Friday, January 22, 2021

Azure oauth2 VPN authentication with new SMB firewall

We currently have a Cisco ASA (5512) firewall at our SMB which is EOL. Besides firewall functionality we use the VPN quite a lot. Since we use Azure/Office 365 for 90% of our business, it would be great to integrate Azure oauth2 authentication to our VPN so that end-users have just one username and password (with MFA) for most services.

Because the ASA is EOL, it's time to search for a new firewall solution, preferably with the possibility to authenticate VPN users via Azure. I've seen some documentation on integrating the ASA's VPN ( Configure ASA AnyConnect VPN with Microsoft Azure MFA through SAML - Cisco ), but I'm also kinda curious about other brands like Fortinet and Palo Alto. I've read some thing about Fortigate being picky on only supporting their own MFA system.

Are there any brands of firewall that provide this functionality in a pretty straight forward manner, without requiring any on-premise infrastructure (beside the firewall of course)?



No comments:

Post a Comment