- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- LDAP with 2FA for admin access
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
LDAP with 2FA for admin access
Hi.
I recently got asked by customer it it is possible to login to SmartConsole and CP gateways and management server and authenticate against the LDAP server (Free IPA) and on top of that they would generate and offline 2FA token with FreeOTP.
I am assuming that this can't be done. If I understand correctly Checkpoint devices only externally authenticate admin access against RADIUS and TACACS or there is the SecurID option of 2FA.
Can you confirm my suspicion?
R81.20 on management server / R81.10 on gateways
Thanks
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
For access to Gaia OS, LDAP cannot be used as an authentication mechanism.
Further, there is not a prompt for the second factor via RADIUS, it must be appended to the end of the password.
