<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Awareness and Legacy Client Authentication portal consolidation in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127885#M23371</link>
    <description>&lt;P&gt;As far as I remember, we currently don't support a specific prompt for a second factor.&lt;BR /&gt;I believe you enter the password plus the second factor as a single password entry.&lt;/P&gt;</description>
    <pubDate>Tue, 24 Aug 2021 16:50:09 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-08-24T16:50:09Z</dc:date>
    <item>
      <title>Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115512#M21515</link>
      <description>&lt;P&gt;Hello Folks,&lt;BR /&gt;&lt;BR /&gt;Our environment has both IA and Legacy authentication currently. Below are my Q's.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1. Is it possible to do MFA (Radius) in IA ? I&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; [If answer is NO to Question-1 then our query leads to Question-2]&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 2. Is it possible to consolidate both IA and Legacy portals ?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Any suggestions or recommendations are greatly appreciated!!&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 15:14:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115512#M21515</guid>
      <dc:creator>Tiger_QAs</dc:creator>
      <dc:date>2021-04-07T15:14:56Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115515#M21516</link>
      <description>&lt;P&gt;RADIUS authentication is supported for Captive Portal, yes.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 15:22:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115515#M21516</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-04-07T15:22:47Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115521#M21517</link>
      <description>&lt;P&gt;Thanks for a quick update Welch!&lt;BR /&gt;&lt;BR /&gt;Our use case is to have MFA for only external contractors, As seen in below example firewall rules, We would like to leverage IA only for "External Contractors" rule.&lt;BR /&gt;&lt;BR /&gt;So Is there a way to use AD group on "External Contractors" rule and also leverage MFA without disrupting IA rule ?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="IA and legacy authentication firewall rules.JPG" style="width: 642px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/11301iC2B2F021A3956CCE/image-dimensions/642x69?v=v2" width="642" height="69" role="button" title="IA and legacy authentication firewall rules.JPG" alt="IA and legacy authentication firewall rules.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 16:37:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115521#M21517</guid>
      <dc:creator>Tiger_QAs</dc:creator>
      <dc:date>2021-04-07T16:37:42Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115524#M21518</link>
      <description>&lt;P&gt;The difference would be how the identities are acquired (Captive Portal versus Active Directory) and the Access Role used.&lt;BR /&gt;But one should not impact the other.&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 19:32:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/115524#M21518</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-04-07T19:32:00Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127865#M23367</link>
      <description>&lt;DIV&gt;Hello Mr.PhoneBoy, Greetings!&lt;BR /&gt;&lt;BR /&gt;I am trying to configure MFA using the RSA token to the Browser Based auth. Even after adding the SecureID server to my authentication setting it does not prompt me for my token when I used the Captive Portal and try browser based auth.&lt;BR /&gt;&lt;BR /&gt;Is there a way to integrate MFA for Browser based authentication?&lt;BR /&gt;&lt;BR /&gt;Note: I don't have remote access VPN configurations on my gateways.&lt;/DIV&gt;</description>
      <pubDate>Tue, 24 Aug 2021 14:44:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127865#M23367</guid>
      <dc:creator>Tiger_QAs</dc:creator>
      <dc:date>2021-08-24T14:44:46Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127885#M23371</link>
      <description>&lt;P&gt;As far as I remember, we currently don't support a specific prompt for a second factor.&lt;BR /&gt;I believe you enter the password plus the second factor as a single password entry.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 16:50:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127885#M23371</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-08-24T16:50:09Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness and Legacy Client Authentication portal consolidation</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127892#M23373</link>
      <description>&lt;P&gt;I implemented this for couple customers, but it can get little tricky. Say, for example, you have 500 people in your company and you want only 50 of them using Radius for MFA. Well, its not as easy as referencing that group in AD for radius auth, what we had to do is create local vpn users in dashboard and set their auth to Radius and then update the proper vpn/access role groups to allow them access. This is not sadly scalable for lots of users, but it does work. Message me privately if you want to do remote, Im happy to show you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 17:16:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-and-Legacy-Client-Authentication-portal/m-p/127892#M23373</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-08-24T17:16:45Z</dc:date>
    </item>
  </channel>
</rss>

