Skip to main content

SecTrail MFA

SecTrail MFA (Multi-Factor Authentication) provides multi-factor authentication to largely prevent unauthorized access. It offers multi-stage verification for secure access to your network, portals, or applications.

VERSION INFORMATION

This documentation is prepared for SecTrail MFA v2.0.0.

What is SecTrail MFA and Why is it Necessary?​

SecTrail offers comprehensive solutions to corporate authentication challenges. With Multi-Factor Authentication (MFA), it provides layered security for organizations' critical systems in an era where passwords alone are insufficient.

Key Features​

  • πŸ” True Multi-Factor Authentication: Ability to create multiple factorsβ€”not limited to a single factor.
  • 🌐 Universal Protocol Support: Integration with all devices and applications supporting RADIUS and SSO.
  • πŸ”— SAML 2.0 & ADFS Federation: Single Sign-On (SSO) for web applications, MFA for services behind ADFS.
  • πŸ’» Operating System Integration: Support for Windows Logon/RDP, Mac Login, Linux SSH/Sudo.
  • πŸ“± Mobile Application: Push notificationsi TOTP token generation and Login with QR with iOS and Android.
  • πŸ”Œ REST API: MFA integration for your custom applications.
  • βš™οΈ Flexible Policy Management: Time, geolocation, and attribute-based access controls.

Why SecTrail MFA?​

With SecTrail MFA, organizations achieve:

βœ… Secure and Stable​

SecTrail can operate stably under heavy load and enhances security by preventing service disruptions with its Active-Active design.

  • High Availability (HA)
  • Guaranteed uninterrupted service
  • Redundant server architecture

βœ… Customizable​

SecTrail, with its modular code structure, can be configured to meet corporate needs and requests.

  • Flexible factor chains
  • Defining custom policy rules
  • Custom authentication flows

βœ… Fast and Dynamic​

The advantages provided by SecTrail include easy integration and fast support.

  • Rapid installation and deployment
  • User-friendly administration panel
  • Wide vendor support (Palo Alto, Fortinet, Cisco, Checkpoint, F5, etc.)
  • Fast technical support and problem resolution

βœ… 24/7 Support​

Our experienced engineers are ready to intervene quickly when support is needed.

  • Experienced engineering team
  • Quick problem resolution
  • Installation and configuration support
  • Professional technical consultancy

Extensive Integration Coverage​

  • RADIUS Integration - VPNs, firewalls, and network devices
  • SSO Integration - Web applications and cloud platforms
  • ADFS Integration - Microsoft Active Directory Federation Services
  • Windows Login/RDP Integration - Windows operating system logins
  • Mac Login Integration - macOS operating system logins
  • Linux SSH/Sudo/Console Integration - Linux operating system access

Authentication Methods​

SecTrail MFA offers more than 10 authentication methods, providing solutions for every use case. Verification can be performed with an unlimited number of multiple factors:

MethodDescriptionUse Case
LDAP/Active DirectoryCorporate directory verificationUsername and password verification as first factor
SMS OTPOne-time password via SMSEnter 6-digit code received via SMS
Email OTPVerification code via emailEnter code received via email for second factor authentication
Push NotificationInstant approval via mobile appLogin by Accept/Decline on notification in mobile app
TOTP (Soft OTP)Time-based token (SecTrail Authenticator)Generate 6-digit time-based code from mobile app, offline usage
Local UserLocal databaseLocal username and password authentication in non-LDAP environments
Admin Approved (Approved OTP)Hierarchical approval systemLogin with OTP code approved by administrator for critical access
QR LoginPasswordless login with QR codeScan QR code on screen with mobile app for passwordless login
Mail AuthClick approval via emailVerification by clicking link in email
LDAP + OTPCombination of LDAP password and OTPEnter both LDAP password and OTP code on single screen
WebAuthnHardware key with FIDO2 standardAuthentication with platforms like Windows Hello, Touch ID

πŸ†• Newly Added Authentication Methods​

New features introduced with SecTrail MFA v2.0:

  • Login with QR: Instant login by scanning a QR code with the mobile app
  • WebAuthn: Support for FIDO2 compliant platforms (Windows Hello, Touch ID, etc.)
  • LDAP+OTP: Entering both LDAP password and OTP in a single step
  • Mail Auth: Link-based approval system via email
  • Approved OTP: Administrator-approved access control

Quick Start​

  1. πŸ”§ Initial Installation - System setup
  2. πŸ”‘ License Management - License activation
  3. 🌐 Adding a RADIUS Client - Device definition
  4. 🎯 Application Profile - Factor configuration

Highlighted Features​

πŸ” True Multi-Layered Security​

SecTrail MFA fully supports multi-factor authentication - you can create multiple factors.

  • Two-Factor (2FA) and Multi-Factor (MFA) authentication
  • Flexible factor chains: Configure as many factors as you need (unlimited)
  • Support for multiple methods for each factor
  • Ability to freely arrange the factor order

βš™οΈ Smart Policy Engine​

  • User, group, and department-based policies
  • Access control based on time, geolocation (GeoIP), and IP
  • Rules based on Active Directory attributes

πŸ“Š Logging and Reporting​

  • All authentication attempts
  • Real-time monitoring and audit trail
  • Syslog integration (SIEM)
  • Dashboard and graphical reports

πŸ‘€ Register Portal​

  • Mobile App Registration Panel - SecTrail Authenticator registration
  • WebAuthn Registration Panel - Platform management (Windows Hello, Touch ID, etc.)
  • SSO Session View - Check and manage active sessions
  • Password Reset Panel - Password reset

For detailed information, see the Register Panel page β†’

πŸ“± SecTrail Authenticator Mobile App​

SecTrail Authenticator generates a soft token for applications secured with SecTrail as well as many well-known applications like Azure, GitHub, Twitter, Gmail.

  • iOS and Android support
  • Push Notification: Instant approval notifications
  • TOTP Token: Time-based tokens for offline use
  • QR Login: Passwordless login with QR code
  • Multi-account management

Documentation Sections​

πŸ“š Getting Started​

Introduction to SecTrail MFA, basic concepts, and a quick start guide.

πŸ” Authentication Methods​

11+ different authentication methods - LDAP, SMS OTP, Push, WebAuthn, and more.

πŸ›‘οΈ Access Control​

Geolocation, time, IP-based access control policies, and security settings.

πŸ”Œ Integrations​

Integration guides for VPNs, firewalls, web applications, and other systems.

πŸ“– User Guide​

Step-by-step configuration guides and usage examples.

πŸ› οΈ Registration Panel​

System administration, backup, licensing, and maintenance operations.

Support​

πŸ“ž 24/7 Technical Support - Our experienced engineering team is always ready to assist you.


SecTrail MFA - Multi-Factor Authentication with Secure Access Solution