SSLVPN integrate LDAP and MFA

Julius Lv1Posted 2022-Oct-27 22:49

Hi,

Anyone on the community experience to integrate LDAP to SSLVPN with MFA emabled? If yes, can share the steps or document if any. Thanks in advance.

CTI_JianJie has solved this question and earned 10 coins.

Posting a reply earns you 2 coins. An accepted reply earns you 20 coins and another 10 coins for replying within 10 minutes. (Expired) What is Coin?

Enter your mobile phone number and company name for better service. Go

Last edited by CTI_JianJie 07 Nov 2022 17:46.

Hi Julius, Sangfor SSLVPN supports TOTP MFA as well, following screenshot is for the latest version 8.0.47
After enabling the TOTP setting, you need to enable the setting under SSLVPN users.
Add local users > Disable inherent authentication > Enable Second authentication

This topic contains more resources

You must log in to download or view the file. Not registered yet? Register

x
Is this answer helpful?
CTI_JianJie Lv2Posted 2022-Nov-07 17:29
  


Sangfor SSLVPN supports multiple MFA methods such as SMS, hardware ID, Radius, TOTP and external authentication. Please let us know which MFA methods you are interested in.

This topic contains more resources

You must log in to download or view the file. Not registered yet? Register

x
sanjigerma Lv3Posted 2022-Nov-07 08:51
  
Yes it can be integrated on AD with SSL VPN authentication and MFA
kmrnliaqat Lv3Posted 2022-Nov-05 17:20
  
Not tried yet
kmrnliaqat Lv3Posted 2022-Nov-05 17:13
  
Not tried yet
Deorwine Lv2Posted 2022-Nov-03 10:45
  
I haven't tried it yet but it is somewhat possible but very complicated.
Luih Miranda Lv3Posted 2022-Nov-02 09:28
  
I haven't tried it yet.
Faisal P Posted 2022-Nov-01 13:31
  
After successful Attribute Mapping Configuration, go back to the ldap configuration and enable Activate LDAP in order to authenticate users from AD/LDAP.
Faisal P Posted 2022-Nov-01 13:29
  
On the Login/Bind tab, Select the login type (Anonymous, login name in tree or bind distinguished name) and enter the Login user name
Brooker Lv3Posted 2022-Nov-01 10:50
  
The concept is possible and not complicated at all.
arjay Lv3Posted 2022-Nov-01 10:06
  
Haven't tried yet but probably has the same concept with other brands

I Can Help:

Change

Moderator on This Board

11
8
5

Started Topics

Followers

Follow

1
3
5

Started Topics

Followers

Follow

0
4
5

Started Topics

Followers

Follow

67
20
3

Started Topics

Followers

Follow

3
14
3

Started Topics

Followers

Follow

1
138
3

Started Topics

Followers

Follow

Board Leaders