Version Affected: 21.04 and later
Overview
In a VPN client configured with RADIUS, some MFA options -- such as Send Passcode to Mobile App or Send Login Request to Mobile App -- can be missing, even though browsing to the same realm directly shows those options.
Cause
Starting in 21.04, some MFA options need to be explicitly enabled in the New Experience for them to work with RADIUS.
Resolution:
In the New Experience, go to Multi-factor Methods and enable the options missing from the VPN client:
- For sending a login request to the Authenticate app, toggle on Login notification.
- For sending a passcode to the Authenticate app, toggle on One-time Passcode via Push notification.
SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.
Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.
Comments
Please sign in to leave a comment.