ocserv 0.10 exit unexpectedly

sskaje sskaje at gmail.com
Sat Mar 14 07:55:29 PDT 2015


I upgrade my ocserv to 0.10, but it exited soon after I left my ipad
into standby mode.
error log from  command like 'ocserv -c xx -f -d 9999 2>&1 | tee xxx.log'

ocserv[16477]: main: 000.000.00.000:59981 main received message
'resume data store request' of 338 bytes
ocserv[16477]: main: 000.000.00.000:59981 TLS session DB storing xxxxx
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: SSL 3.3 Application Data
packet received. Epoch 0, length: 1056
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Expected Packet Application Data(23)
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Received Packet Application
Data(23) with length: 1056
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Decrypted Packet[1]
Application Data(23) with length: 1014
ocserv[17124]: worker: 000.000.00.000 HTTP processing: Host: sskaje.me
ocserv[17124]: worker: 000.000.00.000 HTTP processing: User-Agent:
Cisco AnyConnect VPN Agent for Apple iPad 3.0.12169
ocserv[17124]: worker: 000.000.00.000 User-agent: 'Cisco AnyConnect
VPN Agent for Apple iPad 3.0.1'
ocserv[17124]: worker: 000.000.00.000 HTTP processing: Cookie: webvpn=xxxxxxxxx
ocserv[17124]: worker: 000.000.00.000 HTTP processing: X-CSTP-Version: 1
ocserv[17124]: worker: 000.000.00.000 HTTP processing: X-CSTP-Hostname: iPad
ocserv[17124]: worker: 000.000.00.000 HTTP processing: X-CSTP-MTU: 1500
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-CSTP-Address-Type: IPv6,IPv4
ocserv[17124]: worker: 000.000.00.000 HTTP processing: X-CSTP-License: mobile
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-AnyConnect-Identifier-ClientVersion: 3.0.12169
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-AnyConnect-Identifier-Platform: apple-ios
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-AnyConnect-Identifier-PlatformVersion: 8.2
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-AnyConnect-Identifier-DeviceType: iPad4,2
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-AnyConnect-Identifier-Device-UniqueID: xxxxx
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-DTLS-Master-Secret: xxxxxxx
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-DTLS-CipherSuite: AES256-SHA:AES128-SHA:DES-CBC3-SHA:DES-CBC-SHA
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-DTLS-Accept-Encoding: lzs
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-CSTP-Accept-Encoding: lzs
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-CSTP-Protocol: Copyright (c) 2004 Cisco Systems, Inc.
ocserv[17124]: worker: 000.000.00.000 HTTP processing:
X-CSTP-TCP-Keepalive: false
ocserv[17124]: worker: 000.000.00.000 HTTP CONNECT /CSCOSSLC/tunnel
ocserv[17124]: worker: 000.000.00.000 sending message 'auth cookie
request' to main
ocserv[16477]: main: 000.000.00.000:59981 main received message 'auth
cookie request' of 89 bytes
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 sending msg sm:
session open to sec-mod
ocserv[16479]: sec-mod: cmd [size=113] sm: session open
ocserv[16479]: sec-mod: session expired; denied session for user
'sskaje' (session: Z683f)
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 could not initiate
session for 'sskaje'
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 could not open session
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 failed
authentication attempt for user 'sskaje'
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 sending message
'auth cookie reply' to worker
ocserv[17124]: worker: 000.000.00.000 received auth reply message (value: 3)
ocserv[17124]: worker: 000.000.00.000 error receiving cookie
authentication reply
ocserv[17124]: worker: 000.000.00.000 failed cookie authentication attempt
ocserv[16479]: sec-mod: error processing data for 'sm: session open'
command (-1)
ocserv[16479]: sec-mod: error processing command from main
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Preparing Packet Application
Data(23) with length: 29 and min pad: 0
ocserv[17124]: TLS[<9>]: ENC[0x13f3380]: cipher: AES-128-CBC, MAC:
SHA1, Epoch: 1
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Sent Packet[2] Application
Data(23) in epoch 1 and length: 85
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Preparing Packet Application
Data(23) with length: 38 and min pad: 0
ocserv[17124]: TLS[<9>]: ENC[0x13f3380]: cipher: AES-128-CBC, MAC:
SHA1, Epoch: 1
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Sent Packet[3] Application
Data(23) in epoch 1 and length: 85
ocserv[17124]: TLS[<4>]: REC: Sending Alert[2|49] - Access was denied
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Preparing Packet Alert(21)
with length: 2 and min pad: 0
ocserv[16477]: main: command socket closed
ocserv[17124]: TLS[<9>]: ENC[0x13f3380]: cipher: AES-128-CBC, MAC:
SHA1, Epoch: 1
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Sent Packet[4] Alert(21) in
epoch 1 and length: 53
ocserv[16477]: main: main.c:1264: error command from sec-mod
ocserv[16477]: main: termination request received; waiting for children to die
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 user 'sskaje' disconnected
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Start of epoch cleanup
ocserv[16477]: main[sskaje]: 000.000.00.000:59981 sending msg sm:
session close to sec-mod
ocserv[16477]: common.c:320: Broken pipe
ocserv[16477]: main[sskaje]: 000.000.00.000:59981
main-sec-mod-cmd.c:324: error sending message to sec-mod cmd socket
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: End of epoch cleanup
ocserv[17124]: TLS[<4>]: REC[0x13f3380]: Epoch #1 freed




sskaje at gmail.com
https://sskaje.me/



More information about the openconnect-devel mailing list