15 June 2026 - Network eduVPN launches in a trial phase for employees using mobile devices

With eduVPN, a new VPN service for mobile devices is now available to employees on a trial basis. eduVPN is an open-source-based service developed for universities and research institutions, providing secure and encrypted access to the university network—regardless of location. Benefits include convenient login with less frequent MFA prompts, as well as the split-tunneling feature enabled by default for efficient internet usage. eduVPN can be used as an alternative to Cisco VPN.

VPN-App (Virtual Private Network) auf einem Tablet in den Händen einer Frau geöffnet

What does the VPN alternative eduVPN offer users?

The new service will initially be made available as an alternative to the existing Cisco VPN and can now be used or tested by staff with a Uni-ID as an alternative to the existing service. Above all, eduVPN offers users easier and more convenient access to the university network.

  • Convenient login with a profile valid for seven days:
    After logging in with your university ID, password, and one-time password, a valid profile is saved for seven days, so you don’t have to go through multi-factor authentication every time you log in.
  • An alternative open-source solution for greater data sovereignty.
  • Thanks to the split tunneling feature, which is enabled by default, only traffic to university services is routed through the encrypted VPN connection. Other internet connections run directly through your local internet connection, making usage more efficient. At the same time, eduVPN provides secure access to internal services—whether you’re working from home or on the go.
  • There is also a “non-split” option available, in which all data traffic is routed through the VPN. This is necessary, for example, when users outside the campus network wish to access licensed electronic resources (databases, e-journals, and e-books) via publisher websites. After logging in, you can select the “WireGuard Non-Split” profile. (Unlike eduVPN, the Cisco Secure Client defaults to the non-split connection.) See below for more details.
     

    Set up and try eduVPN now

    What are the plans after the trial phase?

    During the trial phase, eduVPN will initially be available only to employees using mobile devices with a Uni-ID. We plan to gradually expand the service to all university members, as numerous universities and academic institutions are already successfully operating their entire VPN infrastructure using eduVPN. Both VPN services are currently being offered simultaneously. Cisco VPN can also continue to be used. Important: Only one VPN connection (Cisco VPN or eduVPN) may be active at a time; simultaneous use of both services is not supported and will result in connection issues.

    Please feel free to test the new VPN service and use it extensively. We look forward to your feedback at it-service@uni-heidelberg.de

When is a non-split connection necessary?

  • When traveling (to countries with restrictive policies), a non-split connection may be advisable. If you encounter issues with the WireGuard non-split connection, please switch to the OpenVPN non-split profile.
  • Required when accessing licensed electronic media from Heidelberg University if you wish to access electronic media via publisher websites while traveling or working from home. When accessing licensed electronic media (databases, e-books, e-journals) directly from the Heidelberg University IP network, authentication is performed via the IP address. (Unlike eduVPN, the Non-Split connection is the default setting for the Cisco Secure Client)

    Simply put: Accessing Heidelberg University’s licensed e-media from off-campus (see table)

Table

1. Set up a VPN connection – in the Let’s Connect client for eduVPN, select the ‘Wireguard Non-Split’ profile (no split tunnel).
This is the only way to ensure that all your internet traffic is routed via the university network.
All data (including traffic to publisher websites) is routed via the university IP address.
2. Go to the publishers’ websites (search via EZB / DBIS or the University Library catalogue, for example)
Access to the electronic resources is via the university’s IP address, i.e. no login credentials are required.
You will be linked directly to the publishers’ websites without any detours.
3. Accessing electronic resources (databases, e-books, e-journals, etc.)
Access is granted directly via the university’s IP address, as it is registered with the publishers.
The publishers can identify which electronic content is licensed by the university via the university’s IP address and grant access to it.

For more information, please visit the University Library’s (UB) information page via the link provided.

If you encounter any issues with eduVPN, please report them to it-service@uni-heidelberg.de 
If you have trouble accessing e-resources, please contact the University Library via the email address ejournals@ub.uni-heidelberg.de

For further information and instructions, please refer to the linked service catalogue.