16.3 Preparing to Deploy an MFA Server

To deploy an MFA server, the OES environment must have the following:

  • Unified Management Console (UMC) server (OES 24.4)

    Ensure that either all the instances of UMC servers use the same database or the databases used by different instances of UMC server are synchronized.

    Ensure that all instances of UMC server are updated to OES 24.4.

  • NetIQ Advanced Authentication (AA) server (AA 6.3 and AA 6.4 versions)

    AA server should have a valid server certificate, and its CA certificate must be available in the MFA server and smartphone. The Smartphone Push method does not work, if CA certificate is not available in smartphone. If CA certificate is not available in the MFA server, it can be installed by copying it to the path /usr/share/pki/trust/anchors.

NOTE:eDirectory administrator credentials are required to configure the MFA server.