Internet access/VPN/WLAN

What is a VPN?

VPN stands for "Virtual Private Network". VPN can be used to set up a secure subnet via an open, unprotected network (Internet, wireless network) in which communication is protected against eavesdropping and access by external subscribers (this means that the transmission of sensitive data is protected against unauthorized access). This is achieved by "tunneling" the data traffic via a VPN server, at which the connections must be authenticated when they are set up, and by simultaneously encrypting the data.

Why do I need VPN?

You can establish an encrypted connection to the university network via a VPN connection. This allows you to use services of the university, which are otherwise not accessible for any Internet users.

Data for VPN

After the client has been started, click on "Remote access" on the left and then "Configure VPN".



2. Then enter the settings in the new window (see screenshot) and click "Save".



3. After saving, the login mask is displayed. Enter user name and password, then click on "Connect" Here in the example for the user name "elements (students: s-xxxxx) 




4. After clicking Connect, the VPN tunnel is established, the following window appears and you can access your university data as usual

Forticlient VPN Client install and connect on Windows

A) Fortigate VPN Client for Windows

1) Download the Windows-Client here or directly at Fortinet.



A new dialog window will open (here the one from Internet Explorer). Here you should click on the small arrow next to Save and select "Save as




Then select a suitable storage location. Here in the example "Desktop" and then click on "Save".
 

 


To unpack the file, make a "right click" on the file "vpn-install-win64.zip". In the new window select "7-Zip" and in the submenu "Unzip here", thus the file will be unzipped at the storage location




After that you will find an "install.exe" please execute it with a double click




Should the user account control open, confirm the dialog with Yes




The installation of the VPN client is started. In the new window, check the "I accept the agreement" box and click the next button





Click on "Install" in the new window






After successful installation, the following window appears, confirm it with "Finish".




The following icon appears on the desktop, start it with a double click


After the client is started, please set hack and click "I accept".

 

 

After that, please press the 3 dashes and enter the data as shown below.

 

 



 In the login screen, please enter your username and password, then click "Connect".








After clicking on "Connect" the VPN tunnel will be established. The following information appears in the lower right corner and you can access your university data as usual.






When you are done with your work, you can disconnect by clicking on the arrow in the lower right corner with the left mouse button. Then click on the green Forticlient icon, right click to open the menu window.  In the window select the item "Disconnect 'VPN Hochschule Landshut'" and confirm with a left click.





After successful disconnection, the following information will be displayed at the bottom right edge:

 

Forticlient VPN Client install and connect on Linux

Fortigate VPN Client for Linux (Ubuntu 20.04 LTS)

(https://www.fortinet.com/support/product-downloads/linux)
1. Add the Fortinet repository to the system
wget -O - https://repo.fortinet.com/repo/6.4/ubuntu/DEB-GPG-KEY | sudo apt-key add -
 
 
2. Add the repo to the sources.list
sudo nano /etc/apt/sources.list -> Scroll all the way down and paste the following:
deb [arch=amd64] https://repo.fortinet.com/repo/6.4/ubuntu/ /bionic multiverse
 


3. Update your System:
sudo apt-get update
sudo apt-get dist-upgrade
 
4. Install Forticlient

sudo apt-get install forticlient
 
5. Start Forticlient
 
6. Create a new VPN connection at "REMOTE ACCESS.

  • Connection Name: HAW-Landshut
  • Description: -
  • Remote Gateway: vpn1.haw-landshut.de
  • Port: 443
  • Client Certificate: None

 

7. Log in with your Hochschul data.





8. Check if you are connected



  

Forticlient VPN Client install and connect on MacOS

Here you can find the appropriate installation files for your macOS version:

  • FortiClient installation file for macOS 12 Monterey: FortiClientVPNSetup_7.0.2.0069_macosx.dmg                                                                                       
  • FortiClient installation file for macOS 11 Big Sur:   FortiClientVPNSetup_6.2.6.737_macosx.dmg                                                                                                          
  • FortiClient installation file for macOS 10.13 High Sierra (10.13, 10.14, 10.15)FortiClientVPNSetup_6.4.1.1267_macosx.dmg                                                                                                                                                                                                                                     
  • FortiClient installation file for older macOS versions (10.09, 10.10, 10.11, 10.12): FortiClient_6.0.2.dmg

or directly at Fortinet.

Starting the download with the online installer for Big Sur and Monterey

Es erscheint ein Hinweis, dass dieser Installer aus dem Internet geladen wurde. Um diesen auszuführen, wird "Öffnen" ausgewählt.

Hierauf klicken, um die Installation zu starten.

Installation:

Auf "Fortfahren" klicken.

Die Lizenzbedingungen werden mit einem Klick auf "Fortfahren" und anschließendem Klick auf "Akzeptieren" beim Pop-up angenommen.

Auf "Software installieren" klicken und Admin-Passwort eingeben. 

Die Installation ist erfolgreich abgeschlossen, sobald diese Fenster erscheint: 

Zusätzliche Berechtigungen bei Monterey

 

Bei der FortiClient 7 erscheint folgende Meldung, dass Erweiterungen blockiert werden: 

Daher werden die Systemeinstellungen mit einem Klick auf "Systemeinstellungen "Sicherheit" öffnen" geöffnet. 

 Hier muss "Erlauben" ausgewählt werden.

 

Bitte mit einem Klick auf "Open File Access". Es öffnen sich die folgenden Fenster: 

Zum Bearbeiten bitte auf das Schloss klicken und melden sie sich mit dem Admin Konto. 

Nach der Anmeldung mit einem Admin-Konto können dann die Häkchen gesetzt werden für "fctservctl2" und "FortiClient":

Hier muss neben "Laden der Systemsoftware des Programms "FortiTray" wurde blockiert" noch auf "Erlauben" geklickt werden.

Nach der Installation erstellen Sie bei "REMOTE ACCESS" eine neue VPN-Verbindung.

  • Connection Name: HAW-Landshut
  • Description: - Kann freigewählt werden
  • Remote Gateway: vpn1.haw-landshut.de
  • Port: 443
  • Client Certificate: None

 

 

 

 

 

 

 

 

Problems with the establishment of the VPN connection

If the connection could not be established due to authentication problems, the request for username and password appears again. In this case, please check the following points:

  • Have you entered the identifier (s-******) and your password correctly?
  • Is a connection already active under the identifier? Only one connection can be established at a time under the same identifier; further connection attempts are rejected. After unforeseen disconnections, it may take a few minutes until a new connection can be established.
  • Are you using the correct profile for your identifier?
  • Are other programs active that can influence their configuration by live monitoring (e.g. firewalls like Kaspersky and Avira Antivir, CCleaner, ...).
  • Try connecting again after a few minutes; perhaps there was a temporary system problem that has since resolved.

How can I access my personal drive via VPN?

You have successfully established a VPN connection and now want to use your personal drive. To do this, proceed as follows under Windows:

1. Open Windows Explorer

2. Under Windows 10: Select "Start -> Computer -> Connect network drive




Under Windows 8: Right click on Network -> Connect network drive




3. As folder enter "\\zds.fh-landshut.de\benutzername" and click on "Connect with other credentials".





4. Enter the university account data (username + password)





5. "Finish" binds your personal drive

What is the @BayernWLAN?

The @BayernWLAN can be used without prior registration and is operated by Vodafone (on behalf of the Free State of Bavaria).
Please note that the connection to the BayernWLAN is not encrypted. University members should continue to use Eduroam.

To connect, proceed as follows:

  • connect with SSID @BayernWLAN
  • open any http page (not https!) in the browser, e.g. www.google.de (if not automatic)
  • Accept the user agreement and click the "Connect" button.

Note: By using @BayernWLAN you are not in the internal network of the university!

 

What is eduroam?

eduroam is the key term and stands for educational roaming. As a student or employee of Hochschule Landshut, you have access to the wireless network at all universities with your user ID. This is made possible by the mutual acceptance of user accesses at universities and scientific institutions among each other, and even worldwide. In Germany, this service is provided by DFNRoaming.

As a participant in the eduroam project, Hochschule Landshut  of Applied Sciences also provides this functionality in the opposite direction: For example, students or members of other universities can share the wireless network on campus. All they need is the user ID and password of their home institution.
 
This could also be interesting for you if you are at another university with your notebook or cell phone and need to connect to the Internet via the WLAN there. To do this, look for a WLAN with the name eduroam. Within range of this network, you can then log in with your university ID and use the access. A guest ID from the university there is then no longer required.
 
At Hochschule Landshut, eduroam has been available in all areas with WLAN coverage since the end of 2013. Technically, eduroam at Hochschule  Landshut is a wireless network protected by WPA2-Enterprise, i.e. the communication between your end device and our AccessPoints is encrypted so that no one can read the network traffic.

For the eduroam configuration we offer installable WLAN profiles of the DFN. You can find the instructions here.

How do I install eduroam? [Microsoft™ Windows]

Here you can download the configuration file for eduroam:  https://cat.eduroam.org/?idp=5228




1. To do this, please open the link and click on the box below "Download installer"...

 


2. Then select "Hochschule Landshut".


3. The operating system is detected automatically. Please click on the blue box.




4. Now click on "Save file". After that open the installation file.


6. Now you can install eduroam.




7. Print "OK" to continue with the installation... 

8. Confirm with "Yes". 

9. Eduroam is successfully installed.

10. The username is your unique user ID at Landshut University of Applied Sciences + "@haw-landshut.de". 

If your device does not connect to the SSID eduroam on its own after the configuration is complete, try rebooting your device, otherwise you will need to Connect manually.
 

Setting up eduroam [Apple™ iOS]

Setting up eduroam for iOS devices

If you are not performing an initial installation, but are adapting your configuration as part of the eduroam conversion, you must first remove the existing profile (see point 9) and then follow the procedure as for a new installation.
This requires access to the Internet - for example, via the BayernWLAN or via your mobile network operator.

1. Open the page https://cat.eduroam.org:





2. For home organization select "Hochschule Landshut".





3. Choose an installer to download --> your iOS version :




4. Confirm the download.





5. After successful download, the profile manager of iOS will start automatically (Settings -->

General --> Profiles). Tap on "Install".



6. You may be prompted to enter your iOS security code (PIN).




7. If the "T-Telesec GlobalRoot Class 2" certificate is not yet present on your iOS device, it must be added. Agree by tapping "Install".




8. You now authenticate with your Hochschul user ID <userID>@haw-landshut.de and your university password and then tap "Next".







The WLAN eduroam should work now.

If not, one reason could be that an older profile is already installed.
For this simply remove the old profile and download a new one at https://cat.eduroam.de and install it according to the listed instructions.

Remove profile:To do this, select "Settings"-->"WLAN" and then tap on the circled "i" next to "eduroam".




Tap on "Ignore this network" and confirm the message with "Ignore".




Select in the settings --> General--> Profile --> eduroam --> Remove profile

 

 

Setting up Eduroam [Google Android™]

 1. Open the page https://cat.eduroam.org/:





2. For home organization select "Hoschule Landshut".





3. Choose your Android version:





4. Confirm the download.





5. Download the application "eduroam CAT".

Open the previously downloaded configuration file.
The best way to do this is to navigate to the Downloads folder.





In the next dialog box, click Install.





The username is your unique user ID at Hochschule Landshut + "@haw-landshut.de".
Then enter your password and complete the installation.

There should be green check marks everywhere at "Current device setting". This is the indicator that the installation went through successfully.
You can now connect to the eduroam network.