Document
Troubleshooting Tip: When logging in with SSL VPN,…

Troubleshooting Tip: When logging in with SSL VPN,…

Solution The error in the GUI:   date=2023 - 06 - 16 time=17:46:09 is eventtime=1686905169441057904 eventtime=1686905169441057904 tz="+0900 " log

Related articles

Keto Cloud Bread Lemon Chicken Wraps Python Release Python 3.11.0 On premises vs. cloud pros and cons, key differences サブスク音楽配信サービス おすすめ13選を徹底比較!【2024年最新版】 The Reagan Stove
Solution

The error in the GUI:

 

date=2023 – 06 – 16 time=17:46:09 is eventtime=1686905169441057904 eventtime=1686905169441057904 tz=”+0900 ” logid=”0101039425 ” type=”event ” subtype=”vpn ” level=”information ” vd=”root ” logdesc=”ssl VPN tunnel down ” action=”tunnel – down ” tunneltype=”ssl – web ” tunnelid=19067030 remip=10.200.20.10 user=”guest ” group=”N / A ” dst_host=”N / A ” reason=”tunnel connection setup timeout ” duration=32 sentbyte=0 rcvdbyte=0 msg=”SSL tunnel shutdown “
date=2023-06-16 time=17:45:57 eventtime=1686905157425931211 tz=”+0900″ logid=”0101039944″ type=”event” subtype=”vpn” level=”error” vd=”root” logdesc=”SSL VPN alert” action=”ssl-alert” tunneltype=”ssl” tunnelid=0 remip=10.200.20.10 user=”N/A” group=”N/A” dst_host=”N/A” reason=”warning” desc=”close notify” msg=”SSL alerts”
date=2023 – 06 – 16 time=17:45:37 is reason=”login eventtime=1686905137405436816 tz=”+0900 ” logid=”0101039424 ” type=”event ” subtype=”vpn ” level=”information ” vd=”root ” logdesc=”ssl VPN tunnel up ” action=”tunnel – up ” tunneltype=”ssl – web ” tunnelid=19067030 remip=10.200.20.10 srccountry=”reserve ” user=”guest ” group=”N / A ” dst_host=”N / A ” reason=”login successfully ” msg=”SSL tunnel establish “
date=2023-06-16 time=17:45:37 eventtime=1686905137367253443 tz=”+0900″ logid=”0101039943″ type=”event” subtype=”vpn” level=”information” vd=”root” logdesc=”SSL VPN new connection” action=”ssl-new-con” tunneltype=”ssl” tunnelid=0 remip=10.200.20.10 srccountry=”Reserved” user=”N/A” group=”N/A” dst_host=”N/A” fctuid=”N/A” reason=”N/A” msg=”SSL new connection”
date=2023 – 06 – 16 time=17:45:37 eventtime=1686905137310940065 tz=”+0900 ” logid=”0101039946 ” type=”event ” subtype=”vpn ” level=”error ” vd=”root ” logdesc=”ssl vpn exit error ” action=”ssl – exit – error ” tunneltype=”ssl ” tunnelid=0 remip=10.200.20.10 srccountry=”reserve ” user=”n / A ” group=”N / A ” dst_host=”N / A ” fctuid=”n / A ” reason=”N / A ” msg=”ssl exit error “

 

In the CLI :

 

diag debug application sslvpn -1
diag debug application is fnbamd fnbamd -1
diag debug is enable enable

[2612:root:1b]deconstruct_session_id:716 decode session id ok, user=[guest], group=[],authserver=[],portal=[full-access],host[10.200.20.10],realm=[],csrf_token=[D3D4129C5AB9CB25CDCE01CCF8E40],idx=0,auth=1,sid=2d772154,login=1686904099,access=1686904099,saml_logout_url=no,pip=no,grp_info=[4xAcoJ],rmt_grp_info=[]
[2612:root:1b]rmt_web_auth_info_parser_common:557 authentication required
[2612:root:1b]rmt_web_access_check:776 access failed, uri=[/remote/logout],ret=4103,
[2612:root:1b]SSL state:fatal decode error (10.200.20.10)
[ 2612 : root:0]ap_read,105 , error=1 , errno=0 ssl 0x7f3bb1bb6000 Success . error:0A000126 is eof : SSL routines::unexpecte eof while read
[ 2612 : root:1b]sslvpn_read_request_common,684 , ret=-1 error=-1 , sconn=0x7f3bb2854800 .
[2612:root:1b]Destroy sconn 0x7f3bb2854800, connSize=0. (root)

 

This may occur due to a number of reasons:

 

1. The user ID or password is incorrect.
2. If ‘Internet Options -> Security -> Security Level for this zone’ is ‘High’.

 

To fix the second case, reduce security level from ‘High’ to ‘Medium-high’ or ‘Medium’.

 

 

Related article:

Technical Tip : unable to establish the SSL VPN connection on Windows server .