Starting with DaaS 9.2.2, you must configure 2 Factor Authentication (2FA) on Omnissa Unified Access Gateway [for Horizon/Workspace ONE] from the Tenant Admin portal.
To configure 2FA on Unified Access Gateway (UAG) prior to 9.2.2 please see the Omnissa Unified Access Gateway documentation on the Omnissa Product Documentation portal.
-
For RSA: RSA SecurID
-
For Radius: RADIUS
Prerequisites
Note: If a tenant prior to DaaS 9.2.2 has 2FA configured on a tenant you will see a warning message indicating that two-factor authentication (2FA) was moved from the Omnissa Horizon DaaS Tenant Administration portal to the Omnissa Unified Access Gateway (UAG). Before upgrading to 9.2.2, make sure to disable 2FA from the Tenant Admin Portal and move the 2FA configuration to the UAG for ORG-ID: ['1001'].
-
Supported UAG versions are 23.3, 23.6 and 23.9.
-
To enable 2FA for RSA SecurID, see Configuring 2 Factor Authentication on RSA SecurID.
-
To enable 2FA for RADIUS on your internal network, see Configuring 2 Factor Authentication on Radius.
-
To configure 2FA on UAG from the Tenant Admin portal, you will need the following.
- UAG URL - in the form of
https://ip_address:port_number - UAG admin username
- UAG admin password
If the Service Provider deploys UAG the following data will come from policies set on the Service Provider level.
- tenant.uag.url
- tenant.uag.admin.username
- tenant.uag.admin.password
The policy
tenant.2fa.through.uagshould be false to get this workflow on the Tenant Admin portal. - UAG URL - in the form of
Was this page helpful?