Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN Authentication error

I have occasional users who can't authenticate using the SSL VPN client. Our device is an XG330 with 17.5.9 firmware. Between 25 to 35 clients connected at any time. A few users report that they can't login. User's local SSL VPN error log shows:

Tue Mar 31 10:53:56 2020 AUTH: Received control message: AUTH_FAILED
Tue Mar 31 10:53:56 2020 SIGUSR1[soft,auth-failure] received, process restarting

But Log Viewer on the XG shows:

2020-03-31 10:53:55
SSL VPN Authentication
Successful
xxxxxxx@yyyy.local
[IP redacted]
N/A
AD
User xxxxxxx@yyyy.local authenticated successfully to login to SSLVPN through AD authentication mechanism
17710

Sometimes rebooting the computer helps. Sometimes rebooting their home wireless helps. Sometimes, nothing helps. It only affects 3 of our users, so far.

Any ideas?



This thread was automatically locked due to age.
  • DO you have multiple Domain Controllers that are servicing the authentication  requests?  Are they both up and running?  It it possible some of the users are getting locked out temporarily ?

     

    Just a few thoughts off the top of my head. We're not seeing any issues and we're on the same version.

     

    -Scott

  • Well, in typical fashion, as soon as I give up and ask for help, the resolution presents itself.

    It turns out the SSL-VPN IPv4 lease range was too small. Once we hit that 35th user, random people would get dropped and occasional new users couldn't connect.