FortiClient VPN

CWRU Virtual Private Network (VPN) Client Software

FortiClient AnyClient SSL VPN Client for CWRU Students, Faculty, and Staff only
This service provides remote users with secure VPN connections to the campus network via a 128-bit SSL encrypted tunnel. Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have not already enrolled in Duo Security, visit https://webapps.case.edu/duo/webauth.py.

VPN Server Hostname: vpn2.case.edu

Standalone Client (full client)
Supported operating systems:

  • Windows 7+
  • MacOS 10.11+
  • Ubuntu 16.04+
  • RH/CentOS 7/4+

FortiClient App:

  • iOS 9+
  • Android 4.1+
  • Windows 10
  1. Visit the VPN setup website at https://vpnsetup.case.edu/
  2. Select the appropriate operating system client from the drop-down menu.
  3. Select "Go" button to start downloading the FortiClient installer. (SSO login required)
  4. Open and install FortiClient using default settings.

Windows users who receive this message

Warning box stating: Windows protected your PC. Windows Defender SmartScreen prevented an unrecognized app from starting. Running this app might put your PC at risk." Followed by a link titled "More info" and a box labeled "Don't run".

Click on "More info" and then "Run anyway" 

Warning box stating: Windows protected your PC. Windows Defender SmartScreen prevented an unrecognized app from starting. Running this app might put your PC at risk." It then lists the name of the app, FortiClient, followed by 2 boxes, the first is highlighted and labeled "Run anyway" and the second is labeled "Don't run".

* Note: If you downloaded the Windows or Mac OS X client from CWRU, it is pre-configured, and you may skip to the Using Duo Security with FortiClient section.

* Note: If you wish to test FortiClient while on-campus, make sure your device is connected to the Internet using the CaseGuest wireless network. It is not possible to test FortiClient with devices connected to the Internet using the CaseWireless network or a wired connection while on-campus.

vpn setup screenshot

* Note: If you downloaded the Windows or Mac OS X client from CWRU, it is pre-configured, and you may skip to the Using Duo Security with FortiClient section.

  1. Open FortiClient.
  2. Select "Remote Access" from the left menu, then select "Configure VPN" link.
  3. Enter the following information and click "Save":
    • VPN: SSL-VPN (default)
    • Connection Name: CWRU VPN
    • Remote Gateway: vpn2.case.edu
duo logo

Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have already enrolled in Duo Security, your enrolled device will automatically receive a "push" notification or phone call when you attempt to connect. You must approve the notification or answer the phone call in order to authenticate and establish your connection. If you have not already enrolled in Duo Security, visit https://webapps.case.edu/duo/webauth.py.

Alternative Ways to Authenticate Using Duo

Users can use FortiClient's password field to specify an authentication method. If you use the Duo Security app to generate a passcode, add a comma (",") to the end of your password, followed by the passcode. Example: given username 'abc123', with password 'password123' and a Duo passcode '123456', the following would be entered:

  1. Username: abc123
  2. Password: password123,123456

In lieu of a passcode, add one of the following bolded items after your password and comma (","):

  1. Push: If you have downloaded the Duo Security app to your enrolled device, this option will send a "push" notification to the device
    1. Username: abc123
    2. Password: password123,push
  2. Phone: This option will call your enrolled device
    1. Username: abc123
    2. Password: password123,phone
  3. SMS: This option will text a batch of passcodes to your enrolled device. While the first login attempt will fail, you will then use one of these SMS passcodes to successfully login on a second attempt.
    1. Username: abc123
    2. Password: password123,sms

When you have multiple devices enrolled in Duo

If you have multiple devices enrolled, you can specify which device you want to authenticate with by adding a numeral to the end of the string you enter into the password field. Returning to the example in the previous section, if you would like to send a push notification to you first enrolled device, you would enter the following

  1. Username: abc123
  2. Password: password123,phone1

For more information, please visit the Duo Security webpage.

Screenshot of how to establish a connection to CWRU VPN using FortiClient

* Note: If you wish to test FortiClient while on-campus, make sure your device is connected to the Internet using the CaseGuest wireless network. It is not possible to test FortiClient with devices connected to the Internet using the CaseWireless network or a wired connection while on-campus.

  1. Open FortiClient
  2. Enter username and password (CWRU Network ID credentials). Click "Connect."
  3. Like Cisco AnyConnect, FortiClient requires users to authenticate using Duo Security in order to establish a VPN connection to the university network. If you have already enrolled in Duo Security, your enrolled device will automatically receive a "push" notification or phone call when you attempt to connect. You must approve the notification or answer the phone call in order to authenticate and establish your connection. For questions regarding use Duo with VPN, please review the previous section on this page entitled "Using Duo Security with FortiClient".
  4. Wait for confirmation that VPN is connected.
vpn disconnect screenshot
  1. Open FortiClient.
  2. Select “Remote Access” from the left menu. Click the “Disconnect” button.