This article explains why RADIUS authentication does not support Okta FastPass.
- Okta FastPass
- Okta Identity Engine (OIE)
- RADIUS
The RADIUS authentication flow is a legacy authentication method. RADIUS does not support FastPass since FastPass requires device interaction, and it uses API Calls for authentication.
Okta supports the following factors for RADIUS apps:
- Custom TOTP Authentication
- Duo (Push, SMS, and Passcode only)
- Google Authenticator
- Okta Verify (TOTP and PUSH)
- RSA Token/ On-prem MFA
- Security Question ( password + MFA only )
- SMS authentication
- Symantec VIP
- Voice Call
- YubiKey
Please see the Related References section below for more details about all supported factors for RADIUS authentication.
NOTE: If users can enroll in too many factors, the challenge message can be too large for the RADIUS prompt. Okta recommends enrolling no more than eight factors at a time.
