Announcements

SecurID® Discussions

Browse the SecurID discussion board to get product help and collaborate with other SecurID users.
Mauro
Occasional Contributor
Occasional Contributor

RSA MFA - CAS local user approve authentication

Jump to solution

Hi!

 

Good afternoon, I currently have a client with CAS solution and we are trying to implement the authentication of VPN users with a CISCO ISE as an intermediary between the FW and IDR (it has not been successful).

 

 

Domain users are being self-enrolled in the MYPAGE portal to apply MFA approve on the authentication of their PCs ... my question is, does this enrollment (RSA authenticate app) also serve for the authentication of VPN users of the domain?

 

Very grateful for your time !!!

Labels (1)
0 Likes
1 Solution

Accepted Solutions
AhmedAbouelnaga
Occasional Contributor Occasional Contributor
Occasional Contributor

Hello mauricio perez‌, 

 

Generally any user who requires MFA authentication would need to be added as a part of the Identity source connected to the cloud or to an Authentication Manager that is integrated with the cloud.

 

Hence, for the FW local users you will need to add them to the identity source connected to the cloud with the same login username.

 

Regarding the users who are already enrolled, they can use their Authenticate App with whatever Application or Client added as a part of the Cloud Administration Console, so yes they will be able to use the same application with their PCs authentication and with the VPN as well.

 

Please let us know if you have any other questions.

 

Best Regards,

Ahmed Abouelnaga

View solution in original post

2 Replies
AhmedAbouelnaga
Occasional Contributor Occasional Contributor
Occasional Contributor

Hello mauricio perez‌, 

 

Generally any user who requires MFA authentication would need to be added as a part of the Identity source connected to the cloud or to an Authentication Manager that is integrated with the cloud.

 

Hence, for the FW local users you will need to add them to the identity source connected to the cloud with the same login username.

 

Regarding the users who are already enrolled, they can use their Authenticate App with whatever Application or Client added as a part of the Cloud Administration Console, so yes they will be able to use the same application with their PCs authentication and with the VPN as well.

 

Please let us know if you have any other questions.

 

Best Regards,

Ahmed Abouelnaga

Mauro
Occasional Contributor
Occasional Contributor

Thanks Ahmed!

0 Likes