Top Banner
Introduction to VPN for MVS
35

Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Dec 26, 2015

Download

Documents

Earl Robinson
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Introduction to VPN for MVS

Page 2: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Introduction to VPN for MVS

Presented by Kevin D. BurneyComputer Systems and Network ArchitectOffice of the Vice Chancellor of Budget and Finance

Page 3: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Introduction to VPN for MVS

Campus wide solution for UC Berkeley secure mainframe access using the Cisco VPN client

Page 4: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

What is OPTRS?

On-line Payroll Time Reporting SystemOPTRS will replace the paper forms

currently used to submit positive time, additional pay, exceptional pay and payroll transfers. 

http://payroll.vcbf.berkeley.edu/training/

Page 5: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Why the VPN solution?

The VPN was seen as a solution for addressing the issue of clear text communications to and from the mainframe.

The recently approved Campus Minimum Security Standards for Network Devices does not allow the unencrypted authentication used by Telnet.

Page 6: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Why the VPN solution?

Additionally the information used by OPTRS can be considered Restricted Data as defined by the Data Management, Use and ProtectionPolicy (DMUP).

Data in this category is not to be transmitted across the network in the clear.

Page 7: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Where to get the client software?

Currently the software is available at the following website.

http://software-test.berkeley.edu/windows/vpn/test/

Page 8: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 9: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 10: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 11: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 12: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 13: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 14: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Installation screens

Page 15: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

After the reboot

If you check to save the credentials please be aware that they are hashed in a text file located in the Cisco VPN program directory and are shared by all users of the machine.

Page 16: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Connected

Once you are successfully authenticated, the VPN session will get initialized and you should receive the following pop up window.

Page 17: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Connected

The lock located in the task window should appear to be locked.

Page 18: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN did not connect

If the lock appears to be unlocked the VPN client did not connect successfully.

Page 19: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

In order to bring up the GUI for the VPN dialer you can right click on the lock on the task bar and a menu will come up.

Page 20: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 21: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 22: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 23: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 24: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 25: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

VPN Client Configuration

Page 26: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Telnet logon banner

Page 27: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Failed to connect to Iridea

Page 28: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

If you select to save the credentials and happen to incorrectly enter the username or password, the client will attempt to authenticate and it will fail, it will then disconnect.

It will not tell you that the credentials were not correct.

It will not re-prompt for credentials.

Page 29: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

Page 30: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

Page 31: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

You will need to bring up the VPN client and modify the profile in question. It will not show that a password is currently saved so you will need to use the modify profile.

Page 32: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

Page 33: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Bad credentials saved in the client

After exiting the Modify profile screen by clicking the save button without actually changing any settings will cause the client to resume prompting for the users credentials.

Page 34: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Change saved user credentials

If you need to change the credentials which have previously worked you can use the Erase Saved User Password option.

Page 35: Introduction to VPN for MVS. Presented by Kevin D. Burney Computer Systems and Network Architect Office of the Vice Chancellor of Budget and Finance.

Questions?

Q&A