Need of priority string override

dharman at 10100.to dharman at 10100.to
Wed Feb 12 03:44:50 PST 2025


Hello, launching openconnect on my Laptop I get the WARNING: "You specified --gnutls-priority. This should not be necessary".

In my case it's mandatory to use:

--gnutls-priority="NORMAL:-VERS-ALL:+VERS-TLS1.2:+RSA:+AES-128-CBC:+SHA1"

because otherwise the connection ended without login success:

Connected to HTTPS on <VPN-SERVER> with ciphersuite (TLS1.3)-(ECDHE-SECP256R1)-(RSA-PSS-RSAE-SHA256)-(AES-128-GCM)
POST XML abilitato
Please enter your username and password.
POST https://<VPN-SERVER>>/
Got inappropriate HTTP CONNECT response: HTTP/1.1 401 Unauthorized
Creating SSL connection failed
Cookie was rejected by server; exiting.


Thank you!






More information about the openconnect-devel mailing list