0% found this document useful (0 votes)
9 views8 pages

Cisco SSL VPN User Guide with MFA

This document outlines the process for 3rd Party users to access the HeidelbergCement network using Cisco SSL VPN with PhoneFactor multi-factor authentication. It details the steps for both Clientless SSLVPN (WebVPN) and Client-Based SSLVPN (AnyConnect), including initial setup, login procedures, and how to access published applications. Users are advised to contact their HeidelbergCement representative for assistance with any issues related to the SSLVPN connection.

Uploaded by

dajnemoj
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
9 views8 pages

Cisco SSL VPN User Guide with MFA

This document outlines the process for 3rd Party users to access the HeidelbergCement network using Cisco SSL VPN with PhoneFactor multi-factor authentication. It details the steps for both Clientless SSLVPN (WebVPN) and Client-Based SSLVPN (AnyConnect), including initial setup, login procedures, and how to access published applications. Users are advised to contact their HeidelbergCement representative for assistance with any issues related to the SSLVPN connection.

Uploaded by

dajnemoj
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

3rd Party User Guide for Cisco SSL VPN with

PhoneFactor/Multi-Factor Authentication

Summary:
rd
This document provides the process for how 3 Party users access our network using Cisco SSLVPN.
Which method of connecting that is available to the user is determined by what was requested in the
“Third-Party Remote Access Request form”.

It is assumed that the user has performed the initial setup of their PhoneFactor account at the user portal
([Link] If not, please proceed to this portal first to
perform the initial setup.

Clientless SSLVPN (WebVPN)


Process:

Choose the URL for your country’s VPN Server from the list below:

[Link]

(EUR Users)

That will take you to our Login page, at this page, please enter your HeidelbergCement credentials
(Windows) and wait for PhoneFactor to contact you for the secondary authentication phase.

Login Web Page:


Once logged in, you will see the following page

Here, please click on the bookmarks to access your published applications or web resources.

While connected to our WebVPN, you will see a small toolbar appear with 4 icons. This toolbar allows you
to either move the toolbar to the opposite side of the browser window by clicking the double arrow,
return to the main SSL VPN portal page by clicking the home icon or end your SSL VPN session and
logout by clicking the stop icon.

If you click on the “GER Citrix Web Interface” bookmark, you will be taken to the Citrix Web Interface as
shown below where all of your published applications will be available.

To end your WebVPN session, click on the Red button in the toolbar and then close your browser
window.
Client-Based SSLVPN (AnyConnect)
Process:

Before you log into the SSL VPN portal it is very important that you add the [Link]
domain to the list of trusted sites in your browser. For Internet Explorer, please follow these instructions.

Go to “Settings – Internet Options – Security” and click on the Trusted Sites icon. Then press the sites
button:

Once the new window opens up, please add *.[Link] to the list of trusted sites:

Once this has been completed, please choose the URL for your country’s VPN Server from the list below:
[Link]

(EUR Users)

That will take you to our Login page, at this page, please enter your HeidelbergCement credentials
(Windows) and wait for PhoneFactor to contact you for the secondary authentication phase.

Login Web Page:

Successful login to the SSLVPN portal:

Here you can either click on the bookmarks to access web resources or applications published via Citrix.

While connected to the portal you will have a small toolbar appear with 4 icons. This toolbar allows you to
either move the toolbar to the opposite side of the browser window by clicking the double arrow, return
to the main SSL VPN portal page by clicking the home icon or end your SSL VPN session and logout by
clicking the stop icon.
If you click on the “GER Citrix Web Interface” bookmark, you will be taken to the Citrix Web Interface as
shown below where all of your published applications will be available.

To end your WebVPN session, click on the Red button in the toolbar and then close your browser
window.

AnyConnect:

If you need to connect to internal machines with external tools (RDP client, TeamViewer, Radmin etc.)
you need to go to the AnyConnect Tab and click on “start AnyConnect”. It is important that you have
already added the URL for [Link] to your “Trusted Sites” before you try to start
AnyConnect.

The installation starts with an automatic check of the connecting device. During this procedure your
ActiveX settings will be checked and if they are compliant AnyConnect will try to start the installation with
ActiveX
If the ActiveX settings are not compliant, AnyConnect will try to start with Java. You may be asked to
update/upgrade your Java Runtime Environment (jre) to a newer version. You may choose to skip this
step but if Java fails, it is recommended to perform the Java update.

At this point you are successfully conected to Heidelberg Cement VPN with AnyConnect and you can
start to use your tools (RDP client, TeamViewer, Radmin etc.) from your computer
Automatic AnyConnect Installation Fails

Should both the ActiveX and Java installation fail then go to URL below

[Link]

Once the file has downloaded, start the installation and choose all the default settings.

After the installation is complete, please start AnyConnect and you should see the proper URL
([Link]) in the application.

Click on the Connect button and login using your Active Directory username and password. If you have
been logged out from the portal, you should receive a request for authentication on your telephone.

Accept the Welcome message and you are connected to Heidelberg Cement VPN with AnyConnect.
When you are ready to end your session, be sure to logout of any applications as you normally would and

click either the stop icon or if you are on the SSL VPN main portal page, click the Logout link found

in the top right of the browser window.

You will know you have been logged out when you see the following message:

While running the AnyConnect client, you must do a ‘Disconnect’ from the Client software to log out of the
network connection. Look in the Taskbar for the AnyConnect Icon and left click on the icon to open.

If you have any issues with the functionality of the SSLVPN Connection (either WebVPN or AnyConnect),
please contact your HeidelbergCement representative for further assistance.

You might also like