VPN Connections Using Duo Two-Factor Authentication (2FA)

To use PSU's Virtual Private Network (VPN), you must first confirm that Cisco Secure Client is installed on your computer or device, and that you are enrolled in Duo Two-Factor Authentication (2FA).


Table of Contents

 


Connect to the Campus VPN

Prerequisites

Mobile Device with Duo Mobile App Installed

  1. Open the Cisco Secure Client VPN.
    Note: If you've connected to the VPN successfully in the past, Secure Client will autofill the address bar. To use a different address, select Cancel and enter the new address.

  2. Enter vpn.pdx.edu in the address box, then select Connect.
    Note: If you are connecting to a specialized VPN, type the address here.

  3. From the Group menu, select 1-Employee Duo-Default or 3-Student Duo-Default.

  4. In the Username box, enter your Odin account username.

  5. In the Password box, enter your Odin account password.

  6. Approve the Duo push notification on your mobile device.

Landline or Mobile Phone Without the Duo Mobile App Installed

  1. Open the Cisco Secure Client VPN.
    Note: If you've connected to the VPN successfully in the past, Secure Client will autofill the address bar. To use a different address, select Cancel and enter the new address.

  2. Enter vpn.pdx.edu in the address box, then select Connect.
    Note: If you are connecting to a specialized VPN, add -alloptions to the end of its address. For example, vpn.pdx.edu/cis-alloptions.

  3. From the Group menu, select 2-Employee Duo-All Options or 4-Student Duo-All Options.

  4. In the Username box, enter your Odin account username.

  5. In the Password box, enter your Odin account password.

  6. At the Second Password prompt, enter pushSMS, or phone to select your preferred verification method. If you have more than one phone associated with your account, the phone and the SMS options will be numbered, based on the order that they appear on your account.
    Note: If you choose to use SMS, a temporary code will be texted to you and you will be returned to the same VPN login screen. Enter the temporary code into the Second Password box.

  7. Approve the Duo notification on your phone.

Hardware Token

  1. Open the Cisco Secure Client VPN.
    Note: If you've connected to the VPN successfully in the past, Secure Client will autofill the address bar. To use a different address, select Cancel and enter the new address.

  2. Enter vpn.pdx.edu in the address box, then select Connect.
    Note: If you are connecting to a specialized VPN, add -alloptions to the end of its address. For example, vpn.pdx.edu/cis-alloptions.

  3. From the Group menu, select 2-Employee Duo-All Options or 4-Student Duo-All Options.

  4. In the Username box, enter your Odin account username.

  5. In the Password box, enter your Odin account password.

  6. At the Second Password prompt, enter a passcode you have generated on your Duo hardware token.

  7. Select OK.

Best Practices When Connecting From Public Networks

For added security when you connect from public networks such as coffee shops or airports, we recommend sending all of your network traffic through the VPN (versus just traffic destined for PSU’s network). This is known as a “Full Tunnel” VPN connection.

  • If you are using the Duo Mobile app, enter vpn.pdx.edu/full in the address box to have all of your network traffic pass through the VPN.

  • If you are not using the Duo Mobile app, enter vpn.pdx.edu/full-alloptions in the address box to have all of your network traffic pass through the VPN.

Related Support Content