Unable to connect from AnyConnect 3.0 and 3.1 Windows Clients to ocserv 0.2.4 and git head

Thomas Glanzmann thomas at glanzmann.de
Sat Jan 11 16:54:43 EST 2014


Hello Nikos,

> The git head is under a major reshaping so it may have bugs that don't
> exist in 0.2.4 (though I tonight's version is working reasonably well
> on my setup). What is the debugging information you get on the server
> side?

I also tried with 0.2.4 and 0.2.3 without any luck. However Linux
AnyConnect Client 07059 worked. I'm currently reconfiguring my ASA to
not present any tunnel profiles, than I'll do another man in the middle
attack with socat and reimplement what I saw in perl. Once that is
working, I'll try to provide a patch in C.

> You may be doing nothing wrong. The support for anyconnect clients is
> very experimental and I've noticed that different clients from cisco
> have different behavior with ocserv. Once you send the server side
> info I'll try to see whether there is something we can improve with
> that client.

Find the Output of the server here:

http://pbot.rmdir.de/PhPvw1B5B14p5be5FCCepw

Cheers,
        Thomas



More information about the openconnect-devel mailing list