I have the following question is it possible to assign multiple authentication profiles to globalprotect. I wan't to accomplishg the following:
Users of LDAP GROUP X.: Use LDAP authentication only.
Users of LDAP GROUP Y: User RADIUS auth with MFA capabilities.
Is this possible an how can i accomplish this? If somebody could point me into the right direction.
The main reason for asking this is because my radius server (Microosoft NPS server with MFA extension) by default forwards all request to MFA.
And i want certain users to be able to bypass MFA.
Any help on this would be appreciated.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!