SSL VPN Authentication error

I have occasional users who can't authenticate using the SSL VPN client. Our device is an XG330 with 17.5.9 firmware. Between 25 to 35 clients connected at any time. A few users report that they can't login. User's local SSL VPN error log shows:

Tue Mar 31 10:53:56 2020 AUTH: Received control message: AUTH_FAILED
Tue Mar 31 10:53:56 2020 SIGUSR1[soft,auth-failure] received, process restarting

But Log Viewer on the XG shows:

2020-03-31 10:53:55
SSL VPN Authentication
[IP redacted]
User xxxxxxx@yyyy.local authenticated successfully to login to SSLVPN through AD authentication mechanism

Sometimes rebooting the computer helps. Sometimes rebooting their home wireless helps. Sometimes, nothing helps. It only affects 3 of our users, so far.

Any ideas?

  • DO you have multiple Domain Controllers that are servicing the authentication  requests?  Are they both up and running?  It it possible some of the users are getting locked out temporarily ?


    Just a few thoughts off the top of my head. We're not seeing any issues and we're on the same version.



  • Well, in typical fashion, as soon as I give up and ask for help, the resolution presents itself.

    It turns out the SSL-VPN IPv4 lease range was too small. Once we hit that 35th user, random people would get dropped and occasional new users couldn't connect.