KB0011168
Virtual Private Network (VPN)
VPN Home
Do I Need to Use VPN?
- You do not need to use VPN for on- or off-Grounds access to most services (e.g., Zoom, UVA Collab, Microsoft 365, and others).
- You do need VPN for off-Grounds access to some Library resources, shared drives, etc.
- You should use VPN anytime you are connecting from an untrusted network (e.g. coffee house, fast food restaurant, non-UVA library).
Which VPN Do I Use?
|
How to Install & Connect to VPN
To use VPN, you'll need to install and run the Cisco VPN Client software as described below:
Step 1: Get a Digital Certificate (if you don't have one).
If you've connected to UVA WiFi on Grounds within the last few months, you likely have one.
If not, follow the instructions to get a digital certificate for VPN.
Step 2: If you have the old VPN client, Cisco Secure Client, then you must uninstall it before installing the new version. If you don't have Cisco Secure Client, skip to Step 3.
- Click on the Start menu and search for Add or Remove Programs.
- Select Cisco Secure Client, then click Uninstall.
Note: Do not try to run the uninstaller on the disk image unless you are unable to find the uninstaller listed below.
- Use the Finder to browse to Applications > Cisco.
- Run the Uninstall Cisco Secure Client app.
- If you do not have the Uninstall Cisco Secure Client app, you will need to run the version on the disk image.
- Open the installer disk image and double-click on Uninstall Cisco Secure Client.
- You may encounter the following error screen:
- Click OK.
- Go into System Preference > Security & Privacy > General tab. Click the Open Anyway button as shown below.
- You will then see the following. Click Open.
- You can then click Uninstall to uninstall Cisco Secure Client.
Step 3: Install & set up the Cisco VPN software.
Instructions
- Get the Cisco VPN Client Software and run the installer once it downloads.
- If you can't install software on your computer, contact your departmental local support partner (LSP) (mobile-friendly version).
- You will then see the WinZip Self-Extractor dialogue box and click OK. Note that you may not be prompted to reboot the machine by the installer, but ITS recommends a reboot after the installation completes.
- Accept the defaults to go through the installer.
- Once installed, open the software by going to the search box at the bottom left-hand corner of the screen and type Cisco Secure Client and click to select.
- If users need to access local network resources, such as network printers at home, while in full tunnel mode and connected to the More Secure Network VPN or High Security VPN service, they may need to enable the “Allow Local (LAN) access when using VPN” option in the Cisco Secure Client preferences/options (if you do not need LAN access, skip this step):
- Be sure you've selected the appropriate VPN profile (e.g., High Security VPN) and then click the preferences button.
- When in the preference screen, click the Allow local (LAN) access when using VPN (if configured) box.
- Be sure you've selected the appropriate VPN profile (e.g., High Security VPN) and then click the preferences button.
Installation
- Get the Cisco VPN Client Software and install it on your computer.
- If you can't install software on your computer, contact your departmental local support partner (LSP) (mobile-friendly version).
- Open the new UVA VPN disk image and run “UVA-VPN-Install-5.1.2.42”. You may encounter one or more of the following dialog boxes. Be sure to “Allow” or enable each of the different items.
Click Open System Settings.
Once in System Settings, click the slider next to “Cisco Secure Client – AnyConnect VPN Service” and enter your Admin credentials when prompted.
Click Open System Settings. In the “Privacy and Security” section, click “Allow” under “System software from Application “Cisco Secure Client – Socket Filter” was blocked from loading” and enter your Admin credentials.
Click Allow.There may also be several prompts about notifications and background tasks. Hover over each and if prompted with an “Options” selector, choose “Allow”, entering your credentials when prompted. Items without this selector can be closed.
- Make sure that you are connected to the Internet.
- In Finder, open the Cisco folder then click on Cisco Secure Client.app
- If users need to access local network resources, such as network printers at home, while in full tunnel mode and connected to the More Secure Network VPN or High Security VPN service, they may need to enable the “Allow Local (LAN) access when using VPN” option in the Cisco Secure Client preferences/options (if you do not need LAN access, skip this step):
- Be sure you've selected the appropriate VPN profile (i.e. High Security VPN) and then click the preferences button.
- When in the preference screen, click the Allow local (LAN) access when using VPN (if configured) box.
- Be sure you've selected the appropriate VPN profile (i.e. High Security VPN) and then click the preferences button.
Instructions
- If you haven't already, go to UVA WiFi Home to run the UVA Network Setup Tool (by SecureW2), used to configure eduroam wireless access. Please do so to configure your device.
- Install Cisco Secure Client
- The Cisco Secure Client for iOS requires iOS version 6.0 or later.
- Review and agree to the software's Terms of Use on the Service Center.
- Download and install the Cisco Secure Client from the iTunes App Store. This is a free download.
- Launch the installed app.
- Tap Connections to configure the app.
- Tap Add VPN Connection.
- Configure the connection settings.
-
- Description: UVA Anywhere
- Server Address: enter https://uva-anywhere-1.itc.virginia.edu
- Tap Save
-
- The UVA Anywhere configuration is now complete.
q
Step 4: Connect to the VPN (whenever users need to connect to the VPN).
If you have an iOS device, see iOS connection instructions below.
Connect a Computer to UVA Anywhere
- If you haven't already, open the Cisco Secure Client.
- Choose UVA Anywhere from the dropdown list.
If the UVA Anywhere is not listed, enter this URL: https://uva-anywhere-1.itc.virginia.edu - Click Connect.
Connect an iOS Device to UVA Anywhere
- If you haven't already, launch the Cisco Secure Client app.
- To connect, tap the Off switch to connect to the UVA Anywhere VPN.
- Success! When you have successfully connected, the switch will display On and Connected will show in the Details field.
- Disconnect when finished.
When finished, return to the Cisco Secure Client app and tap the On switch. Wait for the Details field to say Disconnected.
- Open the Cisco Secure Client.
- Choose the appropriate profile from the dropdown list.
If the UVA VPN Service you wish to use is not listed, enter the appropriate URL:
- UVA Anywhere: https://uva-anywhere-1.itc.virginia.edu
- High Security VPN: https://joint-vpn-1.itc.virginia.edu/
- More Secure Network: https://moresecure-vpn-1.itc.virginia.edu
- Click Connect.
- In the Password field (screenshot below), select one of the following methods to authenticate:
- If you have the Duo app on your smartphone: You can either type the word push to send a push notification which you can approve, or type in a passcode generated by the app.
- If you have a Duo Token: Type in a passcode generated by the Duo Token.
- If you are unable to use one of the above options, type in a passcode generated by the following steps:
- Visit the Duo Security tab in the Identity and Access Management (IAM) portal.
- Click the Generate Random Codes button at the bottom of the screen.
- Go back to the VPN screen (as shown below) and type the first IAM portal bypass code into the VPN password field.
- *Note: You can also save the rest of the bypass codes to use in the future by clicking Print Bypass Codes (you MUST turn off pop-up blockers to view print screen) then clicking Save to save as a PDF.
Note: The authentication notifications are limited to the options above when using 2-Step Login (Duo) with the UVA More Secure Network or High Security VPN.
Step 5. Accept network use terms on connecting.
All traffic and actions on the UVA network are subject to University policies. Regardless of the device, UVA users authorized to use our VPN services and networks have to "accept" usage terms each time they connect. This applies to all of our VPN services (UVA Anywhere, More Secure Network, & High Security VPN). You will see the second "banner" screen when connecting to the network through a VPN service; click "Accept" to proceed with your connection.
In order to prosecute unauthorized users who access our systems, we must provide notice that access to UVA networks is for authorized UVA use only. Otherwise, law enforcement (e.g. FBI) will not hold non-authorized users responsible for malicious activity on our networks.
Related Topics (NetBadge Login Required)
- For Local Support Partners:
Short URLs for this page: https://in.virginia.edu/vpn and https://in.virginia.edu/vpn#configure