[c-nsp] Router 2 factor authentication

Michael K. Smith - Adhost mksmith at adhost.com
Wed Aug 25 18:42:06 EDT 2010


Hello Mark:


> -----Original Message-----
> From: cisco-nsp-bounces at puck.nether.net [mailto:cisco-nsp-
> bounces at puck.nether.net] On Behalf Of Mark Tech
> Sent: Wednesday, August 25, 2010 1:06 PM
> To: cisco-nsp at puck.nether.net
> Subject: [c-nsp] Router 2 factor authentication
> 
> Hi
> I am looking for a 2FA solution in order to connect to Cisco devices.
I would
> like to use either Radius or TACACS as the AAA part, however I'd like
to know
> whether/how I could interconnect this to a 2nd auth such as a token
based
> RSA
> securID platform
> 
> I'd appreciate any input if this is possible at all?
> 
> Regards
> 
> Mark

We use the SecurID 7.0 servers from RSA and those boxes have the
opensource ACS client as part of the installation.  Or, you can also use
their internal Radius server as well.  Or, if you have already invested
in ACS you can have the ACS authenticate against tokens directly.

Regards,

Mike

--
Michael K. Smith - CISSP, GSEC, GISP
Chief Technical Officer - Adhost Internet LLC mksmith at adhost.com
w: +1 (206) 404-9500 f: +1 (206) 404-9050
PGP: B49A DDF5 8611 27F3  08B9 84BB E61E 38C0 (Key ID: 0x9A96777D)




More information about the cisco-nsp mailing list