Azure MFA Authentication Cloud Based with Cisco Remote Access VPN
Just wondering if we implement Microsoft Azure Multi-Factor Authentication (2MFA) via O365 Cloud based with Cisco Anyconnect VPN for remote authentication, is the Radius/NPS Integration done using the external interface or internal interface?
Usually with Cisco LDAPS authentication (through port 636 for Secure LDAP authentication) and Radius authentication, this is done through the internal interface so not too concern about the security and communication among the ASA and Radius server.
But if we go with Azure MFA Cloud based, just wondering how this will work and if it will be routed through the internet and how secure is it. Is it through certificate or will a VPC needed as a prerequisite.
Microsoft 365* multi-factor authenticationCiscoAzure