Hello,
I'm using XGS2300 (SFOS 19.5.1 MR-1-Build278), sophos connect 2.2.90.1104 with latest pattern updates (Sophos Connect - 2.2.090 and SSL VPN clients - 1.0.009). I have set up SSL VPN remote access with microsoft Azure MFA and nps server. The connection seems to restart for some reason, I've looked at different discussions but I didn't find an answer I was looking for or which would work. The certificate for ssl vpn is installed on the device. Also I have the port set up for 443 instead of 8443.
Here's the log:
2023-04-13 12:51:24PM [2852] dbg xxxxxxxx.cz VPN state changed to connecting
2023-04-13 12:51:24PM [2852] dbg Starting tunnel (connecting)
2023-04-13 12:51:24PM [2852] inf Remote added to list: xxxxxxxx.cz 443
2023-04-13 12:51:27PM [2852] dbg Tunnel initiated to xxxxxxxx.cz 443
2023-04-13 12:51:43PM [3944] dbg WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2023-04-13 12:51:43PM [3944] dbg WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2023-04-13 12:51:43PM [3944] dbg Connection to open vpn has been established
2023-04-13 12:51:43PM [3944] dbg Adding watch for physical IP xxx.xxx.xxx.xxx down
2023-04-13 12:51:43PM [3944] dbg xxxxxxxx.cz VPN state changed to connected
2023-04-13 01:29:31PM [3944] dbg read TCP_CLIENT: Unknown error (code=10060)
2023-04-13 01:29:31PM [3944] dbg read TCP_CLIENT: Unknown error (code=10060)
2023-04-13 01:29:31PM [3944] dbg Connection reset, restarting [-1]
2023-04-13 01:29:31PM [3944] dbg Received connection reset
2023-04-13 01:29:31PM [3944] dbg xxxxxxxx.cz VPN state changed to disconnecting
2023-04-13 01:29:31PM [2852] dbg Tunnel is stopped
2023-04-13 01:29:44PM [3944] dbg received exiting event
2023-04-13 01:29:44PM [6412] dbg xxxxxxxx.cz VPN state changed to disconnected
2023-04-13 01:29:44PM [6412] dbg Sending notification: Received connection reset from gateway: xxxxxxxx.cz 443
There's another thing I would like to ask. Everytime I try to connect to a provisioning file connection and manage to authorize, the connection keeps loading until it ends with "the server response took too long" after that it starts connection again, I manage to authorize and then I connect. I know that the provisioning file should import the connection for my account which is working fine. I've been trying to fix this for some time now but without success.
Hi VGDtech,
Thank you for reaching out to Sophos Community.
Can we verify how many users are affected or only a single device?
The error logs line "read TCP_CLIENT: Unknown error (code=10060)."
The network connection on the Windows machine is lost, which lead to OpenVPN tunnel disruption.
Kindly check the following: https://forums.openvpn.net/viewtopic.php?t=28049
Also, kindly try to use a different machine and network for isolation.
Erick Jan
Global Community Engineer, Support & Services
Are you a Sophos Partner? | Product Documentation | @SophosSupport | Sign up for SMS Alerts
If a post solves your question, please use the 'Verify Answer' button.
The award-winning home for Sophos Support videos! - Visit Sophos Techvids
Hello VGDtech ,
Thank you for reaching out to the community, This error is an error reported by the operating system's methods of communicating with the outside world. And they're saying that the connection was lost. This has nothing to do with an OpenVPN problem. This is a connection problem.
In short, your connection is getting disrupted, and OpenVPN then can't do its job.
https://ugetfix.com/ask/how-to-fix-socket-error-10060-on-windows/
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hi,
I'll try to do the steps as they recommend.
Thank you and Regards
VGDtech
None of the fixes worked for me but I found this
https://learn.microsoft.com/en-us/troubleshoot/windows-client/networking/10060-connection-timed-out-with-proxy-server
This has helped me to resolve the issue
Thank you, Regards
VGDtech
Hi VGDTech,
That is great to hear that your issue is now resolved, also, Thank you for the update and sharing.
Erick Jan
Global Community Engineer, Support & Services
Are you a Sophos Partner? | Product Documentation | @SophosSupport | Sign up for SMS Alerts
If a post solves your question, please use the 'Verify Answer' button.
The award-winning home for Sophos Support videos! - Visit Sophos Techvids