VPN zombie connection

Nikos Mavrogiannopoulos nmav at gnutls.org
Mon Feb 24 12:37:52 EST 2014


On 02/24/2014 03:50 PM, Steve wrote:
> Sometimes iOS AnyConnect VPN back from sleep, it seems the connection
> still alive, but could not  reach the VPN gateway, after disconnect
> and reconnect, the VPN works like normal again.
> 
> Log shows a lot of:
> 
> Feb 24 22:35:20 AA ocserv[16757]: main: unexpected DTLS content type: 23
> 
> Feb 24 22:35:20 AA ocserv[16757]: main: could not determine the owner
> of received UDP packet
> 
> Feb 24 22:35:23 AA ocserv[16757]: main: unexpected DTLS content type: 23
> 
> Feb 24 22:35:23 AA ocserv[16757]: main: could not determine the owner
> of received UDP packet
> Any suggestion?

The connection seems to have timed out on the server, but the client
isn't aware of it and tries in vain to send UDP packets. Have you tried
playing with the DPD values and the idle-timeout (the latter is in git
only).

regards,
Nikos




More information about the openconnect-devel mailing list