Skip to main content

NPS RADIUS Extension

NPS RADIUS Extension (RADIUS Extension) is an extension module for Microsoft Network Policy Server (NPS is included in Windows Server) that allows you to implement two-factor authentication for RADIUS-compatible services and applications.

For this, the following is required:

  • Deploy an NPS server in the enterprise network that provides the ability to authenticate over the RADIUS protocol using the credentials of Active Directory catalog users.
  • Configure the target application to authenticate users over the RADIUS protocol on the NPS server.
  • Install RADIUS Extension on the NPS server, which processes authentication requests and requires the second authentication factor from the user.

Authentication by the second factor is performed on the Axidian Access server, and the verification result is transmitted through the NPS server to the target application.

Install and configure NPS RADIUS Extension

Authentication technologies​

As the second factor, RADIUS Extension supports authentication with the following technologies:

  • OATH one-time passwords: TOTP and HOTP
  • one-time codes sent by SMS and email
  • one-time passwords in the Telegram application
  • push notifications with login confirmation in the Axidian Key mobile application

Where it can be used​

Authentication over the RADIUS protocol can be used in many VPN and VDI solutions, for example in the software products of Cisco, Citrix, Check Point, and VMware.