Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

The purpose of this document is to help you use multi-factor authentication to VPN with the Cisco AnyConnect application.  Microsoft MFA is replacing the current DUO multi-factor application currently in use at CW.  These two applications (MFA and AnyConnect) work together to allow you to connect to the CWF computer network through a Virtual Private Network (VPN) while at home or traveling.


MFA is a multi-factor authentication application. It will be used to verify your credentials while you connect to the CWF VPN network.  MFA will consist of "something you know" (password) and "something you have" (your phone app).  Please refer to How to setup Microsoft MFA for instructions on setting up MFA for the first time.


AnyConnect is the application used to connect to the VPN. It will require MFA before it will connect you. AnyConnect should have been already installed on CWF laptops. Cisco AnyConnect is installed on CWF laptops before they are issued.



  1. Launch Cisco AnyConnect Secure Mobility Client on your desktop/laptop/tablet. You can perform a couple of different ways.

          Click the Cisco icon from your Taskbar, or search for Cisco or AnyConnect in the Start Menu.


                                                            Image Added                                  Image Added


2. In the Connection field, type secure.cwf.org.. You should only have to enter this once to fill it in.  Any other connections from the same system will have this listed.

                                                                  Image Added


                                                                 

3. This screen will popup asking for your email address. Type in your CWF email here and click Next.

                                                                   Image Added


4. The Colonial Williamsburg Federated Sign-On screen will look like this. Ensure your username is correct, type your password and click Sign in.

                                                 Image Added


5.  At this time you will need to look at your mobile phone to approve the sign-in.  This window will stay on your computer screen until you approve the message on your phone.

NOTE: If you receive a message on your phone that you did not initiate, please hit DENY.


                            What is on your computer screen:                                              What is on your mobile phone:

                           Image Added                        Image Added


6.  Once you have approved the phone notification, your computer will open a web browser in order to posture check your system.  Click Start.

         Image Added

7.  Once the scan is complete you will see the screen change to the below.  You are now VPN'd into the CW network. 

        Image Added


NOTE:  If you do not receive a success message, please take a screen shot and open a Helpdesk ticket.  This could be due to a lack of antivirus/anti malware on your computer.