Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 38 to 38 | ||||||||
You'll be taken to a web page that will let you download a version of AnyConnect for your operating system (Mac OS X, Windows, or Linux). If you need installation help, click on Instructions in the lower right-hand corner. | ||||||||
Added: | ||||||||
> > | Note: The version of Cisco AnyConnect on that page is for Mac OS 10.15 Catalina and later. If you have an earlier version of Mac OS, contact WilliamSeligman for a link to an older version. | |||||||
Using the VPN clientStart the AnyConnect client program. You may have to "hunt" for its location. For example, on my Macintosh, I found it inApplications->Cisco . | ||||||||
Line: 59 to 61 | ||||||||
Our firewall normally filters out ping![]() mail.nevis.columbia.edu ; it will not succeed. After you connect with AnyConnect, ping mail will work. | ||||||||
Changed: | ||||||||
< < | From outside of Nevis, systems on the local network are "invisible." Once you establish a VPN connection, you should be able to directly ssh![]() ssh student41.nevis.columbia.edu . | |||||||
> > | From outside of Nevis, systems on the local network are "invisible." Once you establish a VPN connection, you should be able to directly ssh![]() ssh tigger.nevis.columbia.edu . | |||||||
Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 (assuming you have an account on elecsim4 , of course!). |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 16 to 16 | ||||||||
If all you want to do is browse the web securely, you may want to consider a web proxy instead. They're a bit harder to set up than VPN, but you don't have to install a program to use it. | ||||||||
Changed: | ||||||||
< < | Here are the steps; the first section only has to be done once. | |||||||
> > | LimitsVPN works for connections from outside the Nevis particle-physics networks. It does not work when connecting from within that network. In particular, the Nevis mansion house and wireless connections within the research and electronics buildings are within the network that VPN protects. You cannot connect to VPN from there. | |||||||
Install Cisco's AnyConnect | ||||||||
Added: | ||||||||
> > | This only has to be done once. | |||||||
Although there are many VPN client programs available, since we have a Cisco firewall I find that the Cisco secure client works best and takes advantage of all the networking features. The simplest way to get Cisco AnyConnect is to download it from the VPN server on our firewall. Visit: | ||||||||
Line: 45 to 51 | ||||||||
If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to VPN. Just restart the connection to have its traffic go through the secure network. | ||||||||
Added: | ||||||||
> > | If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. Then disconnect and reconnect VPN. | |||||||
That's it!
Things to try | ||||||||
Line: 54 to 62 | ||||||||
From outside of Nevis, systems on the local network are "invisible." Once you establish a VPN connection, you should be able to directly ssh![]() ssh student41.nevis.columbia.edu .
Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 (assuming you have an account on elecsim4 , of course!). | ||||||||
Deleted: | ||||||||
< < |
If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. Then disconnect and reconnect VPN. | |||||||
\ No newline at end of file |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 43 to 43 | ||||||||
| ||||||||
Changed: | ||||||||
< < | If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to VPN. Just restart the connection to have its traffic go through the secure network. | |||||||
> > | If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to VPN. Just restart the connection to have its traffic go through the secure network. | |||||||
That's it! |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 53 to 53 | ||||||||
From outside of Nevis, systems on the local network are "invisible." Once you establish a VPN connection, you should be able to directly ssh![]() ssh student41.nevis.columbia.edu . | ||||||||
Changed: | ||||||||
< < | Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 directly (assuming you have an account on elecsim4 , of course!). | |||||||
> > | Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 (assuming you have an account on elecsim4 , of course!). | |||||||
If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. Then disconnect and reconnect VPN.
\ No newline at end of file |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 55 to 55 | ||||||||
Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 directly (assuming you have an account on elecsim4 , of course!). | ||||||||
Deleted: | ||||||||
< < | If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. | |||||||
\ No newline at end of file | ||||||||
Added: | ||||||||
> > | If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. Then disconnect and reconnect VPN. | |||||||
\ No newline at end of file |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 43 to 43 | ||||||||
| ||||||||
Changed: | ||||||||
< < | If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to VPN. Just restart the connection to have its traffic go through VPN. | |||||||
> > | If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to then VPN. Just restart the connection to have its traffic go through the secure network. | |||||||
That's it! |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 43 to 43 | ||||||||
| ||||||||
Added: | ||||||||
> > | If you have any active network connections (e.g., you have an ssh session open) they'll probably be cut off when you connect to VPN. Just restart the connection to have its traffic go through VPN. | |||||||
That's it!
Things to try |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 38 to 38 | ||||||||
When you start the application: | ||||||||
Changed: | ||||||||
< < |
| |||||||
> > |
| |||||||
|
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
VPN (Virtual Private Network) | ||||||||
Line: 14 to 14 | ||||||||
Normally, to access a machine on the local network, you use ssh![]() | ||||||||
Added: | ||||||||
> > | If all you want to do is browse the web securely, you may want to consider a web proxy instead. They're a bit harder to set up than VPN, but you don't have to install a program to use it. | |||||||
Here are the steps; the first section only has to be done once.
Install Cisco's AnyConnect | ||||||||
Line: 36 to 38 | ||||||||
When you start the application: | ||||||||
Changed: | ||||||||
< < | The VPN server is vpn.nevis.columbia.edu
Click on the Connect button.
If you're prompted for a Group , choose Nevis
Use your Nevis account name and password. | |||||||
> > |
| |||||||
That's it! |
Line: 1 to 1 | ||||||||
---|---|---|---|---|---|---|---|---|
Added: | ||||||||
> > |
VPN (Virtual Private Network)Why use VPN?By using VPN, you can establish a direct connection to the local network of the Nevis particle-physics systems from the outside. You also get the benefits of the web proxy, in that all your network connections go through our firewall. Normally, to access a machine on the local network, you use ssh![]() Install Cisco's AnyConnectAlthough there are many VPN client programs available, since we have a Cisco firewall I find that the Cisco secure client works best and takes advantage of all the networking features. The simplest way to get Cisco AnyConnect is to download it from the VPN server on our firewall. Visit:https://vpn.nevis.columbia.edu
When you are prompted, select Group to be Nevis (that's probably already selected), and use your regular Nevis account name and password to login.
Once you've logged into WebVPN, select AnyConnect from the panel on the left-hand side. Then click on Start AnyConnect . (The instructions on the right-hand side are obsolete and misleading; e.g., you don't need to install Java.)
You'll be taken to a web page that will let you download a version of AnyConnect for your operating system (Mac OS X, Windows, or Linux). If you need installation help, click on Instructions in the lower right-hand corner.
Using the VPN clientStart the AnyConnect client program. You may have to "hunt" for its location. For example, on my Macintosh, I found it inApplications->Cisco .
When you start the application:
The VPN server is vpn.nevis.columbia.edu
Click on the Connect button.
If you're prompted for a Group , choose Nevis
Use your Nevis account name and password.
That's it!
Things to tryOur firewall normally filters out ping![]() mail.nevis.columbia.edu ; it will not succeed. After you connect with AnyConnect, ping mail will work.
From outside of Nevis, systems on the local network are "invisible." Once you establish a VPN connection, you should be able to directly ssh![]() ssh student41.nevis.columbia.edu .
Some systems have restricted access to the outside world, e.g., the electronics-design machines. With a VPN connection, you should be able to directly ping and ssh to a restricted system like elecsim4 directly (assuming you have an account on elecsim4 , of course!).
If you're having trouble accessing your local network devices (e.g., a printer in your home), go into the AnyConnect preferences and make sure Allow local (LAN) access is checked. |