ONTAP authentication method and application of Cisco DUO 2FA
Applies to
- ONTAP 9
- Cisco Duo 2FA
Answer
Authentioncation-Method | Application |
domain | HTTP, SSH |
nsswitch | HTTP, SSH |
password | HTTP, SSH |
publickey | SSH |
SAML 2.0 | HTTP |
Notes:
- An ONTAP locally administered administrator or domain account with chained primary and secondary authentication methods of password and publickey, or nsswitch and publickey.
- Time-based-one-time password (TOTP) is a temporary passcode generated by an algorithm that uses the current time of day as one of its authentication factors. TOTP can only be used as secondary authentication method for local users.
- SAML 2.0 where ONTAP System Manager or Active IQ Unified Manager are the service provider role to support Cisco DUO starting in ONTAP 9.12.1.
Additional Information
For more details, see TR-4647: Multifactor authentication in ONTAP Best practices and implementation guide