Doubt about privacyIDEA

I was looking for a solution to add the second authentication factor to my radius authentication process (pap + ipsec concentrator).
I guess that the privacyIDEA solution could act as a proxy radius, so validating the otp process.
Well, during this proxy process, is it possible to add a call REST inside privacyIDEA to validate one more authentication method and apply a conjunction to the three methods (otp, biometric via REST, password pap)?

How are you in doubts?