I have recently joined the Infrastructure department of an organization and asked to deploy an open-source 2FA solution for SSL-VPN login. We are using a Fortigate firewall for VPN and AD for end-user authentication.
I have installed PrivacyIdea in centOS and i’m able synchronize the users from AD.
Can you please help me with below queries-
What will be architecture of Radius, AD,firewall(VPN) and PrivacyIdea?
I actually just finished implementing this with a Fortigate. You’ll use the privacyidea-freeradius plugin to get the Fortigate authenticating against PrivacyIDEA.