Trouble with network-manager-openconnect-gnome when using a gateway with multiple IP addresses

dawinic dawinic at ncsu.edu
Sun Sep 1 17:04:12 EDT 2013


I appear to be experiencing this same issue in Fedora19
(openconnect-5.01-1.fc19.x86_64).  University wants us to open request
to <REQUESTED>, which then sends the client to <VPNSERVER>.  

"Server SSL certificate didn't match" when using NetworkManager, but
can connect from command line:

> $  sudo openconnect -v --script /etc/vpnc/vpnc-script <REQUESTED>
> POST https://<REQUESTED>/
> Attempting to connect to server <IP1>
> SSL negotiation with <REQUESTED>
> Connected to HTTPS on <REQUESTED>
> Got HTTP response: HTTP/1.0 302 Temporary moved
> Content-Length: 0
> Cache-Control: no-cache
> Pragma: no-cache
> Connection: Close
> Date: Sun, 01 Sep 2013 20:44:39 GMT
> Location: https://<VPNSERVER>/
> HTTP body length:  (0)
> POST https://<VPNSERVER>/
> Attempting to connect to server IP2
> SSL negotiation with <VPNSERVER>
> Connected to HTTPS on <VPNSERVER>
> Got HTTP response: HTTP/1.0 302 Object Moved
> Content-Type: text/html; charset=UTF-8
> Content-Length: 0
> Cache-Control: no-cache
> Pragma: no-cache
> Connection: Close
> Date: Sun, 01 Sep 2013 20:44:39 GMT
> Location: /+webvpn+/index.html
> Set-Cookie: tg=; expires=Thu, 01 Jan 1970 22:00:00 GMT; path=/; secure
> HTTP body length:  (0)
> GET https://<REQUESTED>/
> SSL negotiation with <REQUESTED>
> Server certificate verify failed: certificate does not match hostname
> 
> Certificate from VPN server "<REQUESTED>" failed verification.
> Reason: certificate does not match hostname
> Enter 'yes' to accept, 'no' to abort; anything else to view: 

-- 
D. Winick 
Department of Electrical and Computer Engineering
Campus Box 7914, Monteith Research Ctr., Suite 334
2410 Campus Shore Drive
Raleigh, NC  27606



More information about the openconnect-devel mailing list