Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Cisco VPN not working

Hi,

I just answered to this post: https://community.sophos.com/products/unified-threat-management/f/vpn-site-to-site-and-remote-access/78503/utm9-9-404-5-cisco-vpn-to-macos-10-11

But as I looked deeper, I saw, that the problem is maybe another one, so I now open another post.

We cannot connect with the VPN client of macOS anymore (problem exists since macOS 10.11). I don't know if the macOS update was the problem, but we didn't change the config of the Sophos UTM9.

What we do: We synchronize our users with an Active Directory and the SSL VPN software from the User Portal works. As well we activated Cisco VPN, but we cannot connect from macOS:  "unexpected error".

The UTM9 log says:

ERROR: asynchronous network error report on eth1 for message to ................ port 61168, complainant ................: Connection refused [errno 111, origin ICMP type 3 code 3 (not authenticated)]

ERROR: asynchronous network error report on eth1 for message to ................ port 61168, complainant ................: No route to host [errno 113, origin ICMP type 3 code 13 (not authenticated)]

...

"D_for Administrator to Internal (Network)-1"[2] ................:61170 #20: max number of retransmissions (2) reached STATE_MAIN_R2
"D_for Administrator to Internal (Network)-1"[2] ................:61170: deleting connection "D_for Administrator to Internal (Network)-1"[2] instance with peer ................ {isakmp=#0/ipsec=#0}

 

I also tried with a local only user.

 

Any ideas?



This thread was automatically locked due to age.
Parents Reply
  • Guys, I don't do Macs, but I do have an iPhone and I expect the process is identical for you.

    1. Configure 'Cisco VPN Client' in WebAdmin.  Configure the 'iOS devices' tab, noting that the cert you choose must have the same VPN ID as the FQDN used to reach it.
    2. Configure the User Portal so that you can reach it.
    3. Browse to the User Portal from your Mac.
    4. On the 'Remote Access' tab, enter a password in the 'iOS device VPN Configuration' and press [Install].
    5. You will be prompted several times by iOS to accept the install.
    6. Connect to your new VPN option.

    Cheers - Bob

Children
No Data