<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/149713#M6882</link>
    <description>&lt;P&gt;Why is this option that 'r&lt;SPAN&gt;equire users to confirm their identity using two-factor authentication'&amp;nbsp;&lt;/SPAN&gt;not available in my R80.20.05 experimental environment.&lt;/P&gt;</description>
    <pubDate>Mon, 30 May 2022 10:51:28 GMT</pubDate>
    <dc:creator>yangjiajun</dc:creator>
    <dc:date>2022-05-30T10:51:28Z</dc:date>
    <item>
      <title>Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121260#M5308</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have setup&amp;nbsp;1590 appliance to work with RADIUS server for 2ND factor for RAVPN users.&lt;/P&gt;&lt;P&gt;Radius server is Ubuntu 20.04 with FreeRadius service on it.&lt;/P&gt;&lt;P&gt;Radius server part works as a charm, it communicates with Google Authenticator and makes authentication decisions according to user/pass/OTP policy setup.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="3.png" style="width: 783px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12170iC597B4C11B853BC4/image-dimensions/783x104?v=v2" width="783" height="104" role="button" title="3.png" alt="3.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Problem is that on our CP 1590 appliance side. After successful Radius authentication (RADIUS packets are exchanged between CP 1590 device and Radius server), RAVPN client gets disconnected every time (RAVPN connection is never completed).&lt;/P&gt;&lt;P&gt;SMB appliances use RADIUS v1, and because of that password length together with OTP from goolge authenticator should not be over 16 characters long (it is limitation on SMB appliances they can not use Radius v2).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In security logs we get:&lt;/P&gt;&lt;P&gt;Action: Failed Log In&lt;/P&gt;&lt;P&gt;Reason: Authenticated by RADIUS&lt;/P&gt;&lt;P&gt;Second authentication method: DynamicID&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.png" style="width: 623px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12169iD5EB90526EFD22CB/image-dimensions/623x436?v=v2" width="623" height="436" role="button" title="2.png" alt="2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.png" style="width: 537px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12174i5B1253E9CE645283/image-dimensions/537x382?v=v2" width="537" height="382" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Surely, this is where the problem is.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Our endpoint security VPN client shows: User XXX authenticated by Radius authentication&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="4.png" style="width: 414px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12168i297589E7656C8327/image-dimensions/414x323?v=v2" width="414" height="323" role="button" title="4.png" alt="4.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Check Point 1590 setup:&lt;/P&gt;&lt;P&gt;1. local users with ravpn permission created (according to Radius server - to match username and password with Radius server local users database)&lt;/P&gt;&lt;P&gt;2. Put users in user group with RAVPN permissions&lt;/P&gt;&lt;P&gt;3. Checked option&amp;nbsp; -&amp;nbsp;Require users to confirm their identity using two-factor authentication&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did not checked SMS option as we do not use SMS DynamicID (left it default):&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="5.png" style="width: 500px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12172i81D8B8A869E43D4F/image-dimensions/500x349?v=v2" width="500" height="349" role="button" title="5.png" alt="5.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="6.png" style="width: 430px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12173i27E609BD7A1EC3C5/image-dimensions/430x290?v=v2" width="430" height="290" role="button" title="6.png" alt="6.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;4. Changed auth method on RAVPN client to Radius server&lt;/P&gt;&lt;P&gt;5.&amp;nbsp; We created authentication server (Radius):&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="7.png" style="width: 419px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12171iE8F8E5A31D5ED330/image-dimensions/419x277?v=v2" width="419" height="277" role="button" title="7.png" alt="7.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kindly ask You for a hint how to make this work?&lt;/P&gt;&lt;P&gt;All suggestions are welcome.&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Milos&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jun 2021 12:30:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121260#M5308</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-15T12:30:46Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121276#M5309</link>
      <description>&lt;P&gt;As addition to my first message,&amp;nbsp; if I check on 1590 GW the option -&amp;nbsp;&lt;EM&gt;Require users to confirm their identity using two-factor authentication,&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;on VPN client I got these two auth options:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="10.png" style="width: 294px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12176iAA5B8495FD377CBF/image-dimensions/294x341?v=v2" width="294" height="341" role="button" title="10.png" alt="10.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;With both auth. options from picture, RAVPN user gets successfully&amp;nbsp;authenticated, but VPN tunnel establishment is not being started by 1590 appliance at all (no tunnel test traffic (port 18234) , it's like that VPND is not being triggered by these auth options),&amp;nbsp; and at the end client gets disconnected with messages like this:&lt;/P&gt;&lt;P&gt;Local/AD user (Default):&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11.png" style="width: 396px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12177i08F79CA63096289F/image-dimensions/396x310?v=v2" width="396" height="310" role="button" title="11.png" alt="11.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Radius user:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="4.png" style="width: 395px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12179i0E9609F2AADB9123/image-dimensions/395x308?v=v2" width="395" height="308" role="button" title="4.png" alt="4.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;On the contrary, if I do not check on 1590 GW the option -&amp;nbsp;&lt;EM&gt;Require users to confirm their identity using two-factor authentication&lt;/EM&gt;, on VPN client there are many auth options (username/pass, SecureID, certs,...). But no radius at all.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jun 2021 15:07:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121276#M5309</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-15T15:07:52Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121281#M5310</link>
      <description>&lt;P&gt;VPN client side logs during testing with test radius user:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="client side logs.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12180iE708D9567A16632A/image-size/large?v=v2&amp;amp;px=999" role="button" title="client side logs.png" alt="client side logs.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jun 2021 15:34:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121281#M5310</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-15T15:34:25Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121324#M5311</link>
      <description>&lt;P&gt;2FA currently only works with SMS, see&amp;nbsp;&lt;SPAN style="font-family: inherit; background-color: #ffffff;"&gt;To configure Two-Factor Authentication,&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit; background-color: #ffffff;"&gt;Quantum Spark 1500, 1600 and 1800 Appliance Series R80.20.25 Locally Managed Administration Guide p.212 - so there is currently no way to achieve what you want !&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jun 2021 05:36:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121324#M5311</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-06-16T05:36:40Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121327#M5312</link>
      <description>&lt;P&gt;Hi Albrecht,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have just solved an issue by:&lt;/P&gt;&lt;P&gt;1. Deleting all users on CP 1590 appliance (which were already configured on Radius Server),&lt;/P&gt;&lt;P&gt;2. Creating Radius type group (checked all users, groups) and checked RAVPN permissions for Radius group,&lt;/P&gt;&lt;P&gt;3. Unchecking the option on CP - &lt;EM&gt;Require users to confirm their identity using two-factor authentication,&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;4. In VPN client I choose auth. scheme (username/password).&lt;/P&gt;&lt;P&gt;And it works as a charm! Users are authenticated by external Radius server (FreeRadius on Ubuntu), which is further&amp;nbsp;&lt;/P&gt;&lt;P&gt;responsible for handling Google Authenticator OTP. Basically in VPN client, in password field we put together a password which is defined on Radius server along with OTP token from google authenticator app on Mobile phone in following manner:&amp;lt;passwordOTP&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jun 2021 07:49:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121327#M5312</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-16T07:49:11Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121331#M5313</link>
      <description>&lt;P&gt;Yes - 2FA is outsourced here to RADIUS. See&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk137732&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank"&gt;sk137732: &lt;STRONG&gt;2FA&lt;/STRONG&gt; (Factor Authentication) support for remote access VPN in locally managed &lt;STRONG&gt;SMB&lt;/STRONG&gt; appliances&lt;/A&gt;&amp;nbsp;for details about this R77.20.xx restriction.&lt;/P&gt;
&lt;P&gt;With R80.20.xx.,&amp;nbsp;2FA is possible for locally managed SMBs using SMS.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jun 2021 08:08:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121331#M5313</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-06-16T08:08:16Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121360#M5317</link>
      <description>&lt;P&gt;It would be great if we could&lt;SPAN&gt;&amp;nbsp;be in situation to configure MFA directly on the Security Gateway (locally managed SMB appliance).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks for comments.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jun 2021 12:50:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121360#M5317</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-16T12:50:13Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121369#M5318</link>
      <description>&lt;P&gt;Yes, certainly !&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jun 2021 15:05:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121369#M5318</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-06-16T15:05:57Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121497#M5326</link>
      <description>&lt;P&gt;It is listed in Limitations:&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk159772&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank"&gt;sk159772: Check Point R80.20 for 1500, 1600, and 1800 Appliances Features and Known Limitations&lt;/A&gt;&lt;/P&gt;
&lt;TABLE id="lim-Table" class="footnote" border="1" width="90%" cellspacing="2" cellpadding="4"&gt;
&lt;TBODY&gt;
&lt;TR class="SubTitle" bgcolor="#d6dff0"&gt;
&lt;TD width="30%"&gt;Blade / Feature&lt;/TD&gt;
&lt;TD width="8%"&gt;Locally &lt;BR /&gt;managed&lt;/TD&gt;
&lt;TD width="8%"&gt;Centrally &lt;BR /&gt;managed&lt;/TD&gt;
&lt;TD width="32%"&gt;Comments&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;TABLE id="lim-Table" class="footnote" border="1" width="90%" cellspacing="2" cellpadding="4"&gt;
&lt;TBODY&gt;
&lt;TR class="SubTitle" bgcolor="#33ccff"&gt;
&lt;TD colspan="4"&gt;VPN and Remote Access&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;TABLE id="lim-Table" class="footnote" style="height: 200px; width: 89.8572189210674%;" border="1" width="89.8572189210674%" cellspacing="2" cellpadding="4"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="32.764067227230875%" height="132px"&gt;Remote access client multi factor authentication&lt;/TD&gt;
&lt;TD width="12.430561879610234%" height="132px"&gt;Yes&lt;/TD&gt;
&lt;TD width="11.305386070890119%" height="132px"&gt;No&lt;/TD&gt;
&lt;TD width="34.99916588088009%" height="132px"&gt;SMS as second factor authentication.&amp;nbsp;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;#&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jun 2021 19:45:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121497#M5326</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-06-17T19:45:14Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121545#M5330</link>
      <description>&lt;P&gt;Thanks Albrecht.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At the end, I really look forward that CP will as soon as support radius v2 on SMB appliances (to avoid &lt;SPAN&gt;authentication with up to 16 character passwords (Radius v1 - RFC 2138)).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jun 2021 11:33:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/121545#M5330</guid>
      <dc:creator>mjovovic</dc:creator>
      <dc:date>2021-06-18T11:33:22Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/149713#M6882</link>
      <description>&lt;P&gt;Why is this option that 'r&lt;SPAN&gt;equire users to confirm their identity using two-factor authentication'&amp;nbsp;&lt;/SPAN&gt;not available in my R80.20.05 experimental environment.&lt;/P&gt;</description>
      <pubDate>Mon, 30 May 2022 10:51:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/149713#M6882</guid>
      <dc:creator>yangjiajun</dc:creator>
      <dc:date>2022-05-30T10:51:28Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/150282#M6909</link>
      <description>&lt;P&gt;The option 'require users to confirm their identity using two-factor authentication' is available on the R80.20.10 ver. and above.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jun 2022 23:47:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/150282#M6909</guid>
      <dc:creator>MikeyT</dc:creator>
      <dc:date>2022-06-06T23:47:03Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/161977#M7738</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/45519"&gt;@mjovovic&lt;/a&gt;&amp;nbsp; - do you have the document for setting up this freeRadius and google authenticator. i did configure it but when i am trying to do a local test- it says packet rejected. not sure where have i done mistake. i am not very good in linux. it would be great if you can share the doc.&lt;/P&gt;</description>
      <pubDate>Mon, 14 Nov 2022 10:56:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/161977#M7738</guid>
      <dc:creator>security09</dc:creator>
      <dc:date>2022-11-14T10:56:06Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/161978#M7739</link>
      <description>&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk137732&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank" rel="noopener noreferrer"&gt;sk137732: &lt;STRONG&gt;2FA&lt;/STRONG&gt; (Factor Authentication) support for remote access VPN in locally managed &lt;STRONG&gt;SMB&lt;/STRONG&gt; appliance...&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Nov 2022 11:04:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/161978#M7739</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-11-14T11:04:43Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/162017#M7754</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp; This SK doesnt have freeradius method explained. the one which is mentioned is SMS based authentication. i need FreeRadius with GoogleAuth.&lt;/P&gt;</description>
      <pubDate>Mon, 14 Nov 2022 14:29:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/162017#M7754</guid>
      <dc:creator>security09</dc:creator>
      <dc:date>2022-11-14T14:29:52Z</dc:date>
    </item>
    <item>
      <title>Re: Multi Factor authentication for RAVPN users with Google Authenticator on SMB devices</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/162106#M7761</link>
      <description>&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk72940&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank"&gt;sk72940: How to configure &lt;STRONG&gt;RADIUS&lt;/STRONG&gt; server for authentication on Gaia OS&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Nov 2022 09:48:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Multi-Factor-authentication-for-RAVPN-users-with-Google/m-p/162106#M7761</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-11-15T09:48:53Z</dc:date>
    </item>
  </channel>
</rss>

