The Cisco VPN (Virtual Private Network) at UVa
Secure Access to UVa Resources
What is the UVa VPN Service?
UVa Virtual Private Network (VPN) services provides secure, authenticated access to on-Grounds network resources. This allows authorized users to access restricted UVa applications and resources normally limited to on-Grounds access.
Two different VPN clients are available: the Cisco VPN Client (IPsec connection) and the Cisco AnyConnect Client (SSL connection). Note,
- if you are currently connecting with the Cisco VPN Client (IPsec) and it works fine for your needs, there is no compelling reason to change clients.
- the Cisco AnyConnect Client (SSL connection) is recommended or required for some use cases. The AnyConnect client is more expensive for the University to operate, and there may be rare capacity limits.
This page will help you select the appropriate client based on your operating system and what services you need to access.
How It Works
When connected to a UVa VPN service, network traffic between your system and the VPN service is encrypted to protect it from electronic eavesdropping. No system, however, is 100% secure; ITS provides a list of resources to help you secure your electronic devices.
To use the Cisco VPN with UVa networks and services, you must use the UVa-specific Cisco VPN software.
Using the Cisco VPN outside the United States: If you plan to take the Cisco VPN out of the country on a computer or plan to download it while abroad, be aware that the U.S. Department of Commerce restricts the export of cryptographic software. The use of the Cisco VPN is also illegal in any of the following countries: Cuba, Iran, Libya, North Korea, Syria, and Sudan. Additional restrictions are listed on the download site.
Selecting the Appropriate Cisco VPN Client
You must consider both your operating system and the resources you wish to access when selecting your Cisco VPN client. Another factor that may impact your decision is compatibility with your particular Internet Service Provider (ISP).
Note: The Cisco AnyConnect Client may work better in high latency connections (satellite-based connection) or networks that have incompatiblity problems with IPsec.
By Operating System
| Windows 32-bit (7, Vista, XP) | Windows 64-bit | Mac OS X 10.5 and up | |
|---|---|---|---|
| Cisco VPN Client (IPsec connection) | Available | Not Available | Available |
| Cisco AnyConnect Client (SSL connection) | Available | Required | Recommended |
Note: UVa Anywhere VPN is also available for the iPhone/iPad/iPod Touch. More info.
By Profile
The Cisco VPN Client at UVa hosts five profiles, each having unique requirements and directed towards specific uses:
| Profile | Services Accessed & Additional Requirements | Cisco VPN Client (IPsec) | Cisco AnyConnect Client (SSL) |
|---|---|---|---|
| UVa Anywhere | Provides an off-Grounds connection to restricted resources; e.g., Library resources, UVa Home Directory Service, access to Exchange Server, access to Restricted Departmental servers, etc. | Install it Using it |
Install it |
| UVa-More-Secure-Network | Provides an additional layer of security within the University network. Available for faculty and staff only. More info |
Install It
Using it | Install It |
| Joint VPN | Provides special access for users in the Academic portions of the Health System. Requires additional permissions and is supported by your department's LSP. Your LSP must contact ITS to request access, obtain an ITS Token, and then assist you with the installation of the iKey software and the configuration of the VPN client. | Install it Using it |
Install it |
| Oracle Applications and/or Mercury | Provides secure access for users to access sensitive data. Requires an Oracle responsibility and an Oracle Application VPN Account. |
Install it |
Use Joint VPN above |
| Oracle Special Services | (This service has been folded into the Joint VPN above) Focuses on users who have been granted a special level of access to the Integrated System. Requires additional permissions. |
Use Joint VPN above | |