Tori AmundsonTori Amundson 

Ability to have both MFA and non-MFA Okta Radius agent

Is it possible to run multiple Okta Radius agents (on different servers or different ports on the same server) where some are MFA-required and some do not have MFA?  From the way the rules are set up it seems to be 'all or nothing'.

I successfully use Okta Radius with MFA for our Cisco Anyconnect VPN clients across the enterprise.  I also want to use Okta Radius for wired dot1x (802.1x ethernet) on some internal Cisco switches for devices that are not MFA-capable.  Will there be a way to run both types of Radius instance?

(Also, side question: will there ever be an Okta Radius server that will run on a linux/unix box?)
Bogdan AndrisanBogdan Andrisan (Okta, Inc.)
Hello Tori,

Please refer to the following articles, regarding the functionality of the Radius agent. There articles include all the necessary details for handling MFA and multiple Radius enabled apps.


Currently, for an Okta Radius server for linux/unix, what I would recommend is to suggest this on the Okta Community by using the 'Suggest a feature' option at the bottom right hand side of your Okta admin dashboard, or by logging in to your Okta Admin Panel - Help and Training - Community - Ideas- Submit an Idea. Features suggested in our community are reviewed and can be voted and commented on by other members of the community, therefore making it much easier for the engineering team to understand the priorities that you have for feature requests.

Thank you,
Bogdan Andrisan.
Tori AmundsonTori Amundson
Aah! The Okta Radius App (early access feature) seems to be exactly what I'd need.  I'd like to get access to that if possible.  I assume I need to file a support ticket to start that process?