Menu

Main Menu
Talk Get Daily Search

Member's Online

    User Name
    Password

    [Announce] OpenConnect (-GUI) VPN client

    Reply
    Page 2 of 9 | Prev |   1   2   3     4   | Next | Last
    lorelei | # 11 | 2010-01-11, 20:47 | Report

    Originally Posted by Arendtsen View Post
    I would really like the group choice added.

    I'm the administrator of Cisco ASA5510 so I would be able to help debugging if needed. :-)
    Great! Some more testing is always welcome! I will post an update in this thread when a new version is available.

    Planned features for next version:

    - support for groups
    - cleanup of how the passwords are passed to the underlying openconnect process.
    - make the log window thumbs-pannable (at the moment it's only scrollable with the scrollbar).

    In any case, I strongly encourage you to report bugs/RFEs to bugs.maemo.org, in the OpenConnect category!

    Edit | Forward | Quote | Quick Reply | Thanks

     
    Arendtsen | # 12 | 2010-01-11, 22:26 | Report

    Looking forward to it.
    Because I can't connect without groups.

    RFEs? Request For Enhancements?

    Edit | Forward | Quote | Quick Reply | Thanks

     
    noobmonkey | # 13 | 2010-01-11, 22:50 | Report

    Originally Posted by lorelei View Post
    In the present version it's not possible to add the group setting. I did not include it, since I didn't need it, but I will gladly add this option in the next release (shouldn't be that far away, and it's a straightforward addition).

    What I want to point out however, is that vpnc and openconnect are not interchangeable!

    vpnc works with the the Cisco VPN concentrator 3000 Series, Cisco PIX appliances and Juniper/Netscreen, by using IKE/IPSEC

    openconnect works with other Cisco concentrators (see the top post of this thread), and uses SSL.
    as soon as i figure out which one i need i'll be happy - hehe

    Edit | Forward | Quote | Quick Reply | Thanks

     
    lorelei | # 14 | 2010-01-11, 22:55 | Report

    Originally Posted by Arendtsen View Post
    RFEs? Request For Enhancements?
    Yes: RFE=Request for Enhancements

    Edit | Forward | Quote | Quick Reply | Thanks

     
    lorelei | # 15 | 2010-01-11, 23:05 | Report

    Originally Posted by noobmonkey View Post
    as soon as i figure out which one i need i'll be happy - hehe
    Two possible ways to determine that (short of asking the sysadmin):

    if your official VPN client is "Cisco Anyconnect", then OpenConnect should do the trick.
    If your official VPN client is "Cisco VPN Client" (if I'm not mistaken), then vpnc should be used.

    Another way (less effective): if you can open https://your-vpn-server
    with a browser, there's a high probability that OpenConnect is the one you need. (please note the s in https!)

    Edit | Forward | Quote | Quick Reply | Thanks

     
    dwmw2 | # 16 | 2010-01-12, 13:22 | Report

    Originally Posted by lorelei View Post
    Planned features for next version:

    - support for groups
    - cleanup of how the passwords are passed to the underlying openconnect process.
    - make the log window thumbs-pannable (at the moment it's only scrollable with the scrollbar).

    In any case, I strongly encourage you to report bugs/RFEs to bugs.maemo.org, in the OpenConnect category!
    There are two kinds of 'groups'. There's the 'UserGroup' which ends up as part of the URL (http://vpn.server.org/usergroup/), and then there's the group selection which can be presented as part of the XML form when the user tries to log in.

    I would recommend that you use the guts of the NetworkManager auth-dialog tool which is part of openconnect. That will do all the authentication for you, handling all the forms, and then it will just output the resulting HTTP cookie which is what lets you make the connection. We pass that to openconnect with the --cookie-on-stdin option.

    Feel free to use the openconnect-devel@lists.infradead.org mailing list for discussing this.

    Edit | Forward | Quote | Quick Reply | Thanks
    The Following User Says Thank You to dwmw2 For This Useful Post:
    lorelei

     
    lorelei | # 17 | 2010-01-12, 15:55 | Report

    dwmw2: thank you for your input: I was effectively poking around NM to see how it was done and to get some inspiration for the upcoming version.

    Edit | Forward | Quote | Quick Reply | Thanks

     
    noobmonkey | # 18 | 2010-01-12, 15:57 | Report

    Originally Posted by lorelei View Post
    Two possible ways to determine that (short of asking the sysadmin):

    if your official VPN client is "Cisco Anyconnect", then OpenConnect should do the trick.
    If your official VPN client is "Cisco VPN Client" (if I'm not mistaken), then vpnc should be used.

    Another way (less effective): if you can open https://your-vpn-server
    with a browser, there's a high probability that OpenConnect is the one you need. (please note the s in https!)
    Ahaaa you sir are a genius! And a gentleman

    Vpnc and wpnc gui worked a treat! - superb! - but sorry i can't test your app!

    Edit | Forward | Quote | Quick Reply | Thanks

     
    APA | # 19 | 2010-01-13, 04:53 | Report

    Doesn't seem to work with ASA Anyconnect client-based VPN?

    The GUI says I'm connected but just sits there with 'POST'

    Note this isn't a clientless SSL VPN where you just have access to certain office functions via a web interface, the solution is a full SSL VPN via the downloadable Anyconnect client.

    Not the ASA administrator but have worked with them before and would be keen to help debug if necessary...

    Edit | Forward | Quote | Quick Reply | Thanks

     
    dwmw2 | # 20 | 2010-02-04, 07:57 | Report

    Originally Posted by APA View Post
    Doesn't seem to work with ASA Anyconnect client-based VPN?

    The GUI says I'm connected but just sits there with 'POST'
    Can you check whether it works with openconnect from the command line (perhaps on another Linux box), and if not send a bug report to the openconnect mailing list.

    Edit | Forward | Quote | Quick Reply | Thanks

     
    Page 2 of 9 | Prev |   1   2   3     4   | Next | Last
vBulletin® Version 3.8.8
Normal Logout