Forum Discussion

jy_01_141670's avatar
jy_01_141670
Icon for Nimbostratus rankNimbostratus
Jan 20, 2014

Can Big IP APM do 2 phase Radius Authentication

I want a login page and a challenge page(prompts for OTP)

 

Access policy will be something like that

 

Start-> Logon Page -> Radius Auth--Access-Challenge-> Challenge Page-->Radius Auth-- Access-Accept--> Resource Assignment

 

But I do not see the Challenge or OTP page anywhere. I am using a custom Radius Server.

 

Tested with Juniper SA 4500 it was OK. I would like to integrate this solution with F5 Big IP as customer is using this.

 

1 Reply

  • Hi,

     

    You haven't got any Challenge or OTP page you're right.

     

    You have 2 options :

     

    • Modify your login page to include a field which contains your OTP
    • Let your APM do the work, if the radius server returns Access-Challenge it will ask the OTP to the client.