How to Connect to the JCB VPN

Tags VPN

Before you begin

  • On a JCB-managed computer, the VPN client is normally already installed. The app is named Cisco Secure Client (on older Windows machines it may still appear as Cisco AnyConnect — it is the same VPN). If it is missing, install it yourself from Software Center (Windows) or Self Service (Mac).
  • You have an internet connection (home WiFi, ethernet, or another network). The VPN cannot connect without internet access.
  • You have your Cornell NetID and NetID password.
  • You have the device you use for Duo two-step login with you.
  • Not the same thing: Cisco Secure Client is the VPN. Secure Connect is Cornell's separate passkey / passwordless sign-in program. If a search lands you on "Secure Connect" articles, that is passkey login — not the VPN.

First time signing in on a new Cornell-owned Windows computer while off campus? See How to Connect to the VPN for Your First Sign-In on a Windows Computer (KB 9044) first.

Steps

  1. Open Cisco Secure Client, enter cuvpn.cuvpn.cornell.edu in the connection field, and click Connect.
    Cisco Secure Client connection window with the server address entered and the Connect button
  2. At the login screen, complete the fields as follows, then click OK:
    • Username: your NetID followed by @JCB-VPN (for example, abc123@JCB-VPN). The JCB-VPN part is case-sensitive — type it exactly, not jcb-vpn. Wrong capitalization is the most common reason a sign-in is rejected.
    • Password: your NetID password.
    • DUO Passcode (or Second Password): enter push to receive a Duo notification on your phone.
    • Group: leave the Group dropdown set to Two-Step_Login (the only valid choice; it stays selected between connections).

    JCB VPN login screen showing the Username, Password, and DUO Passcode fields
  3. Complete the Duo two-step login prompt on your device to approve the connection.

Expected result

Cisco Secure Client shows as connected and the VPN icon appears in your system tray. You can now reach JCB resources such as the shared drive and network printers as if you were on campus.

Good to know once you're connected

  • You'll be disconnected after about 10 hours. CU VPN sessions have roughly a 10-hour limit — when it ends, reconnect and approve Duo again.

Researchers: JCB Research Servers

To reach the JCB Research Servers from off campus, sign in with a different realm: netid@JCB-VPN-Research (also case-sensitive). Fuller setup will be covered in a forthcoming Research Computing article.

Troubleshooting

Before you report a problem, try these quick checks:

  • Check your internet connection first: confirm you can browse the web before opening Cisco Secure Client. The VPN cannot connect without internet access.
  • Your username is not accepted: confirm you entered your NetID followed by @JCB-VPN, typed with exactly that capitalization. Your NetID on its own, or your full email address, does not work here.
  • No Duo prompt arrives: confirm you entered push in the DUO Passcode or Second Password field, and that your phone has a signal, then click Connect and try again.
  • Connected, but can't reach the J: drive after a recent password change: your saved drive mapping may still be using your old password. Sign out and back in, or reconnect the VPN and re-open the drive. If it still won't open, contact the Helpdesk and mention the password change.
     

Still need help? Contact the Cornell SC Johnson College of Business Helpdesk at itrequests@business.cornell.edu.

[edited via Jane by rtm25 on 2026-08-20 14:49 UTC]

Was this helpful?
71% helpful - 7 reviews
Print Article

Related Articles (1)

Prepare a JCB Windows or Mac computer to display the IT policy compliance splash screen at login by connecting to the JCB VPN for at least two hours.