Forticlient Virtual Private Network (VPN)

Case Western Reserve University provides remote users with secure access to the network over the VPN client. VPN is a point-to-point connection between a personal computer and CWRU servers. Users must first download the VPN client for their respective operating system. Once they are connected through VPN, users can utilize a web browser to access various tools within CWRU such as the Software Center. Only active members of the university have the ability to utilize VPN. Alumni do not have access to this service.

FortiClient AnyClient SSL VPN Client for CWRU Students, Faculty, and Staff only
This service provides remote users with secure VPN connections to the campus network via a 128-bit SSL encrypted tunnel. Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have not already enrolled in Duo Security, visit https://webapps.case.edu/duo/webauth.py.

Supported operating systems:

Alternatively download the FortiClient App for:

Access the Service


Download and Install VPN Client in NON-MANAGED Environment

  1. Visit the VPN setup website at https://vpnsetup.case.edu/
  2. Select the appropriate operating system client from the drop-down menu.
  3. Select "Go" button to start downloading the FortiClient installer. (SSO login required)
  4. Open and install FortiClient using default settings.

Windows users who receive this message

Warning box stating: Windows protected your PC. Windows Defender SmartScreen prevented an unrecognized app from starting. Running this app might put your PC at risk." Followed by a link titled "More info" and a box labeled "Don't run".

Click on "More info" and then "Run anyway" 

Warning box stating: Windows protected your PC. Windows Defender SmartScreen prevented an unrecognized app from starting. Running this app might put your PC at risk." It then lists the name of the app, FortiClient, followed by 2 boxes, the first is highlighted and labeled "Run anyway" and the second is labeled "Don't run".
  1. If you downloaded the Windows or Mac OS X client from CWRU, it is pre-configured, and you may skip to the "Using Duo Security with FortiClient" section.

* Note: If you wish to test FortiClient while on-campus, make sure your device is connected to the Internet using the CaseGuest wireless network. It is not possible to test FortiClient with devices connected to the Internet using the CaseWireless network or a wired connection while on-campus.

 

Download and Install VPN Client in WINDOWS MANAGED Environment

  1. On your laptop, click Start → Microsoft Endpoint Manager → Software Center
  2. Under the "Applications" tab, locate and click on the "FortiClient" VPN icon.
  3. Click "Install"
  4. The client from CWRU is pre-configured. You may skip to the "Using Duo Security with FortiClient" section.

* Note: If you wish to test FortiClient while on-campus, make sure your device is connected to the Internet using the CaseGuest wireless network. It is not possible to test FortiClient with devices connected to the Internet using the CaseWireless network or a wired connection while on-campus.

Configure VPN Client

vpn setup screenshot

* Note: If you downloaded the Windows or Mac OS X client from CWRU, it is pre-configured, and you may skip to the Using Duo Security with FortiClient section.

  1. Open FortiClient.
  2. Select "Remote Access" from the left menu, then select "Configure VPN" link.
  3. Enter the following information and click "Save":
    • VPN: SSL-VPN (default)
    • Connection Name: CWRU VPN
    • Remote Gateway: vpn2.case.edu
    • Port: 443

Using Duo Security with FortiClient

duo logo

Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have already enrolled in Duo Security, your enrolled device will automatically receive a "push" notification or phone call when you attempt to connect. You must approve the notification or answer the phone call in order to authenticate and establish your connection. If you have not already enrolled in Duo Security, visit https://webapps.case.edu/duo/webauth.py.

Alternative Ways to Authenticate Using Duo

Users can use FortiClient's password field to specify an authentication method. If you use the Duo Security app to generate a passcode, add a comma (",") to the end of your password, followed by the passcode. Example: given username 'abc123', with password 'password123' and a Duo passcode '123456', the following would be entered:

  1. Username: abc123
  2. Password: password123,123456

In lieu of a passcode, add one of the following bolded items after your password and comma (","):

  1. Push: If you have downloaded the Duo Security app to your enrolled device, this option will send a "push" notification to the device
    1. Username: abc123
    2. Password: password123,push
  2. Phone: This option will call your enrolled device
    1. Username: abc123
    2. Password: password123,phone
  3. SMS: This option will text a batch of passcodes to your enrolled device. While the first login attempt will fail, you will then use one of these SMS passcodes to successfully login on a second attempt.
    1. Username: abc123
    2. Password: password123,sms

When you have multiple devices enrolled in Duo

If you have multiple devices enrolled, you can specify which device you want to authenticate with by adding a numeral to the end of the string you enter into the password field. Returning to the example in the previous section, if you would like to send a push notification to you first enrolled device, you would enter the following

  1. Username: abc123
  2. Password: password123,phone1

 

Establishing VPN Session

Screenshot of how to establish a connection to CWRU VPN using FortiClient

* Note: If you wish to test FortiClient while on-campus, make sure your device is connected to the Internet using the CaseGuest wireless network. It is not possible to test FortiClient with devices connected to the Internet using the CaseWireless network or a wired connection while on-campus.

  1. Open FortiClient
  2. Enter username and password (CWRU Network ID credentials). Click "Connect."
  3. Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have already enrolled in Duo Security, your enrolled device will automatically receive a "push" notification or phone call when you attempt to connect. You must approve the notification or answer the phone call in order to authenticate and establish your connection. For questions regarding use Duo with VPN, please review the previous section on this page entitled "Using Duo Security with FortiClient".
  4. Wait for confirmation that VPN is connected.

 

Disconnect VPN Session

vpn disconnect screenshot
  1. Open FortiClient.
  2. Select “Remote Access” from the left menu. Click the “Disconnect” button.
VPN Service Support Print Article

Related Services / Offerings (1)

A Virtual Private Network (VPN) is a point-to-point connection between a remote personal computer and the CWRU network. Case Western Reserve provides remote users with secure access to the network over the VPN client. Users must first download the client for their respective operating system.