---
title: Integration for devices using a RADIUS server
description: You can integrate PingID multi-factor authentication (MFA) into your VPN or remote access system.
component: pingid
page_id: pingid:pingid_integrations:pid_integration_devices_radius_server
canonical_url: http://docs.pingidentity.com/pingid/pingid_integrations/pid_integration_devices_radius_server.html
revdate: May 9, 2022
section_ids:
  about-this-task: About this task
  steps: Steps
---

# Integration for devices using a RADIUS server

You can integrate PingID multi-factor authentication (MFA) into your VPN or remote access system.

## About this task

The following diagram shows a general authentication flow. The actual configuration varies depending on your organizational infrastructure considerations and policies.

![Flowchart showing a typical authentication flow, as described in the topic text.](_images/gxh1603277414984.png)

1. A user opens their IPSec or SSL VPN sign on window and enters a user name and password.

2. The VPN RADIUS client sends their details to the RADIUS Server on PingFederate.

3. PingFederate authenticates the user's credentials using the LDAP server as first-factor authentication.

4. After LDAP authentication approval, the RADIUS server initiates a second authentication using PingID, and the user receives a push notification to the relevant device, such as the PingID mobile app or a YubiKey.

5. The user approves the push notification or responds by entering a one-time passcode (OTP).

6. The PingID cloud service verifies the response and sends it back to the RADIUS server.

7. The RADIUS server returns a response to the VPN. If authentication is denied or an error occurs, the user receives an error message on their VPN window.

To configure PingID VPN integration, complete the following:

## Steps

1. Install the PingID Integration Kit in PingFederate.

   For more information, see [Installing the PingID Integration Kit for PingFederate](installing_the_pid_i_for_pf.html).

2. Configure the RADIUS server settings in PingFederate.

   For more information, see [Configuring a RADIUS server on PingFederate](pid_config_radius_server_pf.html).

3. Configure your VPN client settings.

   For more information, see one of the following sections:

   * [Configure Cisco ASA for PingID MFA](pid_overview_cisco_asa_pid_mfa.html).

   * [Configuring Check Point VPN for PingID multi-factor authentication](pid_configuring_check_point_vpn_multi_factor_authentication.html).

   * [Configuring Juniper for PingID multi-factor authentication](pid_configuring_juniper_for_multifactor_authentication.html).

   * [Configuring Palo Alto Global Protect for PingID multi-factor authentication](pid_configuring_palo_alto_global_protect_multifactor_authentication.html)
