You have reached this page as you are trying to access content that first requires you to have pre-authenticated at the level of the firewall.
To reach the content you are looking for, you must follow one of the alternative methods listed below.
All the methods require to use your EGO Active Directory account. If you don't have it, please refer to the Cascina Cascina EGO-Virgo Accounts page
If you are connecting from one of the supported platforms you can install the specific client described below that creates an encrypted tunnel to a subset of the Cascina internal networks (note that the rest of your traffic to the Internet is not forced to pass through the tunnel).
With the firewall VPN client installed and configured on your endpoint device you are free , once authenticated, to access various internal hosts transparently according to the firewall rules foreseen for your profile during 10 hours without re-authentication as long as the VPN client is not shutdown.
Note that, using this method, for the time of the session you don't need to re-authenticate in case your endpoint device goes into sleep-mode or the contact between the VPN client and the Cascina firewall server is interrupted along the path.
In the following you find the supported VPN clients.
Please install your selected choice (a dedicated icon showing a "lock" or a "key" will then be shown on your task bar) and then follow the indicated instructions for the first-time configuration of the connection to Cascina as a VPN site.
IMPORTANT: in case the client complains that the VPN server fails the verification step, please interrupt the configuration and contact the support at service@ego-gw.it
Configuration of the Cascina VPN site:
From a browser on the device click on the following link:
cpvpn:///?V1&name=EGOvpn&host=fwvpn.ego-gw.it&auth=username&fingerprint=ROOK+BLED+TEND+SHAY+FAKE+ABEL+SELL+NE+OVA+STEW+GAP+COT
and answer to the subsequent questions leaving the default choices.
Configuration of the Cascina VPN site:
From a browser on the device click on the following setup link:
cpvpn:///?V1&name=EGOvpn&host=fwvpn.ego-gw.it&auth=username&fingerprint=ROOK+BLED+TEND+SHAY+FAKE+ABEL+SELL+NE+OVA+STEW+GAP+COT
and answer to the subsequent questions leaving the default choices.
Run the .msi package and select the 2nd menu choice "Check Point Mobile"
In case you are asked to configure your first VPN site click "Cancel" and follow instead the procedure described hereafter
Configure the Cascina VPN site:
From a browser on the device click on the following setup link:
Run the .dmg package and select the 2nd menu choice "Check Point Mobile"
Configure the Cascina VPN site:
Start the client from the taskbar and click on the "VPN Options" button and then "New", the Site Wizard starts, fill the requested fields as follows:
Note for the connection locally from Cascina
In principle you should not need to use the VPN when connected to one of the wireless networks at Cascina, since you can use directly your Active Directory credentials on the
"EGO" wireless SSID with less overhead and wider internal scope.
On-site VPN connections are automatically denied on Android,IoS,Windows and MacOS (since endpoint client E87.20) with a message explaining that the resources are already available.
Eduroam users on-site can instead use the VPN connection as they were outside.
This method is mainly for connection from the platforms for which the VPN is not supported yet (i.e. linux).
In case you need to use this method please do it from a location where you trust the users that share the same IP address with you to go to the Internet (such as at your home) or from a workstation you own at your Institution with an IP address that is not something like (192.168.x.x , 172.16-31.x.x , 10.x.x.x).
If you are in other locations like a conference or a public hotspot like an airport please connect only for a short time and drop the connection with the "Log out" button as soon as you are finished. Failing to do so may cause connection problems when multiple authorized Virgo users near you attempt to authenticate with this method in the same period of time.
To authenticate: