- Products
- Learn
- Local User Groups
- Partners
- More
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
Join our TechTalk: Malware 2021 to Present Day
Building a Preventative Cyber Program
Be a CloudMate!
Check out our cloud security exclusive space!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
I've been configuring remote access on VSX R80.40 with the latest GA Take. Both TLS portal and Mobile clients work with username/password, and I've been following the various documentations to configure RADIUS authentication.
However as soon as I try with RADIUS authentication set, it immediately fails with "1st factor RADIUS - Server not responding".
In $FWDIR/log/vpnd.elg, there is the message that no RADIUS servers are responding. The thing is that I don't see any logs or fw monitor which show any RADIUS packets being sent by the VS, a tcpdump on the RADIUS server doesn't either. In terms of connectivity, it's all good, ping from the VS to the RADIUS goes through another VS and there it works.
If I switch back to username/password (provided by Identity Collector), it works immediately.
I'm probably missing something here, any hint would be appreciated.
in the settings on the VS firewall object you can choose who goes to the RADIUS server, VS0 (default) or the VS in question where you configured the RADIUS setup
EDIT: added crappy screenshot
VS settings => Other => Legacy Authentication => Shared to Private
@Royi_Priov any suggestions here?
I suggest investigating with TAC.
in the settings on the VS firewall object you can choose who goes to the RADIUS server, VS0 (default) or the VS in question where you configured the RADIUS setup
EDIT: added crappy screenshot
VS settings => Other => Legacy Authentication => Shared to Private
Thanks, looks like it was it, now to troubleshoot the RADIUS side.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY