<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Checkpoint VPN with Microsoft 2-Factor Authentication in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/133083#M11684</link>
    <description>&lt;P&gt;Hello &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt; .&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has the use of AzureAD for remote access VPN MFA been made "official" by CP support via SK article?&lt;/P&gt;&lt;P&gt;It's great that 3rd party was able to prove it can be done, but if CP product mgmt not using this in product functionality requirements and QA process, I forsee the scenario where upcoming Jumbo may break this. &amp;nbsp;&lt;/P&gt;&lt;P&gt;Of course, this will happen in middle of night during maintenance window on Saturday night and make our lives awful.&lt;/P&gt;&lt;P&gt;I would like to know that CP product mgmt actively insuring this functionality (and integration) is on radar and part of QA process for Jumbo releases, etc.&lt;/P&gt;&lt;P&gt;note:&amp;nbsp; Yes, I understand SAML auth has been added to latest release of R81.10 remote access VPN client. &amp;nbsp; &amp;nbsp; is it possible the product mgmt going with this strategy as "official" supported MFA strategy going forward?&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would just like something in black and white to reference for customer buyoff.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 02 Nov 2021 17:33:03 GMT</pubDate>
    <dc:creator>Garrett_DirSec</dc:creator>
    <dc:date>2021-11-02T17:33:03Z</dc:date>
    <item>
      <title>Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70152#M11619</link>
      <description>&lt;P&gt;Hello everyone&lt;/P&gt;&lt;P&gt;I would like to share with you how I managed to get VPN users to use &lt;SPAN&gt;Microsoft Azure Multi-Factor Authentication&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;I saw in some posts that this was possible by using MFA Server, but Microsoft stopped offering MFA Server on July 1, 2019.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;What I needed to do:&lt;/P&gt;&lt;P&gt;1 - Office 365 users with MFA enabled.&lt;/P&gt;&lt;P&gt;2 - Dedicated NPS Server.&lt;BR /&gt;All Radius requests made to this server will have MFA directed to Microsoft.&lt;/P&gt;&lt;P&gt;3 - NPS extension for Azure MFA&lt;BR /&gt;This extension will direct your MFA requests to Microsoft.&lt;BR /&gt;You can find the installation and download instructions at the link below.&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/pt-br/azure/active-directory/authentication/howto-mfa-nps-extension#sync-domain-users-to-the-cloud" target="_blank" rel="noopener"&gt;https://docs.microsoft.com/pt-br/azure/active-directory/authentication/howto-mfa-nps-extension#sync-domain-users-to-the-cloud&lt;/A&gt;&lt;/P&gt;&lt;P&gt;The user can define which method will be used in the Microsoft portal.&lt;/P&gt;&lt;P&gt;I tested the methods below on VPN Clients, Mobile Access and Capsule Workspace and they all worked perfectly.&lt;/P&gt;&lt;P&gt;- Notification through mobile app&lt;BR /&gt;- Verification code from mobile app&lt;BR /&gt;- Text message to phone&lt;/P&gt;&lt;P&gt;I hope this post helps you&lt;/P&gt;&lt;P&gt;Good luck&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 17:43:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70152#M11619</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2019-12-11T17:43:25Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70154#M11620</link>
      <description>&lt;P&gt;Excellent!!!! Thank you for share.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 17:37:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70154#M11620</guid>
      <dc:creator>Martins</dc:creator>
      <dc:date>2019-12-11T17:37:46Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70174#M11621</link>
      <description>&lt;P&gt;Thanks for sharing.&lt;/P&gt;&lt;P&gt;Was any testing completed with 'Secondary Connect' in this configuration?&lt;/P&gt;&lt;P&gt;Just curious how it worked if tested.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 20:52:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70174#M11621</guid>
      <dc:creator>Ave_Joe</dc:creator>
      <dc:date>2019-12-11T20:52:47Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70177#M11622</link>
      <description>&lt;P&gt;We currently use the Dynamic ID.&lt;BR /&gt;I created a new profile for testing Microsoft MFA.&lt;BR /&gt;When the user will connect he can choose which one to use.&lt;BR /&gt;After the tests we will keep only one.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 21:04:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70177#M11622</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2019-12-11T21:04:43Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70229#M11623</link>
      <description>&lt;P&gt;Hello Rodrigo&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;As concerns Management server configuration for 2FA, can you please share it with us?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;Kostas&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2019 07:52:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70229#M11623</guid>
      <dc:creator>Konstantinos_In</dc:creator>
      <dc:date>2019-12-12T07:52:19Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70278#M11624</link>
      <description>&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;You need to direct authentication to the Radius server.&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.png" style="width: 765px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/3701i1C8DC935611E42B5/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.png" style="width: 741px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/3702i1E73132A4980744A/image-size/large?v=v2&amp;amp;px=999" role="button" title="2.png" alt="2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You will need a Radius server with NPS extension for Azure MFA installed.&lt;/P&gt;&lt;P&gt;Remember that all requests to this Radius server will have MFA requests.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="3.png" style="width: 778px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/3703iF21B1C75B2F12EA0/image-size/large?v=v2&amp;amp;px=999" role="button" title="3.png" alt="3.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;This setting is the same for Mobile Access.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Dec 2019 13:51:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70278#M11624</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2019-12-12T13:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70334#M11625</link>
      <description>Thanks for sharing this.&lt;BR /&gt;Moving it to the Remote Access space.</description>
      <pubDate>Thu, 12 Dec 2019 18:05:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70334#M11625</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-12-12T18:05:46Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70598#M11626</link>
      <description>&lt;P&gt;You may need to extend the RADIUS timeouts to allow&amp;nbsp;for slower RADIUS responses because&amp;nbsp;the end user needs extra time to satisfy the MFA response.&amp;nbsp; SK112933 covers the configuration changes needed on the Management server, including the trac_client_1.ttm file used by the Endpoint suite clients.&lt;/P&gt;&lt;P&gt;Note that if you need to change the trac_client_1 file, you can set it in fwrl.conf&amp;nbsp;&amp;nbsp;to push it from management onto the gateways each time a policy is installed.&amp;nbsp; Let me know if you need the specifics and I'll drop it into this post.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2019 17:31:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/70598#M11626</guid>
      <dc:creator>Jason_Dance</dc:creator>
      <dc:date>2019-12-16T17:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/72746#M11627</link>
      <description>&lt;P&gt;Great info Rodrigo, did you have to do any specific configuration on the NPS server outside of getting the extension?&lt;/P&gt;&lt;P&gt;I've gotten a new AU configured with using Radius and cannot get a prompt for an MFA code.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 18:54:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/72746#M11627</guid>
      <dc:creator>jcavet</dc:creator>
      <dc:date>2020-01-20T18:54:07Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/73494#M11628</link>
      <description>&lt;P&gt;Make sure you don't have any punctuation or special characters in your Radius Shared Secret.&lt;/P&gt;&lt;P&gt;A single ' caused my configuration to break. The NPS server was authenticating the user but then failing to pass the information back to the gateway.&lt;/P&gt;&lt;P&gt;My working configuration is:&lt;/P&gt;&lt;P&gt;RADIUS server object in Checkpoint Smart Console - configured for Radius Version 2.0 and MS_CHAP2&lt;/P&gt;&lt;P&gt;NPS server with Network Policy to Grant Access to AD User groups using matching Authentication Method.&lt;/P&gt;&lt;P&gt;On NPS Server you can see the authentication events in Event Viewer under Custom Views\Server Roles\Network Policy and Access Services&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2020 03:19:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/73494#M11628</guid>
      <dc:creator>Pedro_Silva</dc:creator>
      <dc:date>2020-01-28T03:19:06Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/73550#M11629</link>
      <description>Everything I needed to configure the NPS server I found on the link &lt;A href="https://docs.microsoft.com/pt-br/azure/active-directory/authentication/howto-mfa-nps-extension#sync-domain-users-to-the-cloud" target="_blank"&gt;https://docs.microsoft.com/pt-br/azure/active-directory/authentication/howto-mfa-nps-extension#sync-domain-users-to-the-cloud&lt;/A&gt;</description>
      <pubDate>Tue, 28 Jan 2020 13:28:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/73550#M11629</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2020-01-28T13:28:53Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/74976#M11630</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Very helpful, thanks for sharing!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;(Refer also&amp;nbsp;&lt;SPAN&gt;sk114263)&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2020 13:01:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/74976#M11630</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-02-12T13:01:31Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75285#M11631</link>
      <description>&lt;P&gt;Configuring an External User Profile (generic*) with Radius authentication on SmartDashboard is&amp;nbsp; still needed for this, right??&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Feb 2020 14:07:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75285#M11631</guid>
      <dc:creator>anstelios</dc:creator>
      <dc:date>2020-02-14T14:07:38Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75296#M11632</link>
      <description>&lt;P&gt;Thanks for the documentation, could you say what you did on CheckPoint's side to make this work. We have been struggling the last few weeks to make this work, and haven't made any headway. I've configured the RADIUS server with the NPS extension, and we've setup RADIUS authentication on the gateway, but we keep getting a username/password error. Is there another way to set this up that will allow it to work? Would you mind sharing what your working setup looks like? We've been banging our head against the wall the last few weeks, and as you can tell it's starting to show. Appreciate any help that you can give.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Feb 2020 15:04:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75296#M11632</guid>
      <dc:creator>Tux234</dc:creator>
      <dc:date>2020-02-14T15:04:46Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75508#M11633</link>
      <description>&lt;P&gt;We cant get mobile app notification method to work!&lt;/P&gt;&lt;P&gt;Verification code and SMS to phone work fine!&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Feb 2020 15:40:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75508#M11633</guid>
      <dc:creator>anstelios</dc:creator>
      <dc:date>2020-02-17T15:40:12Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75522#M11634</link>
      <description>&lt;P&gt;Can you post steps for configuring for SMS to phone or Verification code?&amp;nbsp; I've been struggling to get this to work at all!&lt;/P&gt;</description>
      <pubDate>Mon, 17 Feb 2020 19:41:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/75522#M11634</guid>
      <dc:creator>AZ-Joe</dc:creator>
      <dc:date>2020-02-17T19:41:37Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76885#M11635</link>
      <description>It depends on your policy. My configuration allows VPN connection by AD group. Regardless of whether it is per AD user, or per local user, authentication needs to be sent to the radius server.</description>
      <pubDate>Mon, 02 Mar 2020 17:16:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76885#M11635</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2020-03-02T17:16:24Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76886#M11636</link>
      <description>I'm sorry for the late reply.&lt;BR /&gt;At CheckPoint I just needed to set up a new radius server and direct authentications to it.&lt;BR /&gt;You can even put MFA on who will connect to SmartConsole,</description>
      <pubDate>Mon, 02 Mar 2020 17:20:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76886#M11636</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2020-03-02T17:20:02Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76892#M11638</link>
      <description>1 - Your company must have at least one free Azure AD account, and your on-premises AD users must be in sync with the cloud.&lt;BR /&gt;2 - In the user's guide, on the office 365 portal, there is the option to manage the double factor of authentication. There you enable the double factor for each user.&lt;BR /&gt;3 - The user needs to access the portal.office.com website and complete the configuration.&lt;BR /&gt;I don't know if that was your question.&lt;BR /&gt;Hope this helps.</description>
      <pubDate>Mon, 02 Mar 2020 17:39:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76892#M11638</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2020-03-02T17:39:22Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint VPN with Microsoft 2-Factor Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76893#M11639</link>
      <description>Check if you are having problems with HTTPS Inspection.&lt;BR /&gt;In our case it only worked on the 3G network. Then I found out that it was URL inspection.&lt;BR /&gt;Now everything works great.</description>
      <pubDate>Mon, 02 Mar 2020 17:42:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Checkpoint-VPN-with-Microsoft-2-Factor-Authentication/m-p/76893#M11639</guid>
      <dc:creator>Rodrigo_Silva</dc:creator>
      <dc:date>2020-03-02T17:42:22Z</dc:date>
    </item>
  </channel>
</rss>

