Configuring IBM MFA for generic RADIUS

Generic RADIUS refers to the RADIUS server of your choice that returns a simple allowed/denied response. You must configure IBM® MFA for generic RADIUS if you want to use that authentication factor. IBM MFA supports Password Authentication Protocol (PAP) only.

Before you configure IBM MFA for generic RADIUS, refer to the configuration roadmap in IBM MFA configuration roadmap.

Choosing between generic RADIUS and SafeNet RADIUS

If you are using the SafeNet RADIUS server, as a general rule you should use SafeNet RADIUS instead, as described in Configuring IBM MFA for SafeNet RADIUS. However, if you must use Transmission Control Protocol (TCP) as the connection type, use generic RADIUS. SafeNet RADIUS supports User Datagram Protocol (UDP) only.