On Prem MFA radius client needs to send NAS-IP or NAS-Identifier Skip to main content
https://support.okta.com/help/answers?id=9062a000000xaetqak&refurl=http%3a%2f%2fsupport.okta.com%2fhelp%2fanswers
How satisfied are you with the Okta Help Center?
Thank you for your feedback!
How satisfied are you with the Okta Help Center?
1
2
3
4
5
Very Dissatisfied
Very satisfied
Enter content less than 200 characters.
Ask Search:
Fred WisemanFred Wiseman 

On Prem MFA radius client needs to send NAS-IP or NAS-Identifier

Our 2FA Radius server (Vasco IDENTIKEY) needs NAS-IP or NAS-Identifier to find client.  Can they be added or are they avalable now?
VP Okta AdminVP Okta Admin
I'm running in to this exact same situation. Have you had any response from Okta?
Fred WisemanFred Wiseman
Hi, no i have not but i talked to VASCO about it.  There is an option to disable the check of the NAS Lactation and just use the IP address.  This does vilote the RFC but it works.  The corect solution is to have Okta implment the RFC corectly on there radius agent.  But if you have to get it working you can change your vasco config file: https://www.vasco.com/images/KB_120079_tcm42-47137.pdf
VP Okta AdminVP Okta Admin
Hi Fred,

Thanks. Unfortunately, I'm using Open System as my RADIUS server provider, and they're telling me it's not a configurable option.