• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

Company · Blog · Newsletter · Events · Partner Program

Downloads      Support      Security     Admin Login
Rublon

Rublon

Secure Remote Access

  • Product
    • Regulatory Compliance
    • Use Cases
    • Rublon Reviews
    • Authentication Basics
    • What is MFA?
    • Importance of MFA
    • User Experience
    • Authentication Methods
    • Rublon Authenticator
    • Remembered Devices
    • Logs
    • Single Sign-On
    • Access Policies
    • Directory Sync
  • Solutions
    • MFA for Remote Desktop
    • MFA for Remote Access Software
    • MFA for Windows Logon
    • MFA for Linux
    • MFA for Active Directory
    • MFA for LDAP
    • MFA for RADIUS
    • MFA for SAML
    • MFA for RemoteApp
    • MFA for Workgroup Accounts
    • MFA for Entra ID
  • Customers
  • Industries
    • Financial Services
    • Investment Funds
    • Retail
    • Technology
    • Healthcare
    • Legal
    • Education
    • Government
  • Pricing
  • Docs
Contact Sales Free Trial

Multi-Factor Authentication (2FA/MFA) for Pulse Connect Secure SSL VPN – RADIUS

Multi-Factor (MFA) and Two-Factor Authentication (2FA) for Pulse Connect Secure SSL VPN using RADIUS

February 10, 2021 By Rublon Authors

Last updated on February 6, 2025

Overview

The purpose of this document is to enable Rublon Two-Factor Authentication (2FA) for users logging in to Pulse Connect Secure SSL VPN. In order to achieve that using RADIUS (e.g. FreeRADIUS) as your authentication source, you have to use Rublon Authentication Proxy, an on-premise RADIUS proxy server, which allows you to integrate Rublon with Pulse to add Two-Factor Authentication to your logins.

Supported Authentication Methods

Authentication Method Supported Comments
Mobile Push ✔ N/A
WebAuthn/U2F Security Key – N/A
Passcode ✔ N/A
SMS Passcode – N/A
SMS Link ✔ N/A
Phone Call ✔ N/A
QR Code – N/A
Email Link ✔ N/A
YubiKey OTP Security Key ✔ N/A

Before you start

You need to install and configure Rublon Authentication Proxy before configuring Pulse Connect Secure SSL VPN to work with it. Read Rublon Authentication Proxy and follow the steps in Installation and Configuration sections. Afterwards, continue with this document.

Configuration

1. Log in to Pulse admin panel.

2. Go to Authentication → Auth. Servers.

3. Select RADIUS Server in the New dropdown, and click New Server….

4. Fill in the fields in the Settings tab. Refer to the following image and table.

NameEnter a name for your authentication server, e.g. Rublon Authentication Proxy.
RADIUS ServerEnter the IP address of your Rublon Authentication Proxy.
Authentication PortEnter the port of your Rublon Authentication Proxy.
Shared SecretEnter the RADIUS Secret of your Rublon Authentication Proxy.
TimeoutSet to 180 seconds.
RetriesSet to 3.

5. Keep default values of all other fields. Scroll down to the bottom of the page. Click Save Changes.

6. Go to Users → User Realms → New User Realm….

7. Set a Name for your new realm, e.g. Rublon Authentication Proxy.

8. Select the previously created Rublon Authentication Proxy authentication server in the Authentication dropdown.

9. Click Save Changes.

10. Go to Authentication Policy → Password.

11. Select Allow all users (passwords of any length) and click Save Changes.

12. Select the Role Mapping tab and click New Rule….

13. Set a name of your choice for your new rule.

14. Set Rule:If username… to is *.

15. Assign a Users role. Select Users on the Available Roles list and click Add ->.

16. Click Save Changes.

17. Go to Authentication → Signing In → Sign-in Policies.

18. Click the */ URL in the User URLs table.

19. Select User picks from a list of authentication realms and select the Rublon Authentication Proxy realm you have created before. To do this, just select Rublon Authentication Proxy on the Available realms list and click Add ->.

20. Click Save Changes.

21. Your configuration is now complete. Your users can now log in to Pulse Connect Secure SSL VPN with Rublon 2FA enabled.

Log in to Pulse Connect Secure with Rublon 2FA

This example portrays logging in to Pulse Connect Secure SSL VPN via a web browser. Mobile Push has been set as the second factor in Rublon Authentication Proxy configuration (AUTH_METHOD was set to push).

1. Open the Pulse VPN login page in your browser.

2. Provide your username and password and click Sign In.

3. You will be sent an automatic push notification on your phone.

4. Tap APPROVE.

5. You will be logged in to Pulse SSL VPN.

Troubleshooting

Blast-RADIUS Vulnerability Protection

RADIUS integrations may enforce the validation of the Message-Authenticator RADIUS attribute as part of their mitigations for the Blast-RADIUS vulnerability.

The Rublon Authentication Proxy supports the Message-Authenticator attribute starting from version 3.5.3. The Rublon Auth Proxy uses the force_message_authenticator option in the configuration file (set to true by default) to safeguard against Blast-RADIUS attacks.

If you are experiencing issues with your RADIUS integration, ensure that the force_message_authenticator is set to true.

If you are using Rublon Authentication Proxy 3.5.2 or older, update to the newest available version.

If you encounter any issues with your Rublon integration, please contact Rublon Support.

Related Posts

Rublon Authentication Proxy

Rublon Authentication Proxy – Integrations

Filed Under: Documentation

Primary Sidebar

Contents

  • Overview
  • Supported Authentication Methods
  • Before you start
  • Configuration
  • Log in to Pulse Connect Secure with Rublon 2FA
  • Troubleshooting
  • Related Posts
Try Rublon for Free
Start your 30-day Rublon Trial to secure your employees using multi-factor authentication.
No Credit Card Required


Footer

Product

  • Regulatory Compliance
  • Use Cases
  • Rublon Reviews
  • Authentication Basics
  • What is MFA?
  • Importance of MFA
  • User Experience
  • Authentication Methods
  • Rublon Authenticator
  • Remembered Devices
  • Logs
  • Single Sign-On
  • Access Policies
  • Directory Sync

Solutions

  • MFA for Remote Desktop
  • MFA for Windows Logon
  • MFA for Remote Access Software
  • MFA for Linux
  • MFA for Active Directory
  • MFA for LDAP
  • MFA for RADIUS
  • MFA for SAML
  • MFA for RemoteApp
  • MFA for Workgroup Accounts
  • MFA for Entra ID

Industries

  • Financial Services
  • Investment Funds
  • Retail
  • Technology
  • Healthcare
  • Legal
  • Education
  • Government

Documentation

  • 2FA for Windows & RDP
  • 2FA for RDS
  • 2FA for RD Gateway
  • 2FA for RD Web Access
  • 2FA for SSH
  • 2FA for OpenVPN
  • 2FA for SonicWall VPN
  • 2FA for Cisco VPN
  • 2FA for Office 365

Support

  • Knowledge Base
  • FAQ
  • System Status

About

  • About Us
  • Blog
  • Events
  • Co-funded by the European Union
  • Contact Us

  • Facebook
  • GitHub
  • LinkedIn
  • Twitter
  • YouTube

© 2025 Rublon · Imprint · Legal & Privacy · Security

  • English