DIS VPN Service Client Documentation



Similar documents
Endpoint Security VPN for Windows 32-bit/64-bit

Accessing the Mercy Remote Access Portal (SSL VPN)

Logging into Citrix (Epic) using an RSA Soft Token - New RSA User

Remote Access End User Guide (Cisco VPN Client)

Endpoint Security Client for Mac

RSA Authentication Manager 7.1 Basic Exercises

NAS 323 Using Your NAS as a VPN Server

IMS Health Secure Outlook Web Access Portal. Quick Setup

Downloading the UHVPN Client and setting up Cisco VPN on Windows 7

This document shows new Citrix users how to set up and log in to their Citrix account.

...1 CITRIX REMOTE ACCESS WINDOWS TABLE OF CONTENTS...1 ADDING CITRIX.AKERMAN.COM AS A TRUSTED SITE TO INTERNET EXPLORER

SSL VPN Support Guide

Configuring SSL VPN on the Cisco ISA500 Security Appliance

SSL VPN Service. Once you have installed the AnyConnect Secure Mobility Client, this document is available by clicking on the Help icon on the client.

Yale Software Library

SSL VPN Support Guide

Setting up Remote Desktop

OneLogin Integration User Guide

Global VPN Client Getting Started Guide

Contents. VPN Instructions. VPN Instructions... 1

Accessing TP SSL VPN

RSA SecurID Token User Guide February 12, 2015

For paid computer support call

New Brunswick Internal Services Agency. RSA Self-Service Console User Guide

SHC Client Remote Access User Guide for Citrix & F5 VPN Edge Client

How to Use Your RSA SecurID Software Token for Windows XP, Vista, or Windows 7 (For ICIS remote access)

Aventail Connect Client with Smart Tunneling

Network Connect Installation and Usage Guide

Using YSU Password Self-Service

How to use SURA in three simple steps:

Windows Installation 1. On a Windows PC (For MAC, skip to next section), at the file download prompt click Run.

Instructions for Connecting to PACS outside of a Regional Facility

Windows and MAC User Handbook Remote and Secure Connection Version /19/2013. User Handbook

Instructions for Using Secure . (SMail) via Outlook Web Access. with an RSA Token

Brazosport College VPN Connection Installation and Setup Instructions. Draft 2 March 24, 2005

External Authentication with Cisco VPN 3000 Concentrator Authenticating Users Using SecurAccess Server by SecurEnvoy

BorderGuard Client. Version 4.4. November 2013

EURECOM VPN SSL for students User s guide

Setting Up and Accessing VPN

Bloomfield Hills Schools VPN and Viewconnect Instructions

Authentication Node Configuration. WatchGuard XTM

Connecting to LRDC Fileserver Remotely Using Windows Vista/7 & SRemote VPN

Setting up VPN and Remote Desktop for Home Use

Computer Science and Engineering Windows Cisco VPN Client Installation and Setup Guide

Setting up Citrix XenServer for 2X VirtualDesktopServer Manual

Millbeck Communications. Secure Remote Access Service. Internet VPN Access to N3. VPN Client Set Up Guide Version 6.0

How to connect to via VPN Remote Desktop for Windows 2000, XP, & Vista-32bit

Getting Started - Client VPN

How To Connect To A University Of Cyprus Vpn 3000 From Your Computer To A Computer With A Password Protected Connection

TechNote. Contents. Introduction. System Requirements. SRA Two-factor Authentication with Quest Defender. Secure Remote Access.

How to Use Remote Access Using Internet Explorer

National Fire Incident Reporting System (NFIRS 5.0) Configuration Tool User's Guide

Setting up VPN and Remote Desktop for Home Use

Dell SonicWALL Aventail Connect Tunnel User Guide

WatchGuard Mobile User VPN Guide

Barbara Ann Karmanos Cancer Institute. Instructions for Installing Cisco Systems VPN Client

Hallpass Instructions for Connecting to Mac with a Mac

Access to applications and the network depends on whether or not you are using personal equipment or a Firm-issued laptop or desktop.

Configuring the PIX Firewall with PDM

Configuring Windows 7 to Use Encrypted (WPA-E) Wireless Services a...

STEP 01 Nortel Contivity VPN Client Installation

RSA SecurID Ready Implementation Guide

University of Central Florida UCF VPN User Guide UCF Service Desk

Two-Factor Authentication

Guide for Setting Up Your Multi-Factor Authentication Account and Using Multi-Factor Authentication

Citrix Remote Access Portal U s e r M a n u a l

Online Statements. About this guide. Important information

Tufts VPN Client User Guide for Windows

RSA SecurID Ready Implementation Guide

End User Configuration

Guideline for setting up a functional VPN

AT&T Global Network Client User s Guide

Florida Atlantic University VPN Client Installation Guide

Step-by-Step Setup Guide Wireless File Transmitter FTP Mode

ATTENTION: End users should take note that Main Line Health has not verified within a Citrix

Installation and Configuration of VPN Software

LRDC Computing Services

Arkay Remote Data Backup Client Quick Start Guide

External authentication with Fortinet Fortigate UTM appliances Authenticating Users Using SecurAccess Server by SecurEnvoy

How to Access Coast Wi-Fi

Information Services. Accessing the University Network using a Virtual Private Network Connection (VPN), with Windows XP Professional

VPN Web Portal Usage Guide

How To Integrate Watchguard Xtm With Secur Access With Watchguard And Safepower 2Factor Authentication On A Watchguard 2T (V2) On A 2Tv 2Tm (V1.2) With A 2F

Intel Unite Solution. Standalone User Guide

How do I Install and Use the Cisco VPN Any Connect Client for the Berkeley Campus?

Overview 1. Minimum Requirements for Physician Remote Access - Clinical

Sikorsky Aircraft. Supplier Portal Password Activation Process. Revision H

Important Notes for WinConnect Server ES Software Installation:

This guide provides all of the information necessary to connect to MoFo resources from outside of the office

Virtual Data Centre. User Guide

YSU Secure Wireless Connect Guide Windows XP Home/Professional/Media Center/Tablet PC Edition

How To Connect To Ecs.Org From A Pc Or Mac Or Ipad (For A Laptop) With A Network Connection (For Mac) With The Ipad Or Ipa (For Pc Or Ipac) With An Ipa Or Ip

RSA Authentication Manager 8.1 Help Desk Administrator s Guide

USER MANUAL. CTBTO Remote Access VPN using Cisco AnyConnect

VPN Remote Access Installation and Configuration Guide Operating System: Windows (XP, Vista, 7 and 8)

Tips for Wireless VPN

Security Cooperation Information Portal

Guide to Using Citrix at SLU (Windows)

CONNECT-TO-CHOP USER GUIDE

Accessing The Doctors Clinic Physician Connect

Transcription:

DIS VPN Service Client Documentation Background ------------------------------------------------------------------------------------------------ 1 Downloading the Client --------------------------------------------------------------------------------- 1 Installing the Client Software -------------------------------------------------------------------------- 2 Getting Connected --------------------------------------------------------------------------------------- 4 First Time Users: ------------------------------------------------------------------------------------- 5 Returning Users: -------------------------------------------------------------------------------------- 5 Connection Notes ---------------------------------------------------------------------------------------- 6 IP Address Assignment ----------------------------------------------------------------------------- 6 Tunnel Everything Mode -------------------------------------------------------------------------- 6 Enabling the Client Software to start before the Windows Logon ------------------------ 7 VPN Client Statistics --------------------------------------------------------------------------------- 7 Troubleshooting ------------------------------------------------------------------------------------------ 8 Logging -------------------------------------------------------------------------------------------------- 8 Transport Method ------------------------------------------------------------------------------------- 9 Common Problems ---------------------------------------------------------------------------------- 11 Support ------------------------------------------------------------------------------------------------- 11 Background What is VPN? Virtual Private Networks (VPN) use advanced encryption and tunneling to establish secure end-to-end private network connections over third-party networks such as the Internet. The DIS VPN Service enables traveling employees, telecommuters and branch offices to connect to customer agency networks (Intranets, Extranets) whenever and wherever they require. The DIS VPN Service provides security, affordability, connectivity, reliability, and productivity. Downloading the Client The Cisco VPN Client software available from the DIS Enterprise Security Services web site has been preconfigured for the DIS VPN Service offering. This software is available for download as a zip file at http://security.dis.wa.gov/vpn. This web site is only available for access from the State Governmental Network (SGN) and the Intergovernmental Network (IGN). After the file is downloaded, extract the software either to a permanent file location, or allow the compression utility software to choose a temporary location. Page 1 of 11

Installing the Client Software Please note that the workstation will require a reboot after installation of the Cisco VPN software is complete. After extracting the contents of the zip file, run the Setup.exe program, the following window will appear: Page 2 of 11

1. Click Next to begin installation of the client software. 2. Click Yes to accept the license agreement You will then be presented with the following screen: 3. Click Next to accept the default installation directory. Once the program is successfully installed, the following screen will appear: Page 3 of 11

4. Click Finish and wait for reboot to complete. Getting Connected To launch the VPN Client, select Start > All Programs > Cisco Systems VPN Client > VPN Client. The VPN Client Software application will present the following screen. If no connection entries are listed under the connection entries tab, contact the agency VPN technical contact to learn how to enter this information manually. Page 4 of 11

Please note that by default the transport type is IPSec/TCP, also known as transparent tunneling. 1. Click the connect icon in the upper left to initiate the connection. The 'VPN Client User Authentication for ' window appears. First Time Users: Enter your UserID, e.g. smith155 in the Username field Enter the 6-digit token code currently displaying on your RSA SecurID token in the Password field Enter a 4-digit PIN when prompted Re-enter the 4-digit PIN when prompted for confirmation After seeing the successful authentication banner, all future connection attempts will require the use of a One-Time Password, which is the PIN followed by the 6- digit token code. Returning Users: Enter your UserID, e.g. smith155 in the Username field Enter your One-Time Password (OTP), made up of your PIN and the 6-digit token code currently displaying on your RSA SecurID token, in the Password field. Page 5 of 11

2. Click the OK button to authenticate. After successfully authenticating, a banner window will appear with a similar message. 3. Click the Continue button. The windows will disappear and a closed yellow padlock will be displayed in the system tray (near the clock) symbolizing that a secure VPN connection is active. Connection Notes Now that a VPN connection has been successfully made, verify that routing is occurring properly by accessing an application or intranet site that is only available from within State network. IP Address Assignment After establishing a connection to the DIS VPN Service, the remote workstation is assigned an IP address based upon the group to which the User ID has been assigned. This IP address is taken from an address pool which the customer agency has granted permission to access their network resources. The IP address assigned to a remote computer may differ with each individual connection based upon the number of addresses available and the VPN device to which the connection is made. Tunnel Everything Mode Page 6 of 11

By default, all traffic from the remote workstation is encrypted and routed through the VPN tunnel when connected. This means that when accessing a site such as www.google.com, traffic is being sent through a DIS managed firewall and then being routed to the Internet. Enabling the Client Software to start before the Windows Logon In many instances, a user may want the VPN Client Software to launch prior to logging into their Windows Domain. To enable this feature: 1. Open the VPN Client Software 2. Click Options, Windows Logon Properties 3. Check the Enable start before login checkbox and click OK VPN Client Statistics To view a window displaying statistical information on the current connection, right-click on the yellow padlock in the status bar. Page 7 of 11

Choose the Statistics option, and the following window will be displayed. Troubleshooting If there is need for further information on the client software, the Cisco VPN Client Software documentation can be found on the DIS VPN Service site at http://security.dis.wa.gov/vpn/documents.asp. Logging To troubleshoot problems with a VPN connection, logging may need to be enabled to determine the source of the problem. 1. Start the VPN Client Software, once the Main Window appears, click the Log tab. Page 8 of 11

2. Click the Log Settings icon. Change all of the drop-down menus on this window to 3-High. Click OK when finished. 3. Click the Enable icon to have the client software maintain a log of all items involved with the VPN connection. Note: The Enable icon will toggle between Enable and Disable, if logging is currently off, the icon will be Enable. Transport Method By default, the transport method of the VPN client software is to use IPSec/TCP over port 10000. When troubleshooting a routing issue, this may be disabled. Page 9 of 11

To disable transparent tunneling: 1. Start the VPN Client Software 2. Highlight the connection entry for the DIS Cisco VPN Environment 3. Click the Modify icon The following screen will be displayed. 4. Uncheck the Enable Transparent Tunneling box, and click Save. Page 10 of 11

Common Problems Error VPN Client Software responds with: Error 403, unable to contact the security gateway VPN Client Software prompts multiple times for the User ID and Password after entering this information VPN Client Software prompts for User ID and Password, but then does not connect. VPN Client Software connects successfully, but no routing occurs. VPN Client Software connects successfully, can reach some Internal hosts but not others. Possible Remedy Verify Internet connectivity by attempting to connect to a web page which is not already browser cached. http://www.ipchicken.com will give information about your current IP address to see if NAT is present. Verify that the correct Password of PIN followed by 6-digit tokencode is being entered. The PIN code can be reset by the DIS Help Desk. Verify that there is not a software firewall in place on the workstation that is restricting the VPN connection Verify that no routing occurs by trying to establish a connection with both an internal Intranet Site and an external Internet site. Toggle the transport method as per the earlier description and attempt to reconnect. Verify that there is not an ACL in place restricting access to certain IP s. If an error code is received and is not represented in the table above, consult Cisco's VPN 3000 Client GUI Error Dictionary. Support VPN users should first contact their agency VPN Technical Contact for help with VPN. For agency VPN Technical Contacts, installation support is available from 9:00am to 5:00pm, Monday through Friday. The DIS Help Desk phone # is: (360) 753-2454 If you suspect a problem with the DIS VPN Service, the above Help Desk number is available 24 hours a day/seven days a week. Page 11 of 11