2factor VPN - Request Access to Palo Alto GlobalProtect VPN

This document outlines the process to request access to a 2factor VPN connection.


This document is specific to the 2factor VPN service that uses Palo Alto GlobalProtect. 2factor VPN is used to access ERP resources and is not the same as WiscVPN or Departmenal VPN. If you are uncertain if you should use 2factor VPN, please contact the DoIT Help Desk.

Note: If your machine is managed by Departmental Support, your machine should already have the Palo Alto GlobalProtect VPN client.

Request Access

2factor VPN is used by a small number of people to access sensitive resources. If you believe you need access to this service, please use the procedure below.


  1. Obtain a Symantec VIP OTP token (see UW Digital ID (One-Time Password) - Requesting an OTP Token)
  2. Open a service request JIRA requesting access and assign this JIRA to the HRS Security Team. The JIRA should include your:
    • Email Address
    • Emplid
    • NetID
    • VIP OTP token serial number
    • Business need for access
    • Supervisor's name

See Also:

Keywords:authorization HRS ERP vpn.wisc.edu global protect vpn   Doc ID:67135
Owner:Marc T.Group:Identity and Access Management
Created:2016-09-22 05:16 CDTUpdated:2020-04-09 08:57 CDT
Sites:Access Management Services, DoIT Help Desk, Human Resource System (HRS), Identity and Access Management, Identity and Access Management, UW Digital ID, UW–Shared Services
Feedback:  1   1