cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1350
Views
0
Helpful
1
Replies

SSL anyconnect cisco 2811

lvenegas022
Level 1
Level 1

Hello i have problem with the annyconnect VPN (SSL)

never connects.....!!!  i have this error (photos)


this the config...(with cisco CCP):

webvpn gateway gateway_1
ip address 190.241.180.36 port 443 
http-redirect port 80
ssl trustpoint TP-self-signed-2578600787
inservice
!
webvpn install svc flash:/webvpn/anyconnect-win-2.3.2016-k9.pkg sequence 1
!
webvpn install csd flash:/webvpn/sdesktop.pkg
!
webvpn context MSCVPN
secondary-color white
title-color #CCCC66
text-color black
ssl authenticate verify all
!
!
policy group policy_1
   functions svc-enabled
   svc address-pool "SDM_POOL_1"
   svc default-domain "its.co.cr"
   svc keep-client-installed
   svc split include 10.0.0.0 255.0.0.0
   svc split include 192.168.0.0 255.255.0.0
   svc split include 172.0.0.0 255.0.0.0
   svc split include 164.137.0.0 255.255.0.0
   svc dns-server primary 192.168.100.1
   svc dns-server secondary 196.40.31.67
virtual-template 4
default-group-policy policy_1
aaa authentication list ciscocp_vpn_xauth_ml_3
gateway gateway_1
inservice
!
end

This the certifiquer:

crypto pki trustpoint TP-self-signed-2578600787
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-2578600787
revocation-check none
rsakeypair TP-self-signed-2578600787
!
!
crypto pki certificate chain TP-self-signed-2578600787
certificate self-signed 01
  30820248 308201B1 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
  31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
  69666963 6174652D 32353738 36303037 3837301E 170D3130 30343236 31393331
  32385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
  4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D32 35373836
  30303738 3730819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
  8100A668 80CBF722 11D8E95F 641E785D F259C6FE E45347CD 7C99C85F A103F278
  F3EE83EE 85E23FB0 8CE4987B C2B22958 EE9D6D68 C7BD0642 828AF2A3 3A784D73
  9F6D5DEA F8587619 7179E754 601A2664 8C589229 4E69379E D562BF55 E694D7E0
  475CD5B3 689A1467 AD14A996 1E979C4E 89BB251D 478F421B BAEB994E D0EE5C24
  9EF30203 010001A3 70306E30 0F060355 1D130101 FF040530 030101FF 301B0603
  551D1104 14301282 104D5343 56504E2E 6974732E 636F2E63 72301F06 03551D23
  04183016 8014F672 7A269C08 A0304729 D9F08B7A 34004F5A 509D301D 0603551D
  0E041604 14F6727A 269C08A0 304729D9 F08B7A34 004F5A50 9D300D06 092A8648
  86F70D01 01040500 03818100 46FFCEBE F3014ECD EF11F824 96192CC9 8ADEE586
  3BE1F114 23D823BB B53D8EB8 80EB72E3 B24BBBD0 ED36271B FCFAB654 38EE834D
  553C208B 59023B2E 379BABD6 0FD13DC1 E13A9FBF 1B738E12 1DAECAFA 80C068B9
  AFD0B601 D6BAE461 D2337A0E DDA4FC8B 0505D7BA 968B70C4 445CBE1B F129B32F
  5315A013 CAD0017A 214F53BC
        quit

thank.. how I do to resolve this...

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

Please try to connect from the browser instead of the AnyConnect client, the right AnyConnect client would be downloaded to your PC.

Also, I would try without the CSD first, and include it later when the SSL is working fine.

Try by removing "webvpn install csd flash:/webvpn/sdesktop.pkg"