

Configure the SSLVPN Services Group under Users | Local Groups | SSLVPN Services.Assign a SecurID Token to the VPN user.If you have not associated this client with an agent, the client cannot support RSA SecurID authentication.The SonicWall firewall Radius client needs to be associated with an agent.Keep all the other settings by default and click Apply.Under Users | Settings | User Login Settings select RADIUS as one of the authentication method.

#SONICWALL GLOBAL VPN 2FA UPGRADE#
For firewalls that are generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware. The below resolution is for customers using SonicOS 6.2 and earlier firmware. Since we are using RSA SecurID, enter the corresponding username and PASSCODE (+PIN) into the VPN client XAUTH username/password prompt.When a remote VPN client user tries to access the private protected LAN through an SA requiring RADIUS/XAUTH, the VPN client automatically prompts the user for a User Name and Password.Enter the Username and the PASSCODE(+PIN) and click Connect.On the SonicWall NetExtender window set the parameters for the server and domain.Add the All RADIUS Users Group as member of this group and click OK.Configure the SSLVPN Services Group under Manage | Users | Local Users & Groups | SSLVPN Services.Configure the SonicWall NetExtender client.Assign a SecurID Token to the VPN user.If you have not associated this client with an agent, the client cannot support RSA SecurID authentication.The SonicWall firewall Radius client needs to be associated with an agent.Click RADIUS | RADIUS Clients | Add New and configure the settings.You add a RADIUS client in the RSA Security Console.Keep all the other settings by default and Click Apply.Īdd the SonicWall firewall as a RADIUS Client for RSA.Configure the RADIUS Server settings, Add RADIUS server.Under Manage | Users | Settings |User Authentication Settings select RADIUS as one of the authentication method.The below resolution is for customers using SonicOS 6.5 firmware. This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. NOTE: Two factor authentication is accomplished here by combining the PASSCODE and the PIN code. The RADIUS Client is the SonicWall device at the network perimeter that enforces access control for users attempting to access network resources. The RSA RADIUS Server receives users access requests from RADIUS client and forwards them to Authentication Manager for validation.
#SONICWALL GLOBAL VPN 2FA HOW TO#
This article will explain how to use RSA RADIUS with RSA Authentication Manager to directly authenticate SonicWall SSLVPN NetExtender, GVC users attempting to access network resources through the SonicWall firewall.

