2factor VPN - Request Access to Palo Alto GlobalProtect VPN

This document outlines the process to request access to a 2factor VPN connection.


This document is specific to the 2factor VPN service that uses Palo Alto GlobalProtect. 2factor VPN is used to access ERP resources and is not the same as WiscVPN or Departmenal VPN. If you are uncertain if you should use 2factor VPN, please contact the DoIT Help Desk.

Note: If your machine is managed by Departmental Support, your machine should already have the Palo Alto GlobalProtect VPN client.

Request Access

2factor VPN is used by a small number of people to access sensitive resources. If you believe you need access to this service, please use the procedure below.


  1. Obtain a Symantec VIP OTP token (see UW Digital ID (One-Time Password) - Requesting an OTP Token)
  2. Open a service request JIRA requesting access and assign this JIRA to the HRS Security Team. The JIRA should include your:
    • Email Address
    • Emplid
    • NetID
    • VIP OTP token serial number
    • Business need for access
    • Supervisor's name


Note: The Cybersecurity VPN is only available for employees of the DoIT Office of Cybersecurity.

  1. Obtain a Symantec VIP OTP token (see UW Digital ID (One-Time Password) - Requesting an OTP Token)
  2. Email uwdigitalid@doit.wisc.edu and provide your NetID, VIP token serial number, and your business need for access. To find your OTP serial number, login here: https://uwdigitalid.wisconsin.edu.

See Also:

Keywords:authorization HRS ERP vpn.wisc.edu global protect vpn   Doc ID:67135
Owner:Marc T.Group:UW Digital ID
Created:2016-09-22 05:16 CDTUpdated:2018-02-21 14:26 CDT
Sites:Access Management Services, DoIT Help Desk, Human Resource System (HRS), UW Digital ID
Feedback:  0   0