Can't Find What You Need?

Have a Suggestion?

Browse by Category

Skip to end of metadata
Go to start of metadata

Tell Me

Development of this FAQ is ongoing.

The installation should be similar on various Linux distributions, but experiences may vary.

These instructions require that your user account has sudo access.

  1. 1. Go to to download the VPN software
      a. Click "Linux 64bit"
      b. Download the shell script -
  2. Copy the script to /tmp (assumes the script is in the ~/Downloads directory)
    1. Run...

      cp ~/Downloads/  /tmp
  3. Run the downloaded script as root

    1. Become the root user. Run and if prompted, provide username/password information to gain superuser permissions...

      sudo -i
    2. Set the umask...

      umask 022
    3. Run the VPN install script... 

      sh /tmp/
    4. Exit sudo...

  4. When script has completed, check that there are files in /opt/cisco - there should be two directories: anyconnect/ and vpn/
  5. Run the VPN AnyConnect Software

    The graphical interface for the VPN Anyconnect Software client must be used - the command line version will not work because of the Duo Multi-factor authentication requirement.

    1. Run the following in a terminal or the Cisco Anyconnect Secure Mobility Client program from your GUI application menu.

    2. The application should open - In the Connect to field, type and click Connect
    3. A window will open to enter your NinerNET credentials followed by Duo authentication

    4. To disconnect from the VPN, click the Disconnect button in vpnui

You may get an error that says "AnyConnect cannot confirm it is connected to your secure gateway" when you try to connect to the VPN in Step #4. This happens because the Cisco AnyConnect maintains its own list of certificates to authenticate remote servers - it does not use the system's certificates. The Cisco AnyConnect certificate database is in /opt/.cisco/certicates/ca

It is likely that your installation of Linux has the right certificates already because they are frequently included with web browsers and other tools.

To remediate, copy the USERTrust certificates by doing:

sudo cp /etc/ssl/certs/USERTrust_* /opt/.cisco/certificates/ca/

Retry Step #4

Related FAQs

Page viewed times