Integration Guide. LoginTC

Similar documents
Integration Guide. SecureAuth

Integration Guide. SafeNet Authentication Service (SAS)

Integration Guide. Auvik

Barracuda Networks NG Firewall 7.0.0

Revised: 22 November Integration Guide

Integration Guide. NetIQ Sentinel Enterprise

Two factor authentication for WatchGuard XTM and Firebox Alternative

Two factor authentication for WatchGuard XTM and Firebox IPSec

Integration Guide. AlienVault Unified Security Management (USM)

Integration Guide. Eduroam

Establishing two-factor authentication with Juniper SSL VPN and HOTPin authentication server from Celestix Networks

<Partner Name> <Partner Product> RSA SECURID ACCESS. Pulse Secure Connect Secure 8.3. Standard Agent Client Implementation Guide

Integration Guide. ManageEngine Network Configuration Manager

Barracuda Networks SSL VPN

Integration Guide. SafeNet Authentication Service. SAS using RADIUS Protocol with WatchGuard XTMv. SafeNet Authentication Service: Integration Guide

Integration Guide. Oracle Bare Metal BOVPN

Barracuda SSL VPN Integration

SecureW2 and Wi-Fi Cloud. Integration Guide

<Partner Name> <Partner Product> RSA SECURID ACCESS Implementation Guide. Pulse Connect Secure 8.x

Dell SonicWALL NSA 3600 vpn v

Establishing two-factor authentication with Barracuda SSL VPN and HOTPin authentication server from Celestix Networks

Integration Guide PRTG

Checkpoint SecureClient Integration

Okta SAML Authentication with WatchGuard Access Portal. Integration Guide

Establishing two-factor authentication with Cisco and HOTPin authentication server from Celestix Networks

OneLogin SAML Authentication with WatchGuard Access Portal. Integration Guide

VMware Identity Manager vidm 2.7

Quick Start Guide WatchGuard Technologies, Inc.

4TRESS AAA. Out-of-Band Authentication (SMS) and Juniper Secure Access Integration Handbook. Document Version 2.3 Released May hidglobal.

Two factor authentication for Check Point appliances

Contents GUIDE TO INTEGRATION IMPLEMENTATION

Citrix Access Gateway Implementation Guide

Revised: 08/02/ Click the Start button at bottom left, enter Server Manager in the search box, and select it in the list to open it.

<Partner Name> <Partner Product> RSA SECURID ACCESS Implementation Guide. Cisco Adaptive Security Appliance 9.5(2)

Two factor authentication for Cisco ASA SSL VPN

Two factor authentication for Fortinet SSL VPN

WatchGuard XTMv Setup Guide Fireware XTM v11.8

Two factor authentication for OpenVPN Access Server

WatchGuard XTMv Setup Guide

<Partner Name> <Partner Product> RSA SECURID ACCESS Implementation Guide. CyberArk Enterprise Password Vault

Two factor authentication for SonicWALL SRA Secure Remote Access

RSA Ready Implementation Guide for. Checkpoint Mobile VPN for ios v1.458

Two factor authentication for Cisco ASA IPSec VPN Alternative

Stonesoft Integration

ActivIdentity 4TRESS AAA Web Tokens and F5 BIG-IP Access Policy Manager. Integration Handbook

Mitel Cloud VOIP. Integration Guide

Two factor authentication for Remote Desktop Gateway (RD Gateway) with RADIUS

Microsoft Unified Access Gateway 2010

WatchGuard Firebox and MUVPN. Quick Start Guide. Copyright CRYPTOCard Corporation All Rights Reserved

Qualys Cloud Platform (VM, PC) v8.x Release Notes

Technical Bulletin, November 2014

What s New in Fireware v WatchGuard Training

RSA SecurID Implementation

Quick Start Guide. WatchGuard XCS Platform Appliance Models: 170, 370, 570, 770, and 770R. Guide de démarrage rapide Kurzanleitung Guida introduttiva

Integration Guide. SafeNet Authentication Service. Strong Authentication for Juniper Networks SSL VPN

External Authentication with Checkpoint R77.20 Authenticating Users Using SecurAccess Server by SecurEnvoy

Integrate WatchGuard XTM. EventTracker Enterprise

External Authentication with Ultra Protect v7.2 SSL VPN Authenticating Users Using SecurAccess Server by SecurEnvoy

How to configure the LuxCloud WHMCS plugin (version 2+) Version: 2.2

Two factor authentication for Citrix NetScaler

Two factor authentication for F5 BIG-IP APM

HOB HOB RD VPN. RSA SecurID Ready Implementation Guide. Partner Information. Product Information Partner Name. Last Modified: March 3, 2014 HOB

STRS OHIO F5 Access Client Setup for ChromeBook Systems User Guide

NIELSEN API PORTAL USER REGISTRATION GUIDE

<Partner Name> <Partner Product> RSA SECURID ACCESS. VMware Horizon View 7.2 Clients. Standard Agent Client Implementation Guide

BMC FootPrints 12 Integration with Remote Support

4TRESS FT2011 Out-of-Band Authentication and Juniper Secure Access

VAM. ADFS 2FA Value-Added Module (VAM) Deployment Guide

RSA Ready Implementation Guide for. GlobalSCAPE EFT Server 7.3

LIVENX UPGRADE GUIDE (AIO)

Grandstream Networks, Inc. Captive Portal Authentication via Twitter

WatchGuard Dimension v2.0 Update 2 Release Notes. Introducing New Dimension Command. Build Number Revision Date 13 August 2015

Microsoft Intelligent Application Gateway Installation Notes Table of Contents Introduction Prerequisites

JIRA Integration Guide

How to Integrate RSA SecurID with the Barracuda Web Application Firewall

WatchGuard Cloud Release Notes

Hitachi ID Systems Inc Identity Manager 8.2.6

Administering Jive Mobile Apps for ios and Android

MyFloridaNet-2 (MFN-2) Customer Portal/Password Management Reference Guide

SurePassID Local Agent Guide SurePassID Authentication Server 2016

Manual Firmware Update Guide

Implementation Guide for protecting Juniper SSL VPN with BlackShield ID

<Partner Name> RSA SECURID ACCESS Standard Agent Implementation Guide. WALLIX WAB Suite 5.0. <Partner Product>

<Partner Name> <Partner Product> RSA SECURID ACCESS Implementation Guide. Citrix NetScaler Gateway 12.0

Cloudpath and Aruba Instant Integration

PT Activity: Configure AAA Authentication on Cisco Routers

HOB Remote Desktop VPN

HTG XROADS NETWORKS. Network Appliance How To Guide: PPTP Client. How To Guide

DIGIPASS Authentication for O2 Succendo

WatchGuard Dimension v1.1 Update 1 Release Notes

Lab Guide. Barracuda NextGen Firewall F-Series Microsoft Azure - NGF0501

Two factor authentication for Apache using mod_auth_xradius

Configuring Vulnerability Assessment Devices

VMWARE HORIZON CLOUD WITH VMWARE IDENTITY MANAGER QUICK START GUIDE WHITE PAPER MARCH 2018

Bomgar PA Integration with ServiceNow

Pulse Secure Client for Chrome OS

Protecting SugarCRM with SafeNet Authentication Manager

VMware View (Horizon)

Configuring User VPN For Azure

<Partner Name> <Partner Product> RSA ARCHER GRC Platform Implementation Guide. Swimlane 2.x

Transcription:

Integration Guide LoginTC Revised: 21 November 2016

About This Guide Guide Type Documented Integration WatchGuard or a Technology Partner has provided documentation demonstrating integration. Guide Details WatchGuard provides integration instructions to help our customers configure WatchGuard products to work with products created by other organizations. If you need more information or technical support about how to configure a third-party product, see the documentation and support resources for that product. 2 LoginTC Integration Guide

LoginTC Integration Overview LoginTC provides cloud-based authentication through the RADIUS protocol. This document describes how to integrate LoginTC two-factor authentication with a WatchGuard Firebox and the WatchGuard Mobile VPN with SSL client. Test Topology Platform and Software The hardware and software used to complete the steps outlined in this document include: Firebox with Fireware v11.11.4 installed LoginTC Radius Connector 2.3.0 LoginTC Integration Guide 3

Configure LoginTC Cloud RADIUS Domain Creation To create a LoginTC domain for your RADIUS connector: 1. Log in to LoginTC Admin. 2. Click Domains. 3. Click Create your first domain. The Create Domain page appears. 4. In the Name text box, type the domain name. 5. In the Connector section, click RADIUS. 6. In the Key Policy section, click PIN. 4 LoginTC Integration Guide

Install Radius Connector 1. You can download the Radius Connector from the LoginTC website at https://www.logintc.com/docs/downloads/radius-connector.html. LoginTC Integration Guide 5

2. Unzip the file and import it on your server. The LoginTC RADIUS Connector Configuration console appears. 3. In the Password and Confirm Password text boxes, type the LoginTC user password. 4. In the Appliance Options menu, select Network Configuration. 6 LoginTC Integration Guide

5. In the Network Configuration section, type the IP address. 6. Select DNS Configuration. 7. Type the DNS address. LoginTC Integration Guide 7

8. Select Web Server, and then select Start. It can take 30 60 seconds for the web server to start the first time. 8 LoginTC Integration Guide

9. After the web server starts, access the web interface with the URL that appears in the Notice box. LoginTC Integration Guide 9

Configure the RADIUS Connector 1. Connect to your LoginTC RADIUS Connector URL. 2. To configure the LoginTC RADIUS Connector, type the username and password. In our example, we use logintc-user as the user name. 3. To create your configuration, click Create. 4. To configure the LoginTC organization and domain to use, type the API key and domain ID. 5. Click Test. 6. Click Next. 10 LoginTC Integration Guide

7. Select the first authentication factor to use with LoginTC. In our example, we select RADIUS. 8. In the Host text box, type the RADIUS server IP address. 9. To specify an optional, non-standard port number for your RADIUS server, type the port number in the Port text box. 10. In the Secret text box, type the shared secret used by the RADIUS server and the LoginTC RADIUS Connector. 11. Click Test. 12. Click Next. LoginTC Integration Guide 11

13. To specify which users are challenged with LoginTC, select Static List. 14. In the LoginTC challenge users text box, type one or more user names. In our example, we use tang as our authentication user. 12 LoginTC Integration Guide

15. To configure the RADIUS client, type the RADIUS client name, IP address, and secret. 16. Click Test to validate the values and then click Save. LoginTC Integration Guide 13

Test RADIUS Connector 1. Log in to LoginTC Admin. 2. Select Domains. 3. Select your domain. 4. Click Create Member. The Create User page appears. 5. In the Personal Details section, type the user name, name, and email address of the user. In our example, we specify the user name tang. 6. Click Create. 7. Click Issue Token. 14 LoginTC Integration Guide

8. Start your LoginTC mobile app and type the 10-character alphanumeric activation code. Lock the token with a PIN. 9. After you load a token for the new user and domain, connect to the RADIUS Connector URL. 10. Click Test Configuration. LoginTC Integration Guide 15

11. Enter a valid user name and password. Click Test Configuration. A simulated authentication request is sent to the LoginTC mobile app. 12. Approve the request to continue. 16 LoginTC Integration Guide

Configure the WatchGuard Firebox To configure your Firebox for RADIUS authentication: 1. Connect to your Firebox with Fireware Web UI. 2. Select Authentication > Servers > RADIUS. The RADIUS configuration page appears. 3. Type the RADIUS Connector IP address, port number, and passphrase. 4. Click Save. 5. Select VPN > Mobile VPN with SSL. 6. Select Activate Mobile VPN with SSL. 7. In the Primary text box, type the Firebox IP address. LoginTC Integration Guide 17

8. Select the Authentication tab. 9. Select RADIUS. 18 LoginTC Integration Guide

10. To add an SSLVPN-user, click Add. The Add User or Group dialog box appears. 11. Select User. 12. Type the user name. 13. In the Authentication Server list, choose RADIUS. 14. Click OK. 15. Click Save. Test the Integration To test the integration, we use Mobile VPN with SSL. To download and configure the Mobile VPN with SSL client software from the Firebox: 1. Go to the SSL VPN web portal at https://< Firebox IP address> LoginTC Integration Guide 19

2. In the Username text box, type the user name that you specified in LoginTC. 3. In the Password text box, type the password that you specified in LoginTC. 4. From the Domain drop-down list, select RADIUS. If RADIUS is the only authentication method that you specified for Mobile VPN with SSL, the Domain drop-down list does not appear. 5. Click Login. Your LoginTC mobile app receives an authentication request. 6. In your LoginTC mobile app, click Approve, and type your four-digit PIN. 20 LoginTC Integration Guide

7. After successful authentication, the download page appears. 8. Download the appropriate version of the VPN client for your operating system. Mobile VPN with SSL Client Authentication After you download and install the Mobile VPN with SSL client on your computer, you can use the same authentication process to connect to the Firebox with the Mobile VPN with SSL client. LoginTC Integration Guide 21