Connect to the VPN
Remote access VPN for UNSW staff and students
UNSW staff and students are encouraged to connect to the VPN service while working remotely. This service provides additional network security, ensures access to the latest security updates and allows self-service downloads. It also helps prevent being disconnected from the network.聽If your device does disconnect, you may need to visit the IT Service Centre on campus for support.
The remote access VPN service routes all network activity through the UNSW network, including personal internet browsing, video streaming, gaming and downloads. Therefore, it is recommended to connect to the VPN when you start working and disconnect once you have finished.
UNSW is providing a new VPN solution called GlobalProtect. AnyConnect will be decommissioned later this year.
Installing and connecting to the VPN
To connect to the Remote Access VPN service, UNSW staff and students must first download and install the聽GlobalProtect聽app on their devices. Once installed, the app can be configured to connect to the Remote Access VPN portal at聽聽using your zID credentials and multi factor authentication.
Download instructions
- Windows and Mac users:聽Download the GlobalProtect client software from聽.
- iPhone and iPad users:聽Download the GlobalProtect client software from the聽.
- Android users:聽Download the GlobalProtect client software from聽.
- Linux users:聽Please raise a ticket via the聽UNSW IT Service Desk聽to obtain the GlobalProtect client software.
See below for more detailed installation and configuration guides.
-
Download and install GlobalProtect on Windows
For Canberra staff that are on a UNSW Windows device you will need to install Global Protect from Company Portal App.
Instructions to Install and Connect to Global Protect VPN
- Open the VPN Portal:
- Click this link or paste it into your browser:
- Download the VPN Client:
- Download and install the 64-bit Global Protect agent for Windows or Mac.
- Install the VPN Client:
- Once the download is complete, open the downloaded file.
- Click鈥疦ext鈥痑nd follow the prompts to install.
- When asked to authorize the download, click鈥痀es.
- After installation, you will see 鈥淚nstallation Complete鈥; click鈥疌lose.
- Launch the VPN Client:
- Go to your search toolbar and type 鈥淕lobal Protect鈥 until the app appears.
- 厂别濒别肠迟鈥疧辫别苍.
- Set Up the VPN Connection:
- When the app pops up, click on the blue button鈥疓et Started.
- Under鈥疨ortal, type in:鈥ra.vpn.unsw.edu.au鈥痑nd click鈥疌onnect.
- Authenticate:
- You will be guided to Multi-Factor Authentication (MFA) as you normally would when accessing UNSW systems.
- A new window will open advising 鈥淎uthentication Complete鈥; you can close this window.
- Confirm Connection:
- In your bottom left tray, hover over the Global Protect icon. The word 鈥淐onnected鈥 should appear, confirming your VPN connection.
For more detailed instructions, download our Windows installation guide or go to the聽.
- Open the VPN Portal:
-
Installing and using GlobalProtect on macOS
For Canberra staff that are on a UNSW Mac (SOE) device you will need to install Global Protect from the Self-Service App.
Installation Steps
- Log in to GlobalProtect Portal:
- Open a browser and go to
- Enter your Name (zID@ad.unsw.edu.au) and Password, then click鈥疞OG IN. Complete multi-factor authentication using the Authenticator app on your mobile device.
- Download the App:
- After logging in, the app download page should appear. Click the link for 鈥淒ownload Mac 32/64 bit GlobalProtect agent.鈥
- Install the App:
- Open the downloaded file and run the software.
- Run the GlobalProtect Installer, click鈥疌ontinue, and select the installation folder.
- On the Installation Type screen, check the boxes for 鈥淕lobalProtect鈥 and 鈥淕lobalProtect System extensions鈥 (this may be disabled by default).
- Click鈥疘nstall, enter your User Name and Password, then click鈥疘nstall Software.
- After installation, close the installer. If you see a system extension prompt, select鈥疧pen Security Preferences鈥痶o allow the extensions. If using MDM like Jamf Pro, this notification may be suppressed.
- Configure Security Preferences:
- Go to鈥疭ecurity & Privacy鈥痑nd click the padlock icon to make changes.
- Select鈥疉pp Store and identified developers鈥痷nder 鈥淎llow apps downloaded from鈥 and click鈥疉llow. 聽
Using GlobalProtect
- Log In:
- Open the GlobalProtect app from the system tray.
- Enter鈥痳a.vpn.unsw.edu.au鈥痑s the Portal, then click鈥疌onnect.
- Sign in with your zID credentials and complete MFA. Click鈥疧pen GlobalProtect鈥痺hen prompted.
- Connect/Reconnect:
- Click the system tray icon and select鈥痳a.vpn.unsw.edu.au鈥痜rom the Change Portal drop-down if necessary.
- Click鈥疌onnect鈥痑nd sign in again if prompted. Select鈥疉llow鈥痮n any additional prompts to use Split Tunnel and enforce network access features.
- Disconnect:
- Open the GlobalProtect app from the system tray.
- Click the hamburger menu (three lines) and select鈥疍isconnect.
Note
When installing or upgrading to GlobalProtect app 5.1.4 on macOS Catalina 10.15.4, macOS Big Sur 11, or later, you鈥檒l need to enable system extensions for certain features. You might see a 鈥淪ystem Extension Blocked鈥 notification鈥攆ollow the instructions to enable these extensions.
For more detailed instructions, visit the
- Log in to GlobalProtect Portal:
-
Download and install GlobalProtect on iOS
- Open the App Store.
- Search for GlobalProtect.
- Select GlobalProtect鈩 from the search results.
- Tap GET on the app page.
- Install the app.
- Sign in with your Apple ID when prompted.
Connect and disconnect
The 'Portal' to connect to is ra.vpn.unsw.edu.au. You will need to connect using your zID@ad.unsw.edu.au credentials along with MFA.
For more detailed instructions, visit the聽.
-
Download and install GlobalProtect on Android
- Open Google Play.
- Search for听骋濒辞产补濒笔谤辞迟别肠迟鈩.
- Select聽GlobalProtect from the search results.
- Tap INSTALL聽on the app page.
- Review the information GlobalProtect requests access to, then choose 'Accept'.
Connect and disconnect
The 'Portal' to connect to is ra.vpn.unsw.edu.au. You will need to connect using your zID@ad.unsw.edu.au credentials along with MFA.
For more detailed instructions, visit the聽.
-
Having issues?
If you're having problems connecting to the VPN or using Global Protect, download our troubleshooting guide for further assistance.
Privileged Access VPN
The Privileged Access VPN service lets you establish a secure network connection over the Internet from your computer/mobile device to a Security Gateway that provides privileged access to restricted UNSW resources. It is a tool that provides privileged access to UNSW resources where there is a need for additional cyber security access controls. These controls could include ensuring that access is restricted to a particular group within UNSW, or that the resource is being accessed from a trusted device.
Please note:聽Some countries restrict or regulate use of encryption and VPN technologies.聽 Be aware of, and respect local laws that apply at your location, prior to using the Remote Access VPN Service.
The Remote Access VPN service is implemented using Global Protect technology from Palo Alto Networks. This replaces the Cisco AnyConnect technology used in the聽Legacy Remote Access VPN聽service, which has been deprecated and will be decommissioned in late 2024.
-
Examples of applications or systems that may require access via the Privileged Access VPN are listed below:
- Systems that are critical to UNSW's safety and security.
- Research systems that are subject to regulatory controls, or include sensitive personal data.
- Medical systems that contain patient medical data
- Finance applications that contain banking or credit card details.
- Applications that contain staff and student HR data
The list of applications and systems accessible via the Privileged Access VPN service will grow as the some of the group-based access from the Legacy Remote Access VPN is migrated to the new Privileged Access VPN service, and as additional applications and systems get onboarded. Please note that most administrator access to UNSW resources has not yet been migrated to the Privileged Access VPN service. Most system and application administrators should continue to use the "IT Admin VPN" or the "Hosting VPN" services, that are managed by Cyber Security Operations team within UNSW IT.聽
The Privileged Access VPN service is implemented using Global Protect and Prisma Access technology from Palo Alto Networks. It partially replaces the Cisco AnyConnect technology used in the Legacy Remote Access VPN service, which has been deprecated and will be decommissioned in late 2024.
The Privileged Access VPN service is available to only those UNSW staff and students that require it for their work. UNSW staff and students that are working remotely and require access to UNSW resources that don't require privileged access are encouraged to use the Remote Access VPN service instead.
-
UNSW staff and students wishing to connect to the Privilege Access VPN service must first download and install the GlobalProtect app on their device. Once installed, Global Protect can then be configured to connect to the Privileged Access VPN portal (pa.vpn.unsw.edu.au) using zID credentials and multi-factor authentication.
- For Windows and Mac users, please download the .
- For iPhone and iPad users, please download the GlobalProtect client software from Apple App Store.
- For Android users, please download the GlobalProtect client software from Google Play Store.
- For Linux users, please raise a ticket 聽to obtain the GlobalProtect client software.
- The Privileged Access VPN uses the same GlobalProtect app as the Remote Access VPN service.
- For Windows and Mac users, please download the .
Legacy Remote Access VPN
When you open the VPN client application, the server address connection setting will determine which network devices will be available to you.
Cisco AnyConnect VPN exists on the Azure Single Sign-On (SSO) platform to improve application security and enable multi-factor authentication (MFA). When signing in, you will be prompted to enter your zID in the format zID@ad.unsw.edu.au and may need to verify your sign-in using your authenticator.聽 聽
-
The general access VPN provides access to centralised services including email, file and print. This does not provide access to non-centralised services including RDP (remote access to computers) and Faculty based servers.
- Use the default connection setting: vpn.unsw.edu.au.
- For VPN to work, you must be using the correct 鈥楥isco AnyConnect VPN client鈥. This will allow you to securely and privately connect to the internet, and will provide you with a UNSW IP address.聽
- The correct version of the UNSW Cisco VPN can be downloaded to your home machine here: https://vpn.unsw.edu.au
- You should also be using the correct VPN suffix for your faculty.
Network access to applications and services over VPN depends on the underlying end-to-end network. This usually includes non-UNSW network such as home WiFi and broadband ISP networks, which are outside the control of UNSW IT and may be a source of performance issues.
Working remotely over high-latency connections such as over a VPN can impact the performance of some applications, particularly applications designed to work on Local Area Networks such as file sharing and database access. If your work relies on applications that need low-latency network connections, other solutions such as myAccess may be more appropriate.
If you experience performance issues while connected to the Remote Access VPN service, consider disconnecting form the VPN when you do not need to use it.
-
You can use the Library Resource VPN connection to access library resources as if you were physically located on campus, allowing access to geographically restricted websites when travelling to some locations abroad.聽 Using this VPN connection will send all of your internet traffic from your device through UNSW.
- Before connecting with the VPN client, change the connection server address to: vpn.unsw.edu.au/library
- Remember to disconnect after you have finished, so that your internet traffic will no longer be sent via UNSW.
-
You may be directed to use a VPN connection that is specific to the group or faculty that you work with.聽 Authorisation to use these connections will be based on your role and affiliation at UNSW and may require additional approvals.
Before connecting with the VPN client, change the connection setting to the appropriate server address from the table below:
Group VPN server address Chief of Staff & Vice-President vpn.unsw.edu.au/vcdivisn Division Of Advancement Staff vpn.unsw.edu.au/doa Deputy Vice-Chancellor Academic Staff vpn.unsw.edu.au/dvca Deputy Vice-Chancellor Research Staff vpn.unsw.edu.au/dvcr Executive Division Finance & Operations (EDFO) Staff vpn.unsw.edu.au/edfo Executive Division University Services Staff vpn.unsw.edu.au/edus Faculty of Arts & Social Science Staff vpn.unsw.edu.au/fass Faculty of Engineering Staff vpn.unsw.edu.au/feng Faculty of Engineering Research Staff vpn.unsw.edu.au/feng_rsch Faculty of Engineering For Ad Hoc users vpn.unsw.edu.au/feng_adhoc Faculty of Law & Justice Staff vpn.unsw.edu.au/law Faculty of Medicine & Health Staff & Research Students vpn.unsw.edu.au/fmed Faculty of Medicine & Health for Ad Hoc users vpn.unsw.edu.au/fmed_adhoc Faculty of Medicine & Health 鈥 Hospitals vpn.unsw.edu.au/hospital UNSW Art & Design IT Staff vpn.unsw.edu.au/fituad UNSW Business School Staff & Research Students vpn.unsw.edu.au/asb UNSW Canberra聽 聽 聽 vpn.unsw.edu.au/can UNSW IT vpn.unsw.edu.au/unswit
We're here to help
We're here to help with all your tech needs, offering support and services to enhance your learning and work experience.
Sydney +61 2 9385 1333 (Mon-Fri 8am-8pm & Sat 11am-3pm) or Canberra +61 2 5114 5678 (Mon-Fri 8am-5pm)
IT walk-in service centres
- Upper Campus IT Hub -听Room G06, D26 Biological Sciences Building (Next door to XS Cafe)聽()
- Middle Campus IT Hub -听G008, Ground Floor H13聽 Anita B Lawrence Centre (Formerly the Red Centre Building off University Mall)聽()
- Paddington Campus聽IT Hub - Ground Floor, Block D, Paddington Campus聽()
- 91成人版抖音ADFA Campus IT Hub -听Ground Floor, Building 14, 91成人版抖音ADFA Campus ()