Posted on

VPN Access

There is two VPN that you can use, CSIC VPN and ICE VPN. The CSIC VPN is used when you are outside the ICE and need to connect to some resources provided by the CSIC (not the ICE), such as license servers. The ICE VPN, on the other hand, is necessary when you are outside the ICE and need to connect to some ICE (not CSIC) resource, such as HPC services.

This guide will show you how to configure both.

Step 1 – Request permission

Send us an email to ice_it-services@ice.csic.es with the subject “[VPN] Your Name”, including your DNI/NIE/Passport and the VPN you need to access to. With this information, we can request authorization from CSIC’s CAU to grant you access to the VPN service. This process may take a while, you’ll receive an email containing a QR to configure the 2FA once the access has been granted.

Step 2 – Configure 2FA

Once the access to the VPN had been granted, you will recive an email with a QR code like the one in the image. This code is used to configure the 2FA.

After receiving the email, download the 2FA app FortiToken in your smartphone so you can use it algongside your password to access the VPN service.

Now, open the FortiToken app and tap (+).

Select “Scan barcode” and scan the QR code in the email. You can also put the code manually.

Then, your token will show in the main screen.

Step 3 – Install FortiClient VPN client

Go to the FortiClient official site and download FortiClientVPN for your desired OS.

Run the setup wizard and install FortiCLientVPN in your system.

After restarting your computer, the FortiClientVPN icon should be visible in your system. To open the GUI, right click in the icon and select “Open FortiClientConsole”.

Then click in “Configure VPN” to add a new conection.

Let’s start with the CSIC’s VPN, give it a name and in the field “Remote Gateway” write “https://vpnssl-externa.csic.es”, finally, click in “Save” to close the window. Then the CSIC VPN profile should be displayed in the main screen.

Now, let’s configure the ICE VPN, to do so, click in the three bar icon next to the conection name and select “Add a new connection”.

Again, give it a name and in the field “Remote Gateway” write “https://vpn.ice.csic.es”, finally, click in “Save” to close the window.

With this, both VPN connections should be ready to use.