openvpn package from the official distribution repository.openvpn package.openvpn package.
+ {{ username }}.ovpn that you collected in Step 1.{{ username }}.ovpn that you collected in Step 1.
+ Ask for this password every time.VPN passphrase sent to you from HUNT over Signal.verification code.
+ If the Authenticate VPN prompt pops up again, then try to log in again with a new verification code.
Private Key Password using your VPN passphrase that you received in Signal message.
+ If you are unable to click Apply after your changes, try to re-enter your Private Key Password using your VPN passphrase that you
+ received in Signal message.
+ The error messages below indicates that TOTP (Google Auth) code is not accepted. You should try to setup your TOTP one more time or request a TOTP reset + in Service desk. +++- +-
++++-
++++-
sudo apt install nmap and then run:
- sudo apt install nmap and then run:129.241.176.121 no blocking was detected. Although if tracing seems stuck send us a screenshot in service desk.
SSH temporary key from Signal message.
- ++++-
SSH temporary key from Signal message.
- ++++-
+++--+
Authentication token manipulation error check strength requirements for passphrase in step {{ passChangeId }}.1.
++++-
entry machine, connect to your home machine.
@@ -611,15 +567,19 @@ const openSurvey = () => {
- ++++-
++++-
CTRL + ALT + T) and assure SSH Config file exists. No output is expected.
- {{ labName }}-{{ username }}.p12).
Authorities.
- hctsca1.crt certificate file.
+ In Google Chrome, open the URL chrome://settings/certificates and navigate to section
+ Authorities.
hctsca1.crt certificate file.
+
Your certificates
- and click the Import button on the right side of the screen.
- {{ labName}}-{{ username }}.p12 file that you downloaded to your local computer,
- and enter the TLS passphrase that we sent you on Signal.
+ Within chrome://settings/certificates navigate to section
+ Your certificates and click the Import button on the right side of the screen.
{{ labName }}-{{ username }}.p12 file that you downloaded to your local computer, and
+ enter the TLS passphrase that we sent you on Signal.
++++-
Remember this decision box is checked, and click OK.
+
+
- https://{{fqdn}}
+ https://{{ fqdn }}
DNS_PROBE_FINISHED_NXDOMAIN error you need to repeat the {{ hostsFileId }}. Workbench - hosts file guide.
- ERR_CONNECTION_TIMED_OUT error you need to make sure that you are connected to VPN. If you are able to ssh into lab your VPN is fine, and you need to repeat the 6. Workbench - hosts file guide.
+ 1. If you are getting DNS_PROBE_FINISHED_NXDOMAIN error you need to repeat the
+ {{ hostsFileId }}. Workbench - hosts file guide.
+ ERR_CONNECTION_TIMED_OUT error you need to make sure that you are connected to VPN. If you are able to ssh into lab
+ your VPN is fine, and you need to repeat the 6. Workbench - hosts file guide.
Start again.
+ If you have not yet installed a fresh client certificate on this computer, review the section Install your certificates above.
+ Start by click on blue button Start again.
SEC_ERROR_UNKNOWN_ISSUER when accessing Workbench follow these steps:
+ Firefox may require that you manually import the HUNT Cloud Certificate Authority to consider it trusted. If you see Error code:
+ SEC_ERROR_UNKNOWN_ISSUER when accessing Workbench follow these steps:
about:preferences#privacy.
- about:preferences#privacy.Certificates and click on View Certificates.
Authorities.
- org-HUNT Cloud Trust Services).
+ In Google Chrome, open the URL chrome://settings/certificates and navigate to section
+ Authorities.
org-HUNT Cloud Trust Services).Trust this certificate for identifying websites.
- Got 1 minute? Tell us how it went! -
+Got 1 minute? Tell us how it went!
- Feel free to continue reading our getting started guides and figure out which tools do you need for your work.
-
+ Feel free to continue reading our getting started guides and figure out which
+ tools do you need for your work.
+
Otherwise, you're done!
CTRL + ALT + T).
- CTRL + ALT + T). Download {{ openvpnInstallerName }},
- download the file and follow the on-screen installation instructions until finished.
+ If you are not an NTNU user
+ download and install OpenVPN using the latest stable Windows Installer (Avoid beta/rc versions)
Download {{ openvpnInstallerName }}, download the file and follow the on-screen installation instructions until finished. Clear Saved Passwords option and click on it to remove previously used passwords.
+ Right click on the OpenVPN notification icon on the taskbar, in the lower right corner of your screen and select. Find
+ Clear Saved Passwords option and click on it to remove previously used passwords.
+
Import select Import file...
+ then through Import select Import file...
{{ username }}.ovpn that you extracted from 7-ZIP archive.
+ Select OpenVPN (OVPN) profile: {{ username }}.ovpn that you extracted from 7-ZIP archive.
+
verification code from Google Authenticator as your password. verification code from Google Authenticator as your password.
+
VPN passphrase from Signal. VPN passphrase from Signal. verification code timed out while you typed your passphrase.
+ Your authentication will fail when you complete your passphrase below. This is expected since your
+ verification code timed out while you typed your passphrase.
verification code from Google Authenticator app.
+ If the same window as in step 4 pops up try to connect again with a fresh verification code from Google
+ Authenticator app.
verification code.
+ If the Authenticate VPN prompt pops up again, then try to log in again with a new verification code.
+ The error messages below indicates that TOTP (Google Auth) code is not accepted. You should try to setup your TOTP one more time or request a TOTP reset + in Service desk. ++++-
ERROR: could not read Private Key username/password/ok/string from management interface
@@ -613,62 +520,64 @@ const openSurvey = () => {
# Remove saved passphrase
+ If you need to remove your VPN passphrase because of typo or SSH reissue.
- If you need to remove your VPN passphrase because of typo or SSH reissue.
-
-
- Right click on the OpenVPN icon
in the task bar in the lower right corner of your screen and select Clear Saved Passwords.
+ Right click on the OpenVPN icon
+
in the task bar in the
+ lower right corner of your screen and select Clear Saved Passwords.
# Remove VPN config
+ If you need to remove your VPN config because SSH reissue or reactivation.
- If you need to remove your VPN config because SSH reissue or reactivation.
-
-
- Open your file explorer and manually remove the folder with the old OpenVPN configurations.
- It's usually located in this directory and you should remove the directory {{ username }} including the contents:
+ Open your file explorer and manually remove the folder with the old OpenVPN configurations. It's usually located in this directory and you should remove
+ the directory {{ username }} including the contents:
-
+
- # Route addition failed
+ # Route addition failed
You should reinstall your OpenVPN with administrative rights if you already installed OpenVPN and are getting errors below:
-
+
+
-
+
+
-
+
+
-
+
+
-
+
+
-
+
+
# TLS handshake failed
If you see the error below the problem might be with your current network (e.g. institution is blocking VPN connections).
-
+
+
-
+
+
+ - Make sure your IP address is in our Access list.
-
- Make sure your IP address is in our Access list.
-
- -
- Confirm that your local institution is blocking VPN connecting by connecting from different network (e.g. mobile internet or from home).
- For more details see our troubleshooting guide
- Cannot connect due to local firewalls.
+ Confirm that your local institution is blocking VPN connecting by connecting from different network (e.g. mobile internet or from home). For more
+ details see our troubleshooting guide
+ Cannot connect due to local firewalls.
@@ -678,31 +587,20 @@ const openSurvey = () => {
If you want to check whether your VPN connection is blocked by the firewall, download and install [NMAP](https://nmap.org/download.html), and then run:
-
+
If traceroute ends with 129.241.176.121 no blocking was detected. If tracing seems stuck send us a screenshot in service desk.
-
+
TIP
- If nothing works, please head over to our main troubleshooting section for more information on how to troubleshoot connections.
+ If nothing works, please head over to our main troubleshooting section for more
+ information on how to troubleshoot connections.
-
Start again
Back
-
@@ -726,13 +624,7 @@ const openSurvey = () => {
# {{ passChangeId }}. SSH Passphrase change
-
-
+
Ensure that you are logged into VPN.
@@ -743,9 +635,7 @@ const openSurvey = () => {
poster="/img/video-covers/lab-access-macOS-ssh-passphrase-v1.jpg"
/>
-
- {{ getNextItem(passChangeId, true) }} Design .
-
+ {{ getNextItem(passChangeId, true) }} Design .
{{ getNextItem(passChangeId) }} To start Command Prompt press WIN + R and type cmd.exe then hit Enter.
@@ -791,22 +681,13 @@ const openSurvey = () => {
Authentication token manipulation error check strength requirements for passphrase in step {{ passChangeId }}.1.
++++-
++++-
WIN + R and type cmd.exe then hit Enter) and assure SSH Config file exists. No output is expected.
+ {{ getNextItem(sshConfId, true) }} Open new Command Prompt window (WIN + R and type cmd.exe then hit Enter) and assure SSH
+ Config file exists. No output is expected.
Notepad in the search field. Notepad in the search field.
- Run as administrator.
+ {{ getNextItem(hostsFileId) }} In the search results, right-click Notepad and select Run as administrator.
+
Yes.
+ {{ getNextItem(hostsFileId) }} Confirm administrator permissions by clicking on Yes.
+
File > Open (CTRL + O).
+ {{ getNextItem(hostsFileId) }} In Notepad, start by selecting File > Open (CTRL + O).
+




+
{{ labName }}-{{ username }}.p12).
.p12 certificate that you downloaded from FileSender.
- Make sure the store location is set to Current User and click Next:
+ Open your .p12 certificate that you downloaded from FileSender. Make sure the store location is set to Current User and click
+ Next:
+
Next one more time.
+
TLS passphrase that you received on signal, and make sure the options are checked exactly as in the image.
- Then click Next:
+ Fill in the TLS passphrase that you received on signal, and make sure the options are checked exactly as in the image. Then click
+ Next:
+
Next:
+ Check the first option: Automatically select the certificate store based on the type of certificate. Click Next:
+
+
LAB instead of HCTS CA 1 skip to step 7.
+ The wizard will require a confirmation to install a certificate from us: HCTS CA 1 (HUNT Cloud Trust Services). Our certificate is required to safely
+ access your workbench environment.
LAB instead of HCTS CA 1 skip to step 7. YES, confirm that you see our thumbprint (fingerprint):
++++-
+
Lab CA),YES.
+
+
++++-
Remember this decision box is checked, and click OK.
+
+
- ++++-
DNS_PROBE_FINISHED_NXDOMAIN error you need to repeat the {{ hostsFileId }}. Workbench - hosts file guide.
- ERR_CONNECTION_TIMED_OUT error you need to make sure that you are connected to VPN. If you are able to ssh into lab your VPN is fine, and you need to repeat the 6. Workbench - hosts file guide.
+ 1. If you are getting DNS_PROBE_FINISHED_NXDOMAIN error you need to repeat the
+ {{ hostsFileId }}. Workbench - hosts file guide.
+ ERR_CONNECTION_TIMED_OUT error you need to make sure that you are connected to VPN. If you are able to ssh into lab
+ your VPN is fine, and you need to repeat the 6. Workbench - hosts file guide.
Start again.
+ If you have not yet installed a fresh client certificate on this computer, review the section Install your certificates above.
+ Start by click on blue button Start again.
Advanced button to find the Error code (Feilkode).
- Advanced button to find the Error code (Feilkode). SEC_ERROR_UNKNOWN_ISSUER continue with the next step below.SEC_ERROR_UNKNOWN_ISSUER continue with the next step below.
- SEC_ERROR_UNKNOWN_ISSUER when accessing Workbench follow these steps:
+ Firefox may require that you manually import the HUNT Cloud Certificate Authority to consider it trusted. If you see Error code:
+ SEC_ERROR_UNKNOWN_ISSUER when accessing Workbench follow these steps:
Certificates and click on View Certificates.
@@ -1530,15 +1292,15 @@ const openSurvey = () => {
Authorities.
- org-HUNT Cloud Trust Services).
+ In Google Chrome, open the URL chrome://settings/certificates and navigate to section
+ Authorities.
org-HUNT Cloud Trust Services).Trust this certificate for identifying websites.
- Got 1 minute? Tell us how it went! -
+Got 1 minute? Tell us how it went!
- Feel free to continue reading our getting started guides and figure out which tools do you need for your work.
-
+ Feel free to continue reading our getting started guides and figure out which
+ tools do you need for your work.
+
Otherwise, you're done!
WIN + R and type cmd.exe then hit Enter).
- WIN + R and type cmd.exe then hit Enter). Yes and then press Enter:
- ++++-
Y and then Enter:
- ++++-