Enabling Multi-Factor Authentication for ZTNA Connection Manager (MFA, 2FA, 2-Step)

With the ZTNA Connection Manager installed on an endpoint, and a ZTNA Gateway is Deployed, admins can configure MFA to use SMS, Google OTP or Passkeys. The Passkeys setting includes options such as Windows Hello PIN, Fingerprint and Face.

Regardless of which MFA method is chosen, they are all configured through a RADIUS Policy. The RADIUS Policy defines conditions, access policies, attributes and MFA options.

Click on the appropriate link below depending on which MFA option you would like to enable.