Skip to main content

March 13, 2025

2 Factor Authentication on Unified Access Gateway

Starting with DaaS 9.2.2, you must configure 2 Factor Authentication (2FA) on Omnissa Unified Access Gateway [for Horizon/Workspace ONE] from the Tenant Admin portal.

To configure 2FA on Unified Access Gateway (UAG) prior to 9.2.2 please see the Omnissa Unified Access Gateway documentation on the Omnissa Product Documentation portal.

Prerequisites

Note: If a tenant prior to DaaS 9.2.2 has 2FA configured on a tenant you will see a warning message indicating that two-factor authentication (2FA) was moved from the Omnissa Horizon DaaS Tenant Administration portal to the Omnissa Unified Access Gateway (UAG). Before upgrading to 9.2.2, make sure to disable 2FA from the Tenant Admin Portal and move the 2FA configuration to the UAG for ORG-ID: ['1001'].

  • Supported UAG versions are 23.3, 23.6 and 23.9.

  • To enable 2FA for RSA SecurID, see Configuring 2 Factor Authentication on RSA SecurID.

  • To enable 2FA for RADIUS on your internal network, see Configuring 2 Factor Authentication on Radius.

  • To configure 2FA on UAG from the Tenant Admin portal, you will need the following.

    • UAG URL - in the form of https://ip_address:port_number
    • UAG admin username
    • UAG admin password

    If the Service Provider deploys UAG the following data will come from policies set on the Service Provider level.

    • tenant.uag.url
    • tenant.uag.admin.username
    • tenant.uag.admin.password

    The policy tenant.2fa.through.uag should be false to get this workflow on the Tenant Admin portal.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…