Hi,
I need a little help. I want to apply a second authenticaiton factor to my C2S connections, actually the users connects to de VPN by Endpoint security VPN, they use their credentials from AD, now I want to set up a second factor using a RADIUS server that generates a token. Lets illustrate my scenario:
Scenario
So the thing I want and hope is, Client communicates with FW, FW asks AD server for identities, then FW asks RADIUS for token and thats it, so what I configured is this:
Configure a new multiple options, first username, then RADIUS
![azte2.png azte2.png](https://community.checkpoint.com/t5/image/serverpage/image-id/2515i80DC479E2EC82A9B/image-size/large?v=v2&px=999)
1st factor configuration
![azte3.png azte3.png](https://community.checkpoint.com/t5/image/serverpage/image-id/2516iB4B153FA3EDC8685/image-size/large?v=v2&px=999)
2nd factor configuration
![azte4.png azte4.png](https://community.checkpoint.com/t5/image/serverpage/image-id/2518iDE49941D094A44EB/image-size/large?v=v2&px=999)
AND! is not working, after authenticate with AD, it asks for a user, I thought it was the token but wasn't, dont know if this is the correct configuration, can you help me on how to start the troubleshooting?
I read that there is some configuration that let me use pass+token, but i cant make it works, or maybe configure.
Thanks in advance.