RADIUS server best practices

This topic describes best practices when deploying the Okta RADIUS Server agent. While the topic uses the Cisco ASA VPN as a VPN Device and F5 as the Load Balancer, customers may replace these with other similar products.

For installation information, see Installing and Configuring the Okta RADIUS Server Agent.

For information on the Okta RADIUS app, see Using the Okta RADIUS App.The app distinguishes between different RADIUS-enabled apps and supports them concurrently by setting up an Okta RADIUS app for each configuration and supports policy creation and then assigning RADIUS authentication to groups. With the Okta RADIUS App, you can configure a RADIUS-enabled app to only use the second factor in multifactor authentication (passwordless mode).

Topics

About certificates

About the Okta RADIUS server agent

About the Okta RADIUS Server Agent flow

RADIUS deployment architectures

RADIUS session persistence

RADIUS throughput and scaling

RADIUS common issues and concerns

RADIUS server logging

RADIUS network zones