Dual Factor Auth VPN with Google Authenticator

So for those interested i finally managed to create a Mikrotik L2TP/IPSec VPN with dual factor authentication.

It involved creating a radius server in linux using freeradius, then setting up freeradius to use MySQL database for user/pass authentication.
Then writing a script that will update the password inside the database to include the Time based OTP (using oathtool) together with the user defined password via
a simple shell script. Its crude but gets the job done since i couldn’t find a more “Mikrotik” way of doing it.

If i get some people interested in how i did it, i’ll be willing to type up a small howto.

But yes it can be done :slight_smile:

Hi, really cool, any chance you could share your setup?

I am also very interested.
Would be glad about a guide.

Dear Nico
This is precisely what I am working now, and it would be really fantastic if you could share the information with us.

Thank you very much in advance.
Regards

Hi nico, can you share the method with me? ill be so thankful if u can share it here, or contact at my email havezt.alghofiqi@gmal.com . Thank You!

Hi Nico

I am also very interested.
I would be very helpful if you could share the guide with me.

Thanks!

Hi Nico,

I’m very interesting with this project.
Could you share the project with me?

Thanks!

I’m also interested in this.

I’m interested in this feature as well. Can the OP provide any further information about how he configured this, including script examples and configurations for MT?

I’m also interested on this one. Can we have the sample config and script? :slight_smile:

Many thanks!

Hi Nico,

I am also interested in your solution.

Did anybody get info from Nico? If yes, could you please share ?
Thanks
Balazs

Dear all,


Anyone have the solution description? we are very interested on this.



Thanks a lot,

I’m also very interested into this solution. Where can i obtain some instructions how to achieve that?