This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Cisco VPN Reset fails

A long time ago I setup the Cisco VPN configuration because we had a vendor who had the Cisco VPN client and they used it to VPN into our network.  That vendor has moved on and I wanted to "reset" the config back to default.  When I hit Reset, after a couple of seconds I get a red bar at the top of the page which helpfully says, "CISCO VPN client configuration reset failed."  No other information about why it failed or what I could do to resolve the issue is presented or recorded that I can find.  

Since the new Sophos Connect client will use this, and I want to use it when 17.5 comes out, I'd like to figure out why this is happening and what I can do about it.  Any ideas?

Thanks in advance.



This thread was automatically locked due to age.
  • You get this RED alert in XG? 

    Maybe you can link your current config? Could be some kind of miss configuration right now or your currently used cert is not working. 

  • This is what I see:

     

    How can I link the current config?  I am using a PSK if that matters.

  • Can you provide a screenshot of your XG Cisco VPN Client settings? 

  • Mh - Would suggest to clean it by yourself and try to hit reset again. Maybe the current PSK is invalid or other stuff. 

    Never saw this issue before. 

  • I've tried every combination of settings I can imagine and while they all apply fine, the reset function fails.  I guess (?) it won't be a problem upon upgrade to 17.5 and configuring and using Sophos Connect, but i still find it a little curious.  

    Not sure if there is a command line equivalent function to perform a reset?  

  • Can you reset it while it is enabled? 

    You can try to reset and take a look in the csc.log and applog.log 

  • applog.log showed the error:

    Nov 07 14:36:50 Request type = 1                                                
    Nov 07 14:36:50 apiInterface:versionsupported: true.                            
    Nov 07 14:36:50 apiInterface:request mode -> 1641.                              
    Nov 07 14:36:50 apiInterface:Current ver :::'1701.1'                            
    Nov 07 14:36:50 apiInterface:entityjson::::::::                                 
    Nov 07 14:36:50 Info:: Transaction will not be rolled back for opcode reset_cisco_vpn_connection. If any operation fails, request is part of multiple request : 
    Nov 07 14:36:50 [ipsecGetConnStatus] HO_to_Clients Vici status: 0               
    Nov 07 14:36:50 changeStatus function called for mode 3 on HO_to_Clients        
    Nov 07 14:36:50 call /scripts/vpn/ipsec/connop.sh HO_to_Clients 3 2 "''" "''" ALL                                                                               
    Nov 07 14:36:51 Setting activated field of HO_to_Clients to FALSE               
    Nov 07 14:36:51 ipsec_reread_conf                                               
    Nov 07 14:36:51 reset_cisco_connection: Deletion of CISCO connection `HO_to_Clients' FAILED                       

    I am not sure what to do about it, though.