Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Service typeOperating Systems2FA option(s)Notes
Secure ShellLinux, Unix, Windows, OS X

Password protected public key, or

Toopher (via PAM), or

PAM OATH, or

VPN group with IPTables firewall rules/router ACLs

 

 

OATH Toolkit: http://www.nongnu.org/oath-toolkit/

Remote DesktopWindows

Certificate-based auth, or

Toopher, or

VPN group with firewall rules/router ACLs

 
VNCLinux, Unix

SSH tunnel with password-protected public key, or

VPN group with firewall rules/router ACLs

 
Absolute Manage ServerOS X, WindowsVPN group with firewall rules/router ACLsNetwork configuration information can be found on ITS' Absolute Manage wiki pages: Ports used by Absolute Manage
Apple Remote DesktopOS X

SSH tunnel with password-protected public key, or

VPN group with firewall rules

 

/router ACLs

Apple Remote Desktop is acceptable without the listed 2FA only if it is configured with the observation and control options disabled, and the “request permission to control screen” option enabled. This is a technical limitation inherent in the OS X environment and ISO's position is subject to change pending improvements in this area.
TeamViewer*

VPN group with firewall rules/router ACLs, or

OATH compliant app (e.g., Google Authenticator, Toopher, Duo Security)