Duo for easy 2FA login for your lab components and beyond..

LinuxRacrLinuxRacr Member Posts: 653 ■■■■□□□□□□
About a month ago I stumbled across Duo Security's solution to two-factor authentication while looking at a viable way to give my wife VPN access to the home network. As passwords are usually one of the weakest link in security, I wanted to have a way to mitigate this by using a password (something you know), and an existing mobile phone (something you have). I must say that I really like the way this works, and that they make security easy to deliver and use.

Here is a link to the many integrations possible. https://www.duosecurity.com/docs

I have a Cisco router that I configured to use RADIUS for login, and an Intel NUC Linux server that acts as my RADIUS server and DuoAuthProxy server. I've also tested integrations with RDP and LINUX logins (PAM and SSH), and I am pleased. Check it out.

NUC1_zpsc4e2b72a.jpg
NUC2_zps7cc08d20.jpg
NUC3_zps30cefc04.jpg
DUOUNIX1_zpsd4cd4927.jpg
My WGU B.S. IT - Security Progress : Transferred In|Remaining|In Progress|Completed
AGC1, CLC1, GAC1, INC1, CTV1, INT1, BVC1, TBP1, TCP1, QLT1, HHT1, QBT1, BBC1 (39 CUs), (0 CUs) (0 CUs)
WFV1, BNC1, EAV1, EBV1, COV1 | MGC1, IWC1 | CQV1, CNV1, IWT1, RIT1 | DRV1, DSV1, TPV1, CVV1 | EUP1, EUC1, DHV1| CUV1, C173 | BOV1, CJV1, TXP1, TXC1 | TYP1, TYC1, SBT1, RGT1 (84 CUs) DONE!

Comments

  • LinuxRacrLinuxRacr Member Posts: 653 ■■■■□□□□□□
    Anyone else tried them out?
    My WGU B.S. IT - Security Progress : Transferred In|Remaining|In Progress|Completed
    AGC1, CLC1, GAC1, INC1, CTV1, INT1, BVC1, TBP1, TCP1, QLT1, HHT1, QBT1, BBC1 (39 CUs), (0 CUs) (0 CUs)
    WFV1, BNC1, EAV1, EBV1, COV1 | MGC1, IWC1 | CQV1, CNV1, IWT1, RIT1 | DRV1, DSV1, TPV1, CVV1 | EUP1, EUC1, DHV1| CUV1, C173 | BOV1, CJV1, TXP1, TXC1 | TYP1, TYC1, SBT1, RGT1 (84 CUs) DONE!
  • LinuxRacrLinuxRacr Member Posts: 653 ■■■■□□□□□□
    Guess not?
    My WGU B.S. IT - Security Progress : Transferred In|Remaining|In Progress|Completed
    AGC1, CLC1, GAC1, INC1, CTV1, INT1, BVC1, TBP1, TCP1, QLT1, HHT1, QBT1, BBC1 (39 CUs), (0 CUs) (0 CUs)
    WFV1, BNC1, EAV1, EBV1, COV1 | MGC1, IWC1 | CQV1, CNV1, IWT1, RIT1 | DRV1, DSV1, TPV1, CVV1 | EUP1, EUC1, DHV1| CUV1, C173 | BOV1, CJV1, TXP1, TXC1 | TYP1, TYC1, SBT1, RGT1 (84 CUs) DONE!
  • cyberguyprcyberguypr Mod Posts: 6,928 Mod
    I use their LastPass integration. Very elegant solution.
  • netsysllcnetsysllc Member Posts: 479 ■■■■□□□□□□
    I love Duo, I use it for some wordpress sites and other things personally and also for Citrix Xenapp at work. I use 2F for almost anything I can.
  • LinuxRacrLinuxRacr Member Posts: 653 ■■■■□□□□□□
    I am running into issues with my 2FA since upgrading my phone to Android 6. It seems that the push notification is broken. Anyone else experiencing this?
    My WGU B.S. IT - Security Progress : Transferred In|Remaining|In Progress|Completed
    AGC1, CLC1, GAC1, INC1, CTV1, INT1, BVC1, TBP1, TCP1, QLT1, HHT1, QBT1, BBC1 (39 CUs), (0 CUs) (0 CUs)
    WFV1, BNC1, EAV1, EBV1, COV1 | MGC1, IWC1 | CQV1, CNV1, IWT1, RIT1 | DRV1, DSV1, TPV1, CVV1 | EUP1, EUC1, DHV1| CUV1, C173 | BOV1, CJV1, TXP1, TXC1 | TYP1, TYC1, SBT1, RGT1 (84 CUs) DONE!
  • Mike7Mike7 Member Posts: 1,107 ■■■■□□□□□□
    I used their solution for RDP. Push notification was very convenient.
Sign In or Register to comment.