Remote-access Guide

bsecure remote access vpn global protect

by Lavina Feil Published 3 years ago Updated 2 years ago
image

The bSecure Remote Access VPN (Virtual Private Network) service, using the Palo Alto Networks' GlobalProtect software, allows CalNet ID–authenticated users to securely access the UC Berkeley network from outside of campus as if they were on campus and encrypts the information sent through the network.

What is Bsecure remote access VPN?

The bSecure Remote Access VPN (Virtual Private Network) service, using the Palo Alto Networks’ GlobalProtect software, allows CalNet ID–authenticated users to securely access the UC Berkeley network from outside of campus as if they were on campus and encrypts the information sent through the network.

What is restricted tunnel and Bsecure VPN?

Restricted Tunnel is a service that is limited to people that access sensitive systems and data. It has increased monitoring, and utilizes many of the advanced security features of the Palo Alto Networks firewalls. The bSecure VPN service is a collaboration between Network Operations and the Information Security Office.

How do I install the GlobalProtect VPN on my computer?

If your computer has the managed Berkeley Desktop for Windows or macOS, you can install the "GlobalProtect VPN" from Big Fix (for Windows) or the Self Service application (for macOS) on your computer. . If you use a screen reader or use the native GlobalProtect client on ChromeOS, you may want to use this alternative portal.

Where can I download the GlobalProtect UI client?

Linux - The GlobalProtect UI client is available in a Google Drive Share , (login with @berkeley.edu account). Documentation with detailed information is located in a README document within the folder. Installation instructions can be found on the Palo Alto Networks Tech Docs site .

image

What is bsecure VPN?

The bSecure VPN service is a collaboration between Network Operations and the Information Security Office.

What is bsecure remote access?

The bSecure Remote Access VPN (Virtual Private Network) service, using the Palo Alto Networks GlobalProtect software, allows CalNet ID–authenticated users to securely access the UC Berkeley network from outside of campus as if they were on campus and encrypts the information sent through the network. There are three tunnels:

How many tunnels are there in a VPN?

There are three tunnels: Split Tunnel is the default and is used to allow users to access on-campus resources. When using the split tunnel option, any traffic meant for destinations on campus will go through the GlobalProtect client and VPN tunnel.

Does Google use VPN?

However, traffic meant for other sites like Google will not use the VPN tunnel. Full Tunnel (listed as “Library Access and Full Tunnel”) directs all traffic, regardless of the destination, through the GlobalProtect client and VPN tunnel. All client traffic is routed through the campus network with an IP address associated with the campus.

No Action Needed

When the update is made, most users will have a seamless experience. Users and support staff do not need to take any action.

Edge Cases

The first issue relates to some regions of Verizon LTE wireless Internet service. During our original implementation we found that in a small number of Verizon LTE customers would connect successfully, but then not be able to reach any sites.

More Info & Contact

Please read the knowledge base article on bSecure GlobalProtect: Remote Access Portals (link is external) for more detailed information. If you have any questions about this updated service, please contact Sean Schluntz (sschluntz@berkeley.edu (link sends e-mail) ).

What is restricted VPN?

The Restricted VPN service is a highly monitored version of the Campus’ Remote Access VPN for users who access and control a large quantity of restricted data or key IT infrastructure as part of their normal business activity. Access is limited to trusted individuals who need to administer systems containing critical P4 data. This service has additional security controls from the campus VPN, specifically, it utilizes threat monitoring and prevention settings similar to those used on high-security firewalls.

Does restricted VPN use Global Protect?

The Restricted VPN utilizes the same Global Protect client as the regular campus VPN. However, systems used to access the Restricted VPN should meet the following standards:

image
A B C D E F G H I J K L M N O P Q R S T U V W X Y Z 1 2 3 4 5 6 7 8 9