Cisco Systems, Inc.
Firepower Threat Defense (FTD) 6.3
Pete Waranowski, RSA Partner Engineering
Last Modified: January 25th, 2019
Solution Summary
This section shows all of the ways that Cisco FTD can integrate with RSA SecurID Access. Use this information to determine which use case and integration type your deployment will employ.
Use Case
Remote Access VPN (AnyConnect) - When integrated, users must authenticate with RSA SecurID Access in order to establish a VPN connection to Cisco FTD using Cisco AnyConnect VPN client. Remote Access VPN can be integrated with RSA SecurID Access using RADIUS.
Integration Type
RADIUS integrations provide a text driven interface for RSA SecurID Access within the partner application. RADIUS provides support for most RSA SecurID Access authentication methods and flows.
Supported Features
This section shows all of the supported features by integration type and by RSA SecurID Access component. Use this information to determine which integration type and which RSA SecurID Access component your deployment will use. The next section in this guide contains the instruction steps for how to integrate RSA SecurID Access with CiscoFTD using each integration type.
Cisco FTD integration with RSA Cloud Authentication Service
| Authentication Methods | Authentication API | RADIUS | Relying Party | SSO Agent |
|---|---|---|---|---|
| RSA SecurID | - | ✔ | - | - |
| LDAP Password | - | ✔ | - | - |
| Authenticate Approve | - | ✔ | - | - |
| Authenticate Tokencode | - | ✔ | - | - |
| Device Biometrics | - | ✔ | - | - |
| SMS Tokencode | - | ✔ | - | - |
| Voice Tokencode | - | ✔ | - | - |
| FIDO Token | n/a | n/a | - | - |
Cisco FTD integration with RSA Authentication Manager
| Authentication Methods | Authentiaction API | RADIUS | Authentication Agent |
|---|---|---|---|
| RSA SecurID | - | ✔ | - |
| On Demand Authentication | - | ✔ | - |
| Risk-Based Authentication | n/a | - | - |
| ✔ | Supported |
| - | Not supported |
| n/t | Not yet tested or documented, but may be possible. |
Configuration Summary
This section contains links to the sections that contain instruction steps that show how to integrate Cisco FTD with RSA SecurID Access using all of the integration types and also how to apply them to each supported use case. First configure the integration type (e.g. RADIUS) then configure the use case (e.g. Remote Access VPN).
This document is not intended to suggest optimum installations or configurations. It is assumed that the reader has both working knowledge of all products involved, and the ability to perform the tasks outlined in this section. Administrators should have access to the product documentation for all products in order to install the required components. All RSA SecurID Access and Cisco FTD components must be installed and working prior to the integration.
Integration Configuration
Use Case Configuration
Certification Details
Date of testing: January 24th, 2019
RSA Cloud Authentication Service
RSA Authentication Manager 8.3, Virtual Appliance
Cisco FTD 6.3, Virtual Appliance
Known Issues
None.
Related Articles
AAAFirewall Rule - Cisco ASA RSA Ready SecurID Access Implementation Guide 14Number of Views RADIUSwith AM Configuration - Cisco FTD RSA Ready SecurID Access Implementation Guide 82Number of Views RADIUSwith CAS Configuration - Cisco FTD RSA Ready SecurID Access Implementation Guide 31Number of Views AdminAccess - Cisco ASA RSA Ready SecurID Access Implementation Guide 26Number of Views Cisco ASA - RSASecurID Access Implementation Guide 185Number of Views
Trending Articles
RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) How to install the jTDS JDBC driver on WildFly for use with Data Collections in RSA Identity Governance & Lifecycle RSA Authentication Manager 8.8 Setup and Configuration Guide Artifacts to gather in RSA Identity Governance & Lifecycle