Hi, this is good news for adoptation Openconnect to Keentic OS. When I try to connect to the Openconnect VPN Server with Cisco Secureclient (anyconnect) which istalled on the system. System says that "no valid certificates avaliable for authentication". It has available option to "Disable Certificate authentication" only for user authentication in Cisco Anyconnect Mobile client. At that time while trying to test for connection (disabled cert auth.) it has been successfuly connect on the mobile client.
I guess, openconnect configuration file that ocserv.conf in the Openconnect server, will wait for both authentication methot for authentication. If remove the line that start with "certificate" problem will be solve.
/etc/ocserv/ocserv.conf
enable-auth = "plain[passwd=/etc/ocserv/ocpasswd]"
auth = "certificate" <<<<< remove the lines if its avaliable
You can post now and register later.
If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.
Question
bora ozver
Hi, this is good news for adoptation Openconnect to Keentic OS. When I try to connect to the Openconnect VPN Server with Cisco Secureclient (anyconnect) which istalled on the system. System says that "no valid certificates avaliable for authentication". It has available option to "Disable Certificate authentication" only for user authentication in Cisco Anyconnect Mobile client. At that time while trying to test for connection (disabled cert auth.) it has been successfuly connect on the mobile client.
I guess, openconnect configuration file that ocserv.conf in the Openconnect server, will wait for both authentication methot for authentication. If remove the line that start with "certificate" problem will be solve.
enable-auth = "plain[passwd=/etc/ocserv/ocpasswd]" auth = "certificate" <<<<< remove the lines if its avaliable
Best Regards,
Bora Ozver
Link to comment
Share on other sites
0 answers to this question
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.