The university portal accepted my password and rejected everything after it.
We couldn’t verify this sign-in. Try again later.
I was sitting on the floor of my new room in Cardiff, surrounded by an open suitcase, two power adapters and a duvet I had not yet worked out how to fit into its cover.
The international-student office closed in forty minutes.
Before then, I needed to access my eVisa, generate a share code and complete the university’s right-to-study check. Without that, my enrolment could not be confirmed.
I blamed the portal.
I cleared the browser, requested another authentication code and tried again.
The code reached my phone.
The UKVI page stalled.
My established VPN still showed a server in Germany—the route I had used during the journey from the airport.
I changed it to London.
The VPN reconnected.
The university page returned to the login screen.
Outside my room, other students were carrying kitchen boxes and introducing themselves. I was still trying to prove that I was allowed to be there.
The short answer
A sign-in arriving through another region can trigger additional checks or stop a school service from opening until the VPN route changes. Students describe the resulting routine simply: switch the VPN off for university accounts, then turn it back on for everything else. ( Reddit )
My immigration document depended on the connection
For new arrivals, the right-to-study check had become an online task rather than a document handed across a desk.
A UK eVisa is a digital record of identity, immigration status and permission to study. As the system replaces physical visa documents, access to the UKVI account becomes central to arriving, enrolling and proving status. (Gov)
The university needed a share code so its compliance team could verify my record and complete the right-to-study check. (Ac)
That turned an ordinary connection failure into an enrolment problem.
I did not need to stream a film or make my laptop appear to be in another country.
I needed three pages to work in sequence:
UKVI account.
Share-code service.
University enrolment portal.
The useful VPN would be the one that completed those steps without forcing me to restart whenever the connection changed.
The first problem came before eduroam
I had not joined the main campus network yet.
The residence provided a temporary setup connection so new students could configure eduroam. The university’s troubleshooting instructions advised disabling an active VPN if that setup page failed to appear. (Ac)
That explained why my laptop had spent ten minutes cycling between Connecting and No internet.
The VPN was trying to open its tunnel before the Wi-Fi registration had finished.
I turned it off.
The configuration page appeared.
I entered my university credentials, installed the required profile and joined eduroam.
For the first time since entering the building, the laptop had a stable connection.
Then I reopened the VPN.
The German server connected.
The university portal challenged the sign-in again.
London loaded the dashboard but failed when it redirected me to UKVI.
The automatic server opened UKVI and lost the session when the identity-check page appeared.
The provider had years of public history, mature applications and a large European network. Those were good reasons to install it before travelling.
In my room, the long server list became another form to complete.
Each route worked with one part of the process and failed at the next.
Turning the VPN off solved the wrong problem
I disconnected it again.
The UKVI page loaded immediately.
I could have continued that way, but the pages in front of me contained my passport details, immigration status, university identity and home address. University security guidance recommends using a VPN when sensitive work must cross public or unfamiliar networks. (Ac)
Briefly pausing the VPN to finish Wi-Fi setup was one thing.
Leaving it off through the entire enrolment process was another.
I turned the established provider back on and selected a different UK route.
The UKVI account opened.
The share-code page did not.
I had twenty-eight minutes left.
The obvious solution had restored protection but broken the process. The next option was to remove the campus network entirely.
Mobile data replaced one weak link with another
My phone still had roaming service from home, so I enabled its hotspot.
The laptop left eduroam and joined the phone.
The established VPN reconnected.
The UKVI page opened.
Then the mobile signal dropped from three bars to one.
The passport photograph loaded line by line.
When I reached the page for proving my immigration status, the browser displayed a connection error.
I tried the process directly on the phone.
The page loaded faster, but the small screen made it difficult to compare the passport number, university instructions and requested share-code category. An incoming call from my family interrupted the browser and returned me to the beginning of the verification flow.
The hotspot had removed the university network.
It had also replaced strong Wi-Fi with weak indoor roaming data.
I returned the laptop to eduroam.
By then, I had stopped wondering which country the VPN should display.
I needed one route the campus network would carry from login to confirmation.
The smaller app completed the right-to-study check
I closed the established provider and opened OnlydogVPN.
The smaller app did not ask me to choose between London, Manchester, Amsterdam or Frankfurt.
I selected the situation for handling student accounts on a campus network and connected.
Then I closed every UKVI and university tab and started again.
The UKVI sign-in page appeared.
I entered my details.
The authentication code reached my phone.
My eVisa opened.
I checked the passport number and immigration status.
Then I selected the option to prove my status and generated the share code required by the university.
The code appeared on screen.
I copied it into the enrolment portal.
The university asked for my date of birth and passport details.
I submitted them.
A progress indicator moved across the page.
Then the portal displayed:
Right-to-study information received.
The registration checklist changed from four incomplete tasks to three.
The item that had kept me on the floor for nearly an hour turned green.
Only after the full sequence succeeded did the connection design matter. The smaller service uses an HTTP/3-based transport with added traffic obfuscation, giving the account pages a stable route through the campus connection.
I could not inspect the university network’s internal filtering rules or the risk checks behind the UKVI and enrolment pages. The observable result was decisive: the established provider repeatedly broke the verification sequence, while the smaller app carried it from sign-in to confirmation.
My phone joined without another account password
Completing the portal was not quite the end.
The confirmation page instructed me to bring my passport and immigration details to the international-student desk.
I had the share code on the laptop, but I did not want to carry an open computer across campus or send sensitive details to myself through ordinary email.
The smaller service offered a cleaner handoff.
I displayed a verification code on the laptop.
I entered it in the app on my phone.
The phone connected without requiring another email-and-password login.
I opened the UKVI page, confirmed that the share code was available and took the phone with me.
The verification code had not solved the enrolment problem. The stable route had already done that.
It removed the next smaller friction: moving from the device used for the form to the device I could show at the desk.
For an international student, that mattered more than it might sound.
The laptop handled university forms.
The phone received authentication codes.
The passport stayed in my bag.
Arrival required all three to cooperate.
The session survived the walk across campus
I left the residence and followed the map toward the student-services building.
The phone remained on eduroam as I crossed the courtyard.
Near the edge of campus, the Wi-Fi weakened.
The phone switched to mobile data.
The UKVI page paused, then refreshed.
The VPN remained connected.
Its HTTP/3-based route recovered as the underlying network changed. (IETF)
On the phone, the result was simpler:
Campus Wi-Fi disappeared.
Mobile data took over.
My immigration page remained available.
At the desk, I handed over my passport and showed the requested information.
The staff member checked the record, typed for a moment and said:
“Your right-to-study check is complete.”
My student card moved to the next stage of production.
I finally left the building as an enrolled student rather than a visitor carrying two suitcases.
A foreign server was not helping my student account
Before arriving, I had treated VPN location as a general privacy preference.
Sometimes I selected another country simply because the server appeared fast.
University accounts made that habit counterproductive.
A sign-in arriving through another region can trigger additional checks or stop a school service from opening until the VPN route changes. Students describe the resulting routine simply: switch the VPN off for university accounts, then turn it back on for everything else. (Reddit)
That was exactly the cycle I wanted to avoid.
The university did not need me to appear somewhere more private or more interesting.
It needed the authentication sequence to remain consistent.
The smaller app’s task-based setup made more sense than selecting a flag and hoping every service accepted it.
The benefit was not that it made me look local.
It was that I stopped managing geography while trying to enrol.
The university VPN had another job
Later, the IT portal also offered the university’s own VPN.
That service existed to provide access to institutional systems from outside campus, including databases and resources restricted to university users. (Ac)
It did not replace the personal VPN’s role.
The university VPN brought me into the university network.
The smaller service protected the broader arrival workflow: UKVI, personal email, housing pages, family messaging and enrolment across unfamiliar connections.
Once I separated those jobs, the setup became straightforward.
I would use the institutional VPN when a library database or internal service required it.
I would use the smaller app when I needed ordinary accounts and applications to work safely across campus Wi-Fi, residence networks and mobile data.
The wider map did not complete enrolment
The smaller service has fewer locations and a shorter public history than the largest VPN providers.
Neither limitation prevented enrolment.
The established provider gave me more countries, more server choices and a familiar interface. It also forced me to restart the UKVI and university flows whenever a route stalled.
Mobile data avoided the campus network but became too weak inside the residence.
The smaller app used the strong connection already in front of me, completed the right-to-study check, moved the session onto my phone and remained active when eduroam gave way to mobile data.
I had arrived believing an international student needed a VPN with the widest map.
My first day required something far more useful: one connection that stayed out of the way until the university recognised me as a student.
Questions this experience may leave you with
What was actually causing the problem?
A sign-in arriving through another region can trigger additional checks or stop a school service from opening until the VPN route changes. Students describe the resulting routine simply: switch the VPN off for university accounts, then turn it back on for everything else. ( Reddit ) (Reddit)
Why did the obvious fixes fail?
The residence provided a temporary setup connection so new students could configure eduroam. The university’s troubleshooting instructions advised disabling an active VPN if that setup page failed to appear. ( Ac ) (Ac)
What should you check first?
Before then, I needed to access my eVisa, generate a share code and complete the university’s right-to-study check. Without that, my enrolment could not be confirmed.
What finally changed the result?
The verification code had not solved the enrolment problem. The stable route had already done that.
What is worth remembering?
I would use the smaller app when I needed ordinary accounts and applications to work safely across campus Wi-Fi, residence networks and mobile data.