Skip to main content

RADIUS Integration

SecTrail MFA can integrate with all systems that support the RADIUS protocol. RADIUS is a widely used protocol for network access controls, and SecTrail MFA provides multi-factor authentication through this protocol.

Example Products:

  • Ivanti
  • F5 Networks
  • CyberArk
  • Palo Alto Networks
  • Checkpoint
  • Cisco
  • Fortinet FortiGate
  • Citrix NetScaler
  • and many more...
RADIUS Compatibility

SecTrail MFA can be integrated with any VPN, firewall, network device, or application that supports the RADIUS protocol.

How It Works

  1. RADIUS Client Definition: You add the VPN/Firewall/Network device to SecTrail MFA as a RADIUS client
  2. Shared Secret: A shared secret is defined for secure communication between the device and SecTrail MFA
  3. Application Profile: You determine which authentication methods will be used
  4. User Login: When the user logs into the VPN/device, SecTrail MFA intervenes and requests additional factors

Supported Authentication Methods

Authentication methods that can be used in RADIUS integration:

  • LDAP Verification: Authentication with an Active Directory or LDAP server
  • Local Verification: Authentication with SecTrail MFA's local user database
  • LDAP+OTP: Two-factor authentication with password + OTP in a single screen
  • Soft OTP: Time-based one-time password via mobile application (SecTrail Authenticator)
  • SMS OTP: One-time password sent via SMS
  • Mail OTP: One-time password sent via Email
  • Push Notification Verification: Approval via push notification through the mobile application (SecTrail Authenticator)
  • Approved OTP: Verification with pre-approved OTP codes

Advantages

  • Universal Compatibility: Works with all devices that support RADIUS
  • Easy Setup: Standard RADIUS configuration
  • Centralized Management: All RADIUS clients are managed from a single point
  • High Performance: Low latency, high throughput