VPN connection

VPN ensures secure access to the university network from external networks (dial-in via other providers, external company or university networks). Technically speaking, an encrypted connection is established between your home PC and the university network. You need VPN if you

  • want to access protected pages of the WHZ.
  • want to access your home directory or other network shares
  • want to access your office PC via remote desktop
  • By default, "Cisco AnyConnect SplitTunnel" should be selected and only if you want to access licensed eBooks, eJournals, databases of the university library, use the variant "Cisco AnyConnect FullTunnel"

To use VPN connections, a WHZ login and the installation of a client program or a web browser are required. The VPN gateway in the WHZ data network supports the following protocols:

  • SSL/DTLS with the Cisco AnyConnect Secure Mobility Client (recommended variant)

VPN server for students and staff

Students, relatives and guests: vpnstud.fh-zwickau.de
Employees: vpnmit.fh-zwickau.de

Note: VPN only works outside the WHZ. It cannot be used within the university network (student residences are also included)

Instructions

Cisco Anyconnect Secure Mobility Client

To use the SSL VPN, the Cisco AnyConnect client software must be installed. For licensing reasons, the software can only be downloaded with a valid WHZ login. You need administrator rights for the installation.

download:Cisco AnyConnect

Establish connection

After installing the client, enter the VPN address of the WHZ:

Students & guests: vpnstud.fh-zwickau.de
Employees: vpnmit.fh-zwickau.de

 Screenshot: Anleitung Cisco AnyConnect. Verbindung.

Please use the group setting Split-Tunnel.
If resources such as database access from the HSB (Springer, Perinorm, Statista...) are required, the group setting must be set to full tunnel.

Screenshot: Anleitung Cisco AnyConnect. VPN Tunnel.

OpenConnect -  Free TLS client for Linux

1. Installation:

apt-get install openconnect

The installation must be carried out with root rights.

2. Establish connection:

openconnect -u Benutzerkürzel vpnmit.fh-zwickau.de

Select split or full tunnel:
   GROUP: [1SplitTunnel|2FullTunnel]:

Enter password

3. Check connection status:

ifconfig

A new network interface - tun0 - displays an IP from the VPN subnet area.

Cisco AnyConnect

To use the SSL VPN, the Cisco AnyConnect client software must be installed. For licensing reasons, the software can only be downloaded with a valid WHZ login. You need administrator rights for the installation.

Download: Cisco AnyConnect

    Unpack the archive: tar xvzf anyconnect-linux64*-predeploy-*tar.gz
    cd anyconnect-linux64*/ && cd vpn/
    ./vpn_install.sh execute with root rights
    Agree to the EULA with yes
    start CiscoAnyconnect
    vpnmit.fh-zwickau.de Enter as server address for employees
    vpnstud.fh-zwickau.de Enter as server address for students and guests

    Click on Connect
    Select tunnel
    Enter username and password

Cisco Anyconnect Secure Mobility Client

To use the SSL VPN, the Cisco AnyConnect client software must be installed. For licensing reasons, the software can only be downloaded with a valid WHZ login. You need administrator rights for the installation.

Download:Cisco AnyConnect

Download the current installation file to your computer:  anyconnect-macos-versionsnummer-predeploy-k9.dmg

Start the installation by double-clicking on the saved installation file.Follow the installation instructions.The initial configuration and use is the same as for Microsoft Windows.

For information on how to connect network drives, see Network drives