This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Combine LDAP Auth with RSA Token

Hello Sophos Community,
 
it is possible to use 2 FA OTP in combination with an authentication server. The user log in with the normal AD account for example and extend the password with the OTP token if 2 FA is activated in the OTP section. Is there any way to use Radius server to provide the access token instead of set up OTP manually? I can set up Radius as athentication server and it is working but I do not find a solution to combine it with the normal user authentication (local, ldap or other).
 
Thanks for a feedback.


This thread was automatically locked due to age.
  • 1) OTP + authentication server?   Yes.   We use it with AD and LDAP.

    2) OTP + Radius?  Presumably, but I have not tried it.

    3) Radius determines OTP?   If you do not want to use the UTM token system and its interface,  you need to build your own user interface, or buy it.   Depends somewhat on how you want to enroll users in 2FA, and what types of 2FA methods you want to support.   Generally if you don't want UTM's free solution, you probably want to consider DUO.