VPN - Set Up and Connect Using the Cisco Secure Client for Mac

Download & Install the Cisco Secure Client

Step 1

Download the Cisco Secure Client for Mac.

Note: If you are currently using Cisco Secure Client for another VPN, you do not need to reinstall the application. You only need to add the new profile, as shown in the following steps.

Step 2

If Rosetta isn't already installed on your computer, click Install and follow the prompts to install on your device before continuing with the installer.

Step 3

Open the installer download. The products that will be installed from the package will be listed. Click Continue.

Step 4

On the Installation Type step, several Cisco products will be selected by default.

Step 5

You may deselect everything except AnyConnect VPN and Diagnostics and Reporting Tool. To proceed, click Continue.

Step 6

When the installer has finished, click Close.

 

Set Up the Cisco Secure Client

  • If your computer is managed by Buff Techs Pro, skip to step 3.
  • If your computer is not managed by Buff Techs Pro, continue to step 1.

Step 1

If your computer is not managed by Buff Techs Pro, you may receive an error that requires you to allow a new system extension. To proceed, click Open Security Preferences.

Please note: This screenshot is from a machine running macOS Big Sur. Other macOS versions may look slightly different.

Step 2

In System Preferences > Security & Privacy, click Allow to approve the extension. You may need to click the lock in the bottom left corner and enter administrator credentials to change this setting.

Step 3

On computers running Big Sur: Click Allow to confirm the Network Content Filter.

Step 4

Newer operating systems will see this screen. Click Allow to continue.

Step 5

After the initial download, the application is likely in Applications in a folder labeled Cisco. Search for Cisco Secure Client using the spotlight search in the top toolbar of your Mac, or find your applications folder.

Step 6

Open the Cisco Secure Client for Mac application.

Step 7

Type vpn.colorado.edu into the VPN: text field, then click Connect.

*Note: Advanced users and system administrators should enter vpn.colorado.edu/limited in this field. Custom VPNs in the format of vpn.colorado.edu with /thecustomaddress appended should also be entered in this field, if applicable.

Step 8

Cisco will show a notice that you need to log in and authenticate.

Step 9

Log in to the Federated Identity Service with your IdentiKey username and password.

Step 10

Authenticate with Duo multi-factor authentication to finish logging in to VPN. Learn more about Duo MFA.

You will now be connected to the CU Boulder VPN service. All your internet activity will be routed securely through the VPN.

*Note: For future connections, the vpn.colorado.edu connection can now be selected from the drop-down menu in setup step 7.

Step 11

To end your session, click the Disconnect button.

 

Uninstall the Cisco Secure Client

If you need to uninstall the Cisco Secure Client or any undesired Cisco products that were selected during installation, open a terminal window and run the commands below for the modules you want to uninstall.

Step 1

To uninstall the entire Cisco Secure Client suite, including most of the modules from installation step 4, run this command:

sudo /opt/cisco/secureclient/bin/cisco_secure_client_uninstall.sh

If your purpose for uninstalling the suite is simply to remove additional Cisco products that were selected during installation, your next step is to rerun the installer and ensure only the AnyConnect VPN and Diagnostics and Reporting Tool are selected.

Step 2

To remove Duo Desktop, run this command:

sudo /Applications/Duo\ 
Desktop.app/Contents/Library/LaunchServices/com.duosecurity.UninstallDuoDeviceHealth

Step 3

To remove Thousand Eyes Endpoint Agent:

  1. Use Finder to navigate to Applications > Cisco.
  2. Drag Cisco Secure Client - ThousandEyes Endpoint Agent to the trash.