I have a client running ThinClient on a Centos/Redhat Linux server. Unfortunately they were the victim of a ransomware attack and have been asked by their insurance carrier to implement a multi-factor authentication (MFA) system on their server. They product under consideration is DUO which is a PAM (Pluggable Authentication Module) compatible utility. As it stands, AcuConnect under Linux does not support PAM therefore I was wondering if anyone has had any experience adopting an MFA system in their operation and if so, what, if any products could be recommended.
I already have a my own internally developed logon/access system for my application which would prevent unauthorized access but the vulnerability is in general shell access to Linux. Therefore some sort of hybrid may be in order
Thank you in advance for any insights
Thanks
Joe Butera
RMS SYSTEMS