Description
This article describes how to connect to the Cornell VPN and log into a Cornell-owned workstation for the first time while off-campus. Before logging in for the first time off-campus, you must connect to the Cornell VPN so the computer can verify your credentials.
Note: This process is only required when logging into your computer for the first time off-campus. On-campus connections do not require a VPN. You will not need to follow this process for subsequent logins.
Procedure
- If you see a globe icon in the lower-right corner of the login screen, click it to connect your laptop to the internet via Ethernet or Wi-Fi. If no globe icon is visible, your computer is already connected to the internet and you may proceed to the next step.
- Once connected to the network, click the button in the lower-right corner that looks like two displays stacked on top of each other.

- In the Cisco Secure Connect window that opens, click Connect.
- In the login window for cuvpn.cuvpn.cornell.edu, enter your NetID in the username field.
- Enter your NetID password in the password field.
- In the field labeled DUO Passcode or Second Password, enter your preferred Duo authentication method:
- Enter push to receive a Duo push notification to your phone.
- Enter phone to receive a phone call.
- Enter SMS to receive a text verification code.
- Complete the Duo authentication prompt on your device when it arrives.
- Once the icon with an X inside a circle appears in the lower-right corner, confirming a successful VPN connection, sign into your computer using your NetID and password.
- If you do not see your name on the login screen, select Other User from the lower-left corner of the window.
If you are unsuccessful or have any further questions, please email your local Shared Business Network (SBN) IT representative for assistance.