Back to Top
KAUST IT · Network Access

KAUST VPN

The KAUST VPN gives you a secure connection to KAUST systems when you are off campus, at home, traveling, or on public WiFi. It puts your device on the KAUST network so you can reach things that only work on campus. It works on computers, phones, and tablets.

When you need it

  • Internal KAUST sites and the intranet
  • Shared drives and network folders
  • Anything that only works on campus

When you do not

  • Outlook, Teams, OneDrive, SharePoint
  • Google Workspace
  • Most cloud apps
  • Regular web browsing

Who can use it

Automatic

Faculty, researchers, students, postdocs, staff, consultants, and PTSAs.

Request it

Service providers, visiting students, and business visitors cannot request VPN themselves. Your KAUST sponsor does it in two steps: first a KAUST Connect account is created for you, then your sponsor requests VPN access for external people. The account has to exist before VPN can be added.

Set it up

A step-by-step walkthrough. Use Back and Next to move through it, or tap a stage to jump.

1 Your device
2 Computer type

First, do you have Duo set up?

You sign in to the VPN with a Duo passcode, the second step on your KAUST account. Duo protects more than the VPN, so you need it set up before you can connect.

Pick your device

This sets the right steps for you.

Is this a KAUST computer or your own?

KAUST-managed computers install the app a simpler way.

See if the VPN app is already there

Open Applications and look for Cisco Secure Client.

Open the Start menu and look for Cisco Secure Client.

Already have it? Tap Connect in the tracker above to skip ahead. If not, continue.

Cisco Secure Client app icon
Cisco Secure ClientThis is the icon to look for

Install it, no admin rights necessary

Open Self Service+, find KAUST VPN Secure Client, then click Install.

The app is listed here as KAUST VPN Secure Client. Click Install

Open Software Center, click Applications, find KAUST VPN Secure Client, then click Install.

The app is listed here as KAUST VPN Secure Client. Click Install

Download the VPN app

Go to vpn.kaust.edu.sa and sign in with your KAUST username, password, and a Duo passcode. On the download page, click Download for macOS Download for Windows.

Sign in with your KAUST account and a Duo passcode
Click Download for macOS
Click Download for Windows

Install the VPN app

In Downloads, open the file you downloaded (its name starts with cisco-secure-client-macos). A small disk image window opens. Then:

  1. Double-click Cisco Secure Client.pkg
  2. Click Continue, accept the license (Agree), then Install
  3. If your device asks for a password, enter the one you use to log in to this computer
  4. When you see "The installation was successful," click Close
Double-click Cisco Secure Client.pkg
Click Install to begin
Enter your device password when asked
When it succeeds, click Close

In Downloads, open the file you downloaded (its name starts with cisco-secure-client-win and ends in .exe). Then:

  1. On the Setup Wizard, click Next
  2. Accept the license, then click Next
  3. Click Install
  4. If Windows asks to allow the app to make changes, click Yes
  5. Click Finish
The Setup Wizard. Click Next
Click Install to begin
If Windows asks, click Yes
Click Finish

Get the VPN app

Install Cisco Secure Client from the App Store, then open it.

This is the same app KAUST uses on laptops and desktops. There is no separate KAUST app to look for.

Install Cisco Secure Client-AnyConnect from Google Play, then open it and accept the license terms.

Google Play still shows AnyConnect in the app name. That is expected, and it is the correct app. It is the same one KAUST uses on laptops and desktops.

Cisco Secure Client app icon
Cisco Secure ClientThis is the icon to look for

Add the KAUST connection

On a phone or tablet the connection is not created for you, so you add it once by hand. Open the app and tap Connections.

  1. Tap Add VPN Connection
  2. In Description, type KAUST VPN
  3. In Server Address, type vpn.kaust.edu.sa
  4. Tap Save
  1. Tap Add New VPN Connection
  2. In Description, type KAUST VPN
  3. In Server Address, type vpn.kaust.edu.sa
  4. Tap Done

You only do this once. After that, the connection stays in the app.

Turn the VPN on

Back on the main screen, turn on the AnyConnect VPN toggle.

The first time you do this, iOS asks permission to add VPN configurations. Tap Allow, then confirm with Face ID, Touch ID, or your passcode.

This step is not optional. If you tap Don't Allow, iOS blocks the connection from being created and the VPN will not work. If that happens, delete the connection, add it again, and choose Allow.

When Android asks to allow the connection request, tap OK.

This step is not optional. If you decline, Android blocks the connection and the VPN will not work. If that happens, turn the toggle on again and choose OK.

The app name on the toggle still says AnyConnect. That is the app's own label, and it is correct.

Pick your group and sign in

  1. Choose the Group that matches your role at KAUST
  2. Enter your KAUST username and password
  3. Enter your Duo passcode
  4. Tap Connect

A short security notice appears. Tap Accept to finish connecting.

Your Duo passcode: type the 6-digit code from the Duo app, or type push and tap Approve on your phone, or type sms for a code by text.

Open the VPN app

Open Cisco Secure Client, the VPN app you installed.

Press Command + Space, type Cisco Secure Client, and open it.

Open the Start menu, type Cisco Secure Client, and open it.

Cisco Secure Client app icon
Cisco Secure ClientLook for this icon
Open it from your Applications folder
Open it from the Start menu

Connect

Type vpn.kaust.edu.sa and click Connect.

Type vpn.kaust.edu.sa and click Connect
Type vpn.kaust.edu.sa and click Connect

Pick your group and sign in

Choose the Group that matches your role, enter your username, password, and Duo passcode, then click OK.

Open the Group menu and pick your role
Enter username, password, and Duo passcode, then OK
Pick group, enter username, password, and Duo passcode, then OK
Your Duo passcode: type the 6-digit code from the Duo app, or type push and tap Approve on your phone, or type sms for a code by text.

Accept the banner

A short security notice appears. Click Accept to finish connecting.

Click Accept to finish connecting

You are connected

That is it. To disconnect later, open the app and click Disconnect.

That is it. To disconnect later, open the app and turn the AnyConnect VPN toggle off. Leaving it on all day will use battery, so turn it off when you are done.

Need help? Contact the IT Service Desk. Want the full Duo walkthrough? Duo guide.

Need help? Contact the IT Service Desk

Having trouble?

  • It will not connect. Check that your internet connection is stable.
  • It keeps dropping. Switch to a stronger or wired network. On a phone, moving between WiFi and mobile data will drop the connection, so reconnect after you switch.
  • The mobile app is still called AnyConnect. That is expected. The App Store lists it as Cisco Secure Client and Google Play lists it as Cisco Secure Client-AnyConnect. Both are the right app.
  • Access denied. Service providers, visiting students, and business visitors cannot request VPN themselves, and VPN cannot be added to an account that does not exist yet. Ask your KAUST sponsor to submit two requests in order: the KAUST Connect Account Request Form to create your KAUST account, then the VPN access request for external people once the account is active.

Still stuck? Contact the IT Service Desk.

Press Esc or click anywhere to close