cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
anchor
New Contributor III

2-factor AUTH for VPN client connections possible?

Wondering if it's possible to implement 2AUTH with the 3448 and NCP software or any other solution?

Labels (1)
0 Kudos
2 Replies

Re: 2-factor AUTH for VPN client connections possible?

You could argue VPN uses 2FA by design, at least when you use TLS client certificates and XAUTH.  The username and password for XAUTH is two things you only know (typically these would be specific only to this user) and the client certificate is something you only have (client certificates ought to be unique to each client).

If however, you mean a two step verification using an Out-Of-Band mechanism, then this may be possible when using an external RADIUS server in combination with e.g. Google Authenticator, or other token based mechanism.  I'd be interested to know the specifics if someone has deployed such a system.

--

Regards,

Mick

anchor
New Contributor III

Re: 2-factor AUTH for VPN client connections possible?

Roger that.  I'll let you know what they end up doing if it's interesting at all 😉

Thanks!