Solved

Windows 2003 Active Directory with Azure/PhoneFactor 2 stage auth log for failed login

Posted on 2014-03-10
3
61 Views
Last Modified: 2016-03-07
We just installed Windows Azure (was PhoneFator) and integrated it with Windows 2003 Active Directory.  We succeeded in enabling 2-stage SMS text-based authentication with Azure (yay!).  I used to be able to see all AD login rejections in RRAS logs but that is no longer occurring.  

I can see 2-stage auth failures in the Azure logs for actual user failures that are configured with 2 stage authentication.  I can see non-user (fake names like 'abc') attempts logged there as well.

What I cannot see in any log is when a user that is *not* configured to use 2 stage authentication has a failed login attempt.

Does anyone know where that log entry might be found?
0
Comment
Question by:FDC2005
  • 2
3 Comments
 
LVL 33

Expert Comment

by:Busbar
ID: 39920163
Hi,
by default users not configured for auth will authenticate successfully, make sure that ou disable this on users' properties.
0
 

Accepted Solution

by:
FDC2005 earned 0 total points
ID: 39921338
Thanks for your response.  We have one user who cannot use the 2 stage auth for a while, so they will need to remain as not configured to use 2 stage for now.  They will still need to present their password as previous.  My question was in regard to where I can find failed attempts for this special case of not using 2 stage auth since I am able to see the other 2 cases already of users with 2 stage auth enabled  and undefined users ( such as a fake user 'abc').  

I did figure out my own resolution.  There are 2 logs in Azure/PhoneFactor that when combined will contain all 3 categories of failures:
c:\Program Files\Multi-Factor Authentication Server\Logs\MultiFactorAuthRadiusSvc.log
c:\Program FIles\Multi-Factor Authentication Server\Logs\MultiFactorAuthSvc.log

Thanks!
0
 

Author Closing Comment

by:FDC2005
ID: 41494973
We found the log files.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Join & Write a Comment

The password reset disk is often mentioned as the best solution to deal with the lost Windows password problem. In Windows 2008, 7, Vista and XP, a password reset disk can be easily created. But besides Windows 7/Vista/XP, Windows Server 2008 and ot…
Learn about cloud computing and its benefits for small business owners.
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
With the advent of Windows 10, Microsoft is pushing a Get Windows 10 icon into the notification area (system tray) of qualifying computers. There are many reasons for wanting to remove this icon. This two-part Experts Exchange video Micro Tutorial s…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now