Priority string override necessary

Philip R. Kensche p.kensche at dkfz-heidelberg.de
Tue Jun 17 00:29:00 PDT 2025


Dear OpenConnect team,

I had to use a gnuTLS priority override string to get openconnect to work with my company's VPN server again (German Cancer Research Center (DKFZ), Heidelberg).

I now use the following command to log in to our VPN server:

openconnect --protocol=anyconnect '--useragent=AnyConnect Windows 5.1.7.80' --background --gnutls-priority=NORMAL:-VERS-ALL:+VERS-TLS1.2:+RSA:+AES-128-CBC:+SHA1 --user $USER https://$ourVpnServer/token

Best,

Philip
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20250617/4cceee46/attachment.sig>


More information about the openconnect-devel mailing list