<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008G7VVkSANOkta Classic EngineMulti-Factor AuthenticationAnswered2026-03-18T09:00:57.000Z2018-03-27T18:30:02.000Z2020-12-21T06:13:33.000Z
SonicWall SSO SSL VPN integration
I am trying to utilize Okta identity management to authenticate users to connect SonicWall SSL-VPN.

 

Currently SSL-VPN connection (NetExtender) is authenticated through RSA radius, but would like to use Okta, if possible. 

 

Would the ideal setup include using Okta's Radius agent and connect it to the SonicWall firewall? Is there another way to use Okta and SonicWall? The NSA series firewall currently does not support SAML. (I did see the help question from 2015, but I thought to see there was any advancements)


ChrisW.98758 and t4g7y like this.
  • joel.flood (Customer)

    Niel,

    I was able to accomplish using Okta radius agent, and Okta Verify as the authentication provider.

  • wq9mm (wq9mm)

    Thanks Joel, I was able to do the same. Although I am, having issues using email as a factor. The only way I could get this working was by using one time passcodes generated from the Okta Verify, it would also only work if I entered the “password,OTP”

    Did you experience similar behavior? Or were you able to successfully use the MFA prompts?
    Expand Post
  • joel.flood (Customer)

    I would not use email as a factor, that is that is a security risk.

    from netextender

    "password,push"

    it will then send a push notification to the Okta Verify for the user to approve.

    Trying to do the OTP is tough for most users as it cycles through quickly.

    Expand Post
  • wq9mm (wq9mm)

    I am well aware about the security risk of enabling email as a factor. We only have a few accounts configured with email plus if email is configured then an additional factor like SMS is required.
  • joel.flood (Customer)

    Okay, I just wanted to raise the issue, it seems like you have thought it out.

    Please let me know if you have any further integration issues.

  • wq9mm (wq9mm)

    Thank you for the collaboration. I appreciate the update!
  • ChrisW.98758 (Customer)

    I am trying to attempt this myself, however everytime i select a factor netextender kicks out saying invalid username and password. Did either of you run into this? If i turn off MFA in the radius app i can access the VPN just fine.

  • joel.flood (Customer)

    Chris, in the password field, you need to input the password then a comma and then the work push. that will push the the notification to the Okta verify app on your mobile device.

    password,push

    The SMS option works similar, just password,sms

    Assumptions- the firewall is configured appropriately, Okta radius agent installed, Okta radius app assigned to user, Okta Verify installed on mobile device.

    Expand Post
10 of 18
This question is closed.
Loading
SonicWall SSO SSL VPN integration