ANNEX I: VPN

The VPN software allows you not only to connect to CESGA in a secure way but also to access internal resources that you can not reach otherwise.

Installing the Forticlient VPN software

Depending on your Operating System the steps will be different:

In all cases, enter the following configuration options:

  • Gateway: gateway.cesga.es

  • Port: 443

  • Username: your email address registered at CESGA (do not use your username)

  • Password: your password in the supercomputers

Remember to start the VPN before connecting to hadoop3.cesga.es.

Open Source Linux Client OpenfortiVPN

For Linux there is also an alternative open-source client called OpenFortiVPN that you can use instead of the official fortivpn client. Some Linux distibutions like Ubuntu, Debian, OpenSuse or Arch Linux provide OpenFortiVPN packages.

It has also a QT GUI that you can use OpenFortiGUI, and it can be natively integrated with NetworkManager in GNOME using NetworkManager-fortisslvpn.

If you are using Ubuntu 18.04 or newer you can install it using:

sudo apt install openfortivpn

If you want to use the integration with the NetworkManager in GNOME you can install also:

sudo apt install network-manager-fortisslvpn-gnome

The package needed are in the universe repo, which is usually enabled by default.

If you are using Centos 7, it is available in the EPEL repo. Once this repo is enabled you can install it using:

yum install openfortivpn

Once openfortivpn is installed you can start the VPN executing:

sudo openfortivpn gateway.cesga.es:443 -u curso001@cesga.es

where curso001@cesga.es should be replaced by the email address that you used to register at CESGA.

Check the project github page for details OpenFortiVPN.

VPN Installation in old Linux versions

If your Linux distribution no longer appears in the Official Forticlient download page you can use at your own risk the Forticlient CESGA Repository that maintains old versions of the software that can contain security vulnerabilities.

Warning

Our recommendation is that you update your linux distribution as soon as possible.

Follow the next steps to do the installation:

unrar e vpn-fortissl.rar
tar xvzf forticlientsslvpn_linux_4.4.2323.tar.gz
cd forticlientsslvpn
./fortisslvpn.sh

Accept the license agreement presented.

After the installation you can start the VPN from the command line:

../forticlientsslvpn_cli --server gateway.cesga.es:443 --vpnuser usuario@dominio.com