Announcements

SecurID® Discussions

Browse the SecurID discussion board to get product help and collaborate with other SecurID users.
SGTech
Respected Contributor
Respected Contributor

RSA SecurID integrate with McAfee Firewall

Jump to solution

HI

 

Any one got official documentation of integrating McAfee firewall with RSA SecurID, I have checked in RSA ready but no luck.

customer plans to tech refresh our McAfee (Forcepoint) firewall and we would like to know if it can support VPN client connection.

 

thanks

Labels (1)
0 Likes
1 Solution

Accepted Solutions
JayGuillette
Apprised Contributor Apprised Contributor
Apprised Contributor

Can the McAfee ForcePoint firewall be configured to send authentication requests to a RADIUS server?  If yes, then you could configure it as a RADIUS Client in the AM Security Console, like a 100 other FireWall VPNs.  Use PAP not CHAP.

 

There is no implementation Guide for this with SecurID Authentication Manager, but RADIUS is typically the way to go in these situations.

View solution in original post

4 Replies
JayGuillette
Apprised Contributor Apprised Contributor
Apprised Contributor

Can the McAfee ForcePoint firewall be configured to send authentication requests to a RADIUS server?  If yes, then you could configure it as a RADIUS Client in the AM Security Console, like a 100 other FireWall VPNs.  Use PAP not CHAP.

 

There is no implementation Guide for this with SecurID Authentication Manager, but RADIUS is typically the way to go in these situations.

If you go to McAFee site, search RADIUS and ForcePoint or SideWinder, the link talks about first configuring RADIUS on a Windows Server, which you would not need to do with RSA AM.

McAfee Corporate KB - How to configure RADIUS authentication KB74810 

but scroll down to NOTE: You will need to configure each ESM that will authenticate with this server as a client of the RADIUS server. 

and you will see about configuring RADIUS server IP address and RADIUS shared Secret

The McAfee needs to know to send authentications to the RADIUS Server, which will be the IP address of AM primary and the AM Primary needs to know that this McAfee VPN is a RADIUS client with its IP address, and both sides need to have the same RADIUS shared secret.  Looks like PAP is default, no need to configure

SGTech
Respected Contributor
Respected Contributor

Hi Jay Guillette,

 

Thanks for your help, I will ask user try this.

 

thanks

Rajesh