• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

Company · Blog · Newsletter · Events · Partner Program

Downloads      Support      Security     Admin Login
Rublon

Rublon

Secure Remote Access

  • Product
    • Regulatory Compliance
    • Use Cases
    • Rublon Reviews
    • Authentication Basics
    • What is MFA?
    • Importance of MFA
    • User Experience
    • Authentication Methods
    • Rublon Authenticator
    • Remembered Devices
    • Logs
    • Single Sign-On
    • Access Policies
    • Directory Sync
  • Solutions
    • MFA for Remote Desktop
    • MFA for Remote Access Software
    • MFA for Windows Logon
    • MFA for Linux
    • MFA for Active Directory
    • MFA for LDAP
    • MFA for RADIUS
    • MFA for SAML
    • MFA for RemoteApp
    • MFA for Workgroup Accounts
    • MFA for Entra ID
  • Customers
  • Industries
    • Financial Services
    • Investment Funds
    • Retail
    • Technology
    • Healthcare
    • Legal
    • Education
    • Government
  • Pricing
  • Docs
Contact Sales Free Trial

Multi-Factor Authentication (2FA/MFA) for SonicWall SMA – RADIUS

Multi-Factor (MFA) and Two-Factor Authentication (2FA) for using RADIUS

February 11, 2021 By Rublon Authors

Last updated on February 6, 2025

Overview

The purpose of this document is to enable Rublon Two-Factor Authentication (2FA) for users logging in to SonicWall SMA 8200v. In order to achieve that using RADIUS (e.g. FreeRADIUS) as the source of authentication, you have to use Rublon Authentication Proxy.

Supported Authentication Methods

Authentication Method Supported Comments
Mobile Push ✔ N/A
WebAuthn/U2F Security Key – N/A
Passcode ✔ N/A
SMS Passcode – N/A
SMS Link ✔ N/A
Phone Call ✔ N/A
QR Code – N/A
Email Link ✔ N/A
YubiKey OTP Security Key ✔ N/A

Before you start

You need to install and configure Rublon Authentication Proxy itself before configuring SonicWall SMA 8200v to work with it. Please read the Rublon Authentication Proxy documentation and follow the steps in Installation and Configuration sections. Afterwards, follow the Configuration section in this document.

Configuration

1. Login to the SonicWall management GUI.

2. Go to System Configuration → Authentication servers.

3. Select New… in the top right corner.

4. Select RADIUS in Authentication directory.

5. Select Username/Password in Credential Type.

6. Click Continue….

7. Set a name, for example Rublon Authentication Proxy.

8. Enter the IP or FQDN of your Rublon Authentication Proxy server in Primary RADIUS server.

9. Enter the RADIUS Secret set in Rublon Authentication Proxy as the Shared Secret in this form.

10. Set Connection timeout to 180.

11. Click Save to create a new authentication server.

8. Go to User Access → Realms.

9. Select +New realm in the top right corner.

10. Set a name for the new realm in the Name field.

11. Set the status to enabled.

12. Check Display this realm.

13. Select the previously created Rublon Authentication Proxy server in Authentication Server.

14. Click Save to add a new realm.

15. Go to Security Administration → Users & Groups.

16. Click New and create a new account whose name corresponds to the cn of a user in the authentication source set in Rublon Access Gateway (in the case of Active Directory).

17. Clicking Pending changes in the top right corner, and then click Apply Changes.

18. Your configuration is now finished. Users have Rublon 2FA enabled when logging in to your VPN.

Log in to SonicWall SMA with Rublon 2FA

1. Open SonicWall SMA.

2. Select the realm to log in to. Click Next.

3. Provide your username and password. Click Log in.

4. Let’s assume Mobile Push is the authentication method chosen in Rublon Authentication Proxy. You will be sent a push notification. Tap APPROVE.

5. You will be successfully logged in to your VPN.

Troubleshooting

Blast-RADIUS Vulnerability Protection

RADIUS integrations may enforce the validation of the Message-Authenticator RADIUS attribute as part of their mitigations for the Blast-RADIUS vulnerability.

The Rublon Authentication Proxy supports the Message-Authenticator attribute starting from version 3.5.3. The Rublon Auth Proxy uses the force_message_authenticator option in the configuration file (set to true by default) to safeguard against Blast-RADIUS attacks.

If you are experiencing issues with your RADIUS integration, ensure that the force_message_authenticator is set to true.

If you are using Rublon Authentication Proxy 3.5.2 or older, update to the newest available version.

If you encounter any issues with your Rublon integration, please contact Rublon Support.

Related Posts

Rublon Authentication Proxy

Rublon Authentication Proxy – Integrations

Filed Under: Documentation

Primary Sidebar

Contents

  • Overview
  • Supported Authentication Methods
  • Before you start
  • Configuration
  • Log in to SonicWall SMA with Rublon 2FA
  • Troubleshooting
  • Related Posts
Try Rublon for Free
Start your 30-day Rublon Trial to secure your employees using multi-factor authentication.
No Credit Card Required


Footer

Product

  • Regulatory Compliance
  • Use Cases
  • Rublon Reviews
  • Authentication Basics
  • What is MFA?
  • Importance of MFA
  • User Experience
  • Authentication Methods
  • Rublon Authenticator
  • Remembered Devices
  • Logs
  • Single Sign-On
  • Access Policies
  • Directory Sync

Solutions

  • MFA for Remote Desktop
  • MFA for Windows Logon
  • MFA for Remote Access Software
  • MFA for Linux
  • MFA for Active Directory
  • MFA for LDAP
  • MFA for RADIUS
  • MFA for SAML
  • MFA for RemoteApp
  • MFA for Workgroup Accounts
  • MFA for Entra ID

Industries

  • Financial Services
  • Investment Funds
  • Retail
  • Technology
  • Healthcare
  • Legal
  • Education
  • Government

Documentation

  • 2FA for Windows & RDP
  • 2FA for RDS
  • 2FA for RD Gateway
  • 2FA for RD Web Access
  • 2FA for SSH
  • 2FA for OpenVPN
  • 2FA for SonicWall VPN
  • 2FA for Cisco VPN
  • 2FA for Office 365

Support

  • Knowledge Base
  • FAQ
  • System Status

About

  • About Us
  • Blog
  • Events
  • Co-funded by the European Union
  • Contact Us

  • Facebook
  • GitHub
  • LinkedIn
  • Twitter
  • YouTube

© 2025 Rublon · Imprint · Legal & Privacy · Security

  • English