Using Multi-Factor Authentication (MFA) with Duke's Virtual Private Network (VPN)

Multi-factor authentication is required when connecting to Duke's virtual private network (VPN). Do the following:

  1. Open the Cisco AnyConnect application or visit
  2. Select the desired VPN and click Connect.
  3. Enter your NetID and password and click OK.
  4. In the MFA Option field, do one of the following:
  • Enter "1" - To receive push notification to your device's mobile app. This is the most portable option and also allows for access if you don’t have service or Wi-Fi in your area. 
  • Enter "2" - To authenticate by receiving a phone call.
  • Enter "3" - To receive ten temporary passcodes via text message. Each passcode may be used once -- they expire 72 hours after they are issued. Enter one of those codes into the MFA Option field.
  • To use a YubiKey, connect the YubiKey to your computer, put your cursor in the MFA Option field, and touch the YubiKey's sensor. A code will automatically be generated.

5. Click Continue. You are connected to the VPN.

If you need assistance, contact the OIT Service Desk, 919-684-2200.

Article number: KB0028460

Valid to: January 18, 2025