win10 or Win11), the ability to perform a self-service password reset directly from the logon screen is broken.
Microsoft states that that “Som...
Our organization uses Duo Security. When logging into our department's kiosks it will prompt 'Is this your device?' each time. The answer should always be 'No, other people use this device'. Is there a global cookie that can be set on the kiosk brows...