Enable MFA for on prem

%3CLINGO-SUB%20id%3D%22lingo-sub-1646396%22%20slang%3D%22en-US%22%3EEnable%20MFA%20for%20on%20prem%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1646396%22%20slang%3D%22en-US%22%3E%3CP%3EHi%20Team.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20have%20the%20following%20scenario.%3C%2FP%3E%3CP%3EA%20user%20connect%20to%20local%20network%20using%20VPN%20Cisco%20client.%20I%20need%20to%20enable%20MFA%20for%20the%20end%20user%20using%20Cisco%20client.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EWhat%20technologies%20can%20I%20use%20for%20this%20need%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks%2C%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1646396%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EMFA%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1656174%22%20slang%3D%22en-US%22%3ERe%3A%20Enable%20MFA%20for%20on%20prem%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1656174%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F392602%22%20target%3D%22_blank%22%3E%40CarlosMoralesMX%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EYou%20can%20use%20Duo%20Security%20which%20is%20now%20part%20of%20Cisco.%3C%2FP%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fduo.com%2F%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fduo.com%2F%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
Highlighted
Contributor

Hi Team.

 

I have the following scenario.

A user connect to local network using VPN Cisco client. I need to enable MFA for the end user using Cisco client.

 

What technologies can I use for this need?

 

Thanks,

2 Replies

@CarlosMoralesMX 

 

You can use Duo Security which is now part of Cisco.

https://duo.com/

Highlighted

@CarlosMoralesMX 

Network Policy Server (NPS) extension for Azure allows organizations to use (RADIUS) client authentication using cloud-based Azure Multi-Factor Authentication (MFA) which provides two-step verification. You can setup Cisco with NPS as radius client to get Azure MFA for the end user. 

 

https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-nps-extension-vpn

https://download.microsoft.com/download/4/5/7/4579C1CF-35B0-4FBE-8A1A-B49CB2CC0382/Cisco_ASA_Azure_M...