Issues with Duo Security Push 2FA Since Upgrade

Issues with Duo Security Push 2FA Since Upgrade

avatar

Hello,

Yesterday we upgraded our server to 2021.1.7.0 so we could upgrade the manager to 2021.1.20.0 (which we have done as well)

Everything is working except 1 thing, all our users use Duo Security Push notification. Its sending the push but when you accept it on your phone nothing happens on the rd manager client. It just sits there like you haven't pressed accept. If you enter the passcode and press validate it works fine, so i have the users doing that so they can use it.

Users are AD based.

Oddly, if they try the web interface(which we don't use as connections through SSH tunnels don't work in it) the push works there ok. So I'm not sure if it's the server being the problem or the new version of RDM.

If you could let me know what to do next would be great.

Craig

All Comments (3)

avatar

Further testing, The below is all for the same user in order, users that i don't remove/re-add Duo, the use alternate button does nothing but make the duo box disappear then it just sits there.

Test1:

  • I clear 2fa off the user, save setting. Then set the 2fa duo back on for user to set up next login.
  • It allows them to set it up when they reopen RDM
    • then it does another push.
    • This time it works and logs in RDM that one time.
  • After closing and opening the RDM again it goes back to having the original problem.


Test2:

  • I clear 2fa off the user, save setting. Then set the 2fa duo back on for user, and send them a push which the user accepts
  • The user opens RDM
    • it does a duo push
    • the user click accept on their phone. This time it works and logs in RDM
  • User closes and opens RDM, duo push works as it should
  • User closes and opens RDM again, it goes back to having the original problem.


Test3:

  • User opens RDM as normal
    • it does the duo push
    • user accepts on their phone. Nothing happens in RDM (like they didn't click accept)
    • User Clicks Use Alternate, the window goes away and comes back and does another push
    • the user click accept on their phone. This time it works and logs in RDM


avatar

Hello Craig,

This is a known issue between the RDM and Devolutions Server integration in the latest release, it will be resolved in a future RDM version. As a workaround for now, please increase the connection timeout of your data source to 30 seconds, you can follow this KB for instructions:

https://kb.devolutions.net/kb_rdm_task_canceled_exception.html

You will need to make this change on all your RDM instances.

Best regards,

Richard Boisvert

avatar

EDIT: nvm, found how to change

Thank you this resovles it