Hi, Did I make any sense in my last email or should I rephrase? Thanks Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro ----- Original Message ----- > From: "Nux!" <nux at li.nux.ro> > To: "Nikos Mavrogiannopoulos" <n.mavrogiannopoulos at gmail.com> > Cc: "openconnect-devel" <openconnect-devel at lists.infradead.org> > Sent: Friday, 16 September, 2016 20:00:04 > Subject: Re: Ocserv 2FA Duo > Nikos, > > When we enable Duo in our Cisco, Anyconnect client will ask 1. the local radius > pw as well as 2. the Duo token - as a second password. > The user inputs 2 passwords. > > Do you see any reason why the above should not work with Ocserv? > > Right now I have not managed to get the above to work, before I go and pester > Duo support, I want to make sure Ocserv is actually capable of it. > > Thanks > -- > Sent from my mobile device. Please excuse my brevity. > > On 16 September 2016 15:34:40 BST, Nikos Mavrogiannopoulos > <n.mavrogiannopoulos at gmail.com> wrote: >>On Fri, Sep 16, 2016 at 3:32 PM, Nux! <nux at li.nux.ro> wrote: >>> Nikos, >>> Would you be able to say whether Ocserv can ask for 2 passwords, say >>, if PAM asked it to? >> >>Not sure what that means exactly, but ocserv can handle multiple >>password from PAM. You can even change your local password with the >>PAM backend. >> >>regards, > >Nikos